Security data analytics company Devo Technology forged a strategic technical partnership with Detecteam, an attack simulation and detection lifecycle management company. The partnership will specifically address critical detection-engineering challenges, combining Devo threat detection, investigation and response with Detecteam’s REFLEX platform to create an integration that continuously validates and improves detection capabilities based on real-world attack scenarios.
The integrated solution addresses challenges by automating the detection lifecycle. By implementing real-world attack scenarios and continuous validation, security teams can automatically generate, deploy and test detections in real time, transforming weeks of manual work into a dynamic, adaptive process.
This allows it to deliver:
- Rapid adaptation to emerging threats, automatically transforming threat intelligence into actionable detections in near-real time.
- Proactive detection validation by continuously testing Devo detections against real-world attack scenarios to identify and close detection gaps.
- A solution to bridge expertise gaps, accelerating detection development and deployment and reducing the need for expertise.
“With our joint solution, customers can validate their readiness to face threats and create actionable data and detections in Devo,” said Fred Wilmot, the CEO and co-founder of Detecteam. “This partnership removes complexity and manual effort, cutting down critical response time so teams can adapt faster to real-world threats—not just theoretical ones.”
Devo also announced new features for its security data platform to empower security teams to work with a unified TDIR workflow. Upgraded features include:
- Accelerated incident resolution, with customizable case templates and single-click report generation to reduce analyst workload and shorten incident response.
- Rapid automation deployment, seamlessly sharing and deploying playbooks across domains to reduce automation setup time for organizations with multiple environments.
- Enhanced custom automation for creating and deploying custom Python scripts to automate complex security tasks and maximize operational efficiency.
“Security teams are still overwhelmed by alerts, holding them back from proactive detection and investigation,” said Devo field CTO, Jason Mical. “These platform enhancements, combined with the Detecteam integration, provide security teams with a holistic, automated approach to detections and investigations, reducing the time they spend on repetitive, mundane tasks.”
Visit Devo at RSA Conference booth #1249.