Elastic & Big Data

Log management, monitoring a prophylaxis. SIEM and Active Security. Data Indexation, fast search. Consultations and solution architecture of Elastic.

Image 1
Image 2
Image 3
Background

NOTIX consults and implements these Elastic solutions

Central Log management, monitoring and IT prophylaxis

Central Log management a monitoring.
Prophylaxis of applications and IT platforms - System for timely warning, risk prevention and anomaly detection. Analysis and visualisation of vital metrics, log data and transaction tracking.

SIEM – Risk management, Audit log collection

SIEM solutions with Elastic stack tools. Log management data are provided with another layer of security from other data sources. Customise your detection rules, or let Elastic define them, while also keeping them up to date. Set up severity and risk score, with consequent alerting and recommended risk mitigation.

Elastic Consultations and Support

We provide solution architecture, system integration, sizing, deployment and operations consultations on both, open source and proprietary versions of Elastic. Solving complex tasks in client-specific environment. Continuous support of Elastic platform including guaranteed SLAs.

Prophylaxis of applications and IT platforms

Prophylaxis is a smart extension of central log management and monitoring tool. Profylactic jobs reguarly analyse available metrics and results can warn the user of any suspicious activities, negative trends or occuring bugs.

Active Security, XDR, SOAR

Advanced versions of Elastic offer wide variety of Active Security functions. Active Security solution – EDR, XDR, SOAR, End point protection, intrusion detection, agents, anomaly detection and behavioral analysis using Machine Learning.

Enterprise search, transaction history, data archive

Custom full-text search implementation offers data mining - documents, transaction history, client usage history and many more. Search functions for DMS, CRM and so on. Longtime archivation of data and metadata from application with built-in search function.

Data Transport, application components based on Elastic

We provide components and modules using Elastic functions (logs, reporting, data indexation), which can be used in your internal information systems as a core or add-on module. We can integrate Elastic / Kibana components with other technologies used in your internal IT solutions

What's so special about us?

We are a premium partner of Elastic NV, with a team full of certified experts

We customize Elastic solutions to your current IT enviroment, technologies and core methodologies

We offer solutions based on both open-source and proprietary versions of Elastic

We will design the best Elastic solution, and plan out the adaptation process for new technology

We understand data structures, contents and can enrich and optimize your data flow

We will recommend how to standardize logs on application level, and how to get the most out of your data

We will design more helpful use-cases, out of your indexed business data or application logs data 

In projects we combine Elastic components with tools such as Kafka, Camunda/ Zeebe, Hadoop and more

We understand the principles and standard of IT operations, wecan automate deployment of log components into your infrastructure (DevOps) 

Solutions: Log management a monitoring

Central log management a monitoring

Central log management and monitoring of applications is a solution, which NOTIX implementes the most when it comes to Elastic platform.

Hundreds of types of sonds and agents for various technologies allows us to collect vital metrics and log data from all types of sources, including custom apps, HW devices or cloud platforms. Thanks to enormous performance and exceptional scalability, it's possible to meet demands of big organisations, which runs hundreds of systems and applications. 

In NOTIX we work with open-source version of ELASTIC, in which we are capable of adding functionalitites for secure access to data or notification functions in case of suspicious finds, as well as proprietary versions of ELASTIC, including the highest Enterprise version.

Image
Show detailed info

Solutions: SIEM - Threat identification, audit log collection

We use Elastic Security for SIEM tool in our solutions

In our SIEM solutions we use Elastic Security for SIEM. A common core source of data is a central log management, but on demand of the security department we add data from various other sources. Also monitoring dahsboards and alerts are designed specifically for the needs of the security department and incorporated into SOC.

Image
Show detailed info

Consultations on Elastic projects

We will increase the effectivity of your application and production support teams and provide tools for security threats identification. We are a premium partner of ELASTIC NV in Czech Republic, we have a core team full of certified experts, experienced in the biggest ELASTIC implementations in Czech Republic

Main areas of Elastic projects and consultations

If you are planning on implementing Elastic and can't decide on open-source or proprietary version, architecture, sizing or you have stumble upon a specific problems, we will gladly assist you and provide a consultation.

  • Designe and consultation of solution architecture for Elastic platform, while taking into consideration your company's existing IT architecture
  • Design of additional components from a third party provider
  • Design and consultation of necessary infrastructure, based on demanded functions and amount of proccessed data
  • We will choose the best Elastic platform version, that will meet all your specific needs
  • Optimalisation of your current installation and configuration of Elastic components.
  • Consultantions on CI/CD and DevOps automatization
Image
Show detailed info

Solutions: Prophylaxis of apps and IT platforms

Prophylaxis is a smart expansion of log management and monitoring. Prophylactic jobs regularly check scanned metrics and the results can be an alert for a suspicious activities, negative trends, or an actual bug.

Main benefits of prophylaxis

  1. Notifications from the alerting system will inform you about bugs, negative trends or events and threats, so you can make corrective actions in time
  2. The process of prophylaxis runs automatically in preset cycles
  3. Detection process can access log data, but also combine them with vital metrics of operating systems, application servers, cloud platforms or HW devices.
  4. Detection rules investigate and compare trends in different time terms and evaluate them in comparison to the set thresholds.
  5. It's possible to set up a complex prophylaxis scenarios - for example prophylaxis of integration platform, hybrid cloud and so on...
Image

Solutions: Active security, XDR, SOAR

Tools of Elastic Security expand reactive SIEM approach(identification/alert) with active security elements

Elastic Security for Endpoint and Elastic Agent

Elastic Security for Endpoint works as a prevention of ransomware and malware, by detecting complex threats. At the same time users can access related data and information in context. For various infrastructures and hosting systems.

Works on the basis of Elastic Agents, supporting OS Windows, Linux and MacOS. Agents collect and send metrics to detection engine, which searches for suspicious activities or hosts on the network.

The agent can back-track and block suspicious activities, installations of dangerous artefacts or it can disconnect or isolate host system.

By regularly updating detenction rules and active measures Elastic Security Labs contributes to the global community of users.

Image
Show detailed info