Product Overview
The BIG Managed Security Operations Platform is an intelligent security
operations system that integrates big-data analytics and artificial
intelligence. It establishes a closed-loop protection framework spanning
threat detection through response, integrates a broad range of security
technologies and products, and collects and analyzes large volumes of
security data in real time. This helps organizations gain comprehensive
visibility into their cybersecurity posture and evolve from passive to
proactive defense. The platform supports daily security operations with
capabilities including asset management, vulnerability management, risk
assessment, monitoring and alerting, and attack tracing. It provides
one-stop security services for pre-incident risk assessment, in-incident
monitoring, and post-incident investigation and attribution.
Core Capabilities
Threat Monitoring and Alerting
Combines machine learning, artificial intelligence, and threat
intelligence to accurately detect known and unknown threats and issue
timely alerts. Threat hunting based on simulated attacker behavior
proactively identifies potential vulnerabilities and security risks.
Incident Handling and Response
When a security incident is detected, predefined policies enable
automated or manual response to rapidly contain threats and reduce
the workload of security operations teams. The platform can integrate
with firewalls, IPS devices, and other tools for automated blocking
or isolation.
Security Posture Analysis and Visualization
Models and analyzes asset operations and security status from multiple
dimensions, then presents insights through intuitive visual
dashboards. Customizable charts and reports help users understand
cybersecurity conditions and trends more clearly.
Asset and Vulnerability Management
Uses rule libraries, threat intelligence, and behavioral analysis
models to accurately identify advanced persistent threats, malware,
lateral movement, and other security incidents.
Compliance and Risk Assessment
Includes knowledge bases such as China’s MLPS 2.0 standard to
automatically assess system compliance and generate remediation
reports. It also comprehensively evaluates asset and business
vulnerabilities and attack risks to provide an overall security view.
Key Advantages
Comprehensive Monitoring and Accurate Detection
Provides broad coverage of network traffic data to identify threats
and malicious activity in a timely manner. Big-data and machine
learning technologies support highly accurate threat detection and
classification.
Rapid Response and Intelligent Analysis
Automated workflows accelerate responses to security incidents and
reduce remediation time. AI-powered deep analysis and investigation
improve the efficiency of security operations.
Clear Visualization and Ease of Use
Rich, customizable visual charts and reports help users understand
their cybersecurity status at a glance. The clean interface and
intuitive workflows make the platform easy to adopt and operate.
Cross-Platform Integration and Collaborative Defense
Integrates a wide range of network devices and security products for
unified management and monitoring across the network. It can connect
seamlessly with other security platforms to enable coordinated,
cross-platform defense.
Security and Reliability
Rigorous security controls and technologies protect the platform
itself. High availability and stability help ensure continuous
operation and dependable service delivery.