Allan Gray Strengthens Detection Coverage and Automates Response with Securonix

Download

Allan Gray already had strong visibility across its environment. The challenge was building on that foundation while gaining access to broader analytics capabilities and avoiding the complexity of simply recreating years of legacy policies.

With Securonix, Allan Gray migrated from its previous SIEM in less than 45 days and reviewed approximately 250 legacy Splunk policies, identifying about 150 relevant policies for coverage. The team then expanded its detection program with UEBA, Threat Models, MITRE ATT&CK coverage, contextual enrichment, and automated response workflows.

The result is a more focused security operations environment designed around relevant detections and automated response, while giving Allan Gray additional capabilities to continue developing its security program.