Exabeam, the security analytics and automation company, announced a partnership with Snowflake, the Data Cloud company, to augment Snowflake data lakes with Exabeam security analytics and automation. The partnership enables organizations to identify risks and respond swiftly to incidents across their entire business ecosystem.

The COVID-19 pandemic has accelerated digital transformation, expediting the move to the cloud and increasing demand for improved productivity and efficacy through automation. Organizations can now quickly move data and security to the cloud by migrating to Snowflake Data Cloud and Exabeam SaaS Cloud.

Automating workflow

Security teams can quickly detect, investigate and respond to complex threats with the help of analytics and automation skillsBy adding the analytics and automation capabilities of Exabeam to the data stored within Snowflake, security teams can quickly and efficiently detect, investigate and respond to complex threats.

The combination of both solutions advances an organization’s security posture by automating the entire workflow from data collection through response, enabling fast and consistent outcomes.

Cloud-based security analytics

With demand for cloud technology surging amid the shift to remote working, we proudly welcome Snowflake to our partner network,” said Adam Geller, Chief Product Officer, Exabeam.

Using the combination of the Exabeam Cloud Connector for Snowflake with Exabeam Advanced Analytics, joint customers can easily apply intelligence and automation capabilities to their data stored within Snowflake's platform. This addresses the increasing market need for cloud-based security analytics on third-party logs sent to Snowflake.

Identifying cyberthreats

Security data continues to grow in size and complexity, and a fragmented architecture keeps many organizations struggling to mobilize it for protecting the enterprise,” said Omer Singer, Head of Cybersecurity Strategy at Snowflake.

Snowflake’s unique architecture eliminates data silos, providing organizations a single scalable and cost-effective platform for all their data, while Exabeam’s security analytics adds intelligence and automation to strengthen an organization’s ability to identify and respond to cyberthreats across subsidiaries, geographies, and public cloud providers.

Case study

In 2020, several large-scale corporate data breaches centered around compromised credentials of cloud-based data stores. In one example, more than 5 million guests of Marriott hotels were impacted when cybercriminals stole the login credentials of Marriott employees, likely through phishing or credential stuffing.

The information was then used to siphon personal customer details such as birth dates, contact information, as well as hotel and airline loyalty program accounts.

Technical integration

Exabeam provides real-time mapping of logs stored within Snowflake and attributes all activity and behavior to users and devices Combining Exabeam’s security analytics with Snowflake’s data platform can provide protection against credential-based attacks, including insider threats. The technical integration between the Exabeam SaaS Cloud and Snowflake Data Cloud is done through the new Exabeam Cloud Connector for Snowflake, which allows for easy ingestion of data stored in Snowflake. Exabeam provides continuous, real-time mapping of logs stored within Snowflake and attributes all activity and behavior to users and devices.

This attribution, with additional data and context, provides visibility into abnormal or risky activity to detect malicious insiders or attacks involving compromised credentials. As a new addition to the 40-plus existing Exabeam Cloud Connectors, the Cloud Connector for Snowflake also allows for monitoring of Snowflake audit logs in Exabeam Advanced Analytics to detect anomalous account behaviors within the application itself.

Assisting security operations

The proliferation of data is central to all businesses, and so is the need to guard against malicious attacks – especially now, as enterprises rely so heavily on data clouds like Snowflake,” added Chris Stewart, Senior Director, Business Development for Exabeam.

 “This partnership advances our mission to assist security operations teams in quickly detecting, investigating, and responding to incidents throughout the enterprise.

Download PDF version Download PDF version

In case you missed it

Visual AI Company AnyVision Changes its Name to Oosto
Visual AI Company AnyVision Changes its Name to Oosto

AnyVision announced today that the company will change its name to Oosto. The new name reflects the company’s evolution and vision for the future which is shaped, in part, by a new collaboration with Carnegie Mellon University’s (CMU) CyLab Biometric Research Center. The CMU partnership will focus on early-stage research in object, body, and behavior recognition. Vision AI Oosto CEO, Avi Golan remarks, "Historically, the company has focused on security-related use cases for our watchlist alerting and touchless access control solutions. With the launch of Oosto, we’re looking beyond the lens of security to include ways our solutions can positively impact an organization’s safety, productivity and customer experience.” AnyVision pioneered Vision AI to automate watchlist alerting, identifying security risks as well as valuable customers in real-time to personalize customer experiences and enhance physical security. The rebranded Oosto will leverage the power of Vision AI to enhance the safety of customers, guests, and employees. Solutions include touchless access control, video analytics, and new flavors of video-based recognition (object, body, and behavioral recognition), which deliver the insights and alerts to protect pivotal stakeholders from bad actors and security threats. Partnership with CyLab Biometric Research Center The company’s research partnership with Carnegie Mellon University’s (CMU) CyLab Biometric Research Center will focus on advanced object classification and behavior recognition algorithms for commercial use cases. This collaboration will help Oosto address a broad range of safety-related use cases, including object detection (e.g., weapons on school grounds) and behavioral analysis (e.g., when someone falls down). As part of the partnership, Marios Savvides, a Professor of Electrical and Computer Engineering (ECE) and founder and director of the Biometrics Center at CMU, will join Oosto as the Chief AI Scientist to expand Oosto’s AI team led by CTO, Dieter Joecker. “We were impressed by Oosto's commitment to the fair and ethical use of the technology, preserving user privacy, and creating safer spaces for everyone,” said Professor Marios Savvides. “These shared values make Oosto an ideal research partner for CMU to advance object, body, and behavioral recognition and to positively impact our collective safety.” Long histoy in artificial intelligence Over the past 10 years, more than 400 startups linked to CMU have raised more than $7 billion in funding. CMU has a long history in artificial intelligence including the creation of the first AI computer program in 1956 and pioneering work in self-driving cars, facial recognition, and natural language processing. ECE Professor Marios Savvides was named one of the “2020 Outstanding Contributors to AI” awards from the former U.S. Secretary of the Army. His research has been focused on developing core AI and machine-learning algorithms that were successfully applied for robust face detection, face recognition, iris biometrics, and most recently, general object detection and scene understanding. Savvides has generated over 35 patents and patent publications, and over 50 unpublished patent applications to date. "Under the leadership of Prof. Savvides, CMU’s CyLab Biometric Research Center has an impressive track record of successfully transferring AI research out of a lab environment and into reliable and scalable solutions," added Golan. "Visual intelligence is in its infancy and there is so much more work yet to be done. With this partnership, we now have an elite U.S.-based AI research center that will work in concert with our existing AI teams to accelerate the development of advanced deep learning algorithms and exploration of new safety-related use cases, markets, and industries, including medical, payments, and smart cities.” As part of these corporate rebranding efforts, the company is also renaming its products to OnWatch (formerly A Better Tomorrow), OnAccess (formerly Abraxas), and OnPatrol.

How Well Do Systems Meet Video Surveillance Needs In Prisons?
How Well Do Systems Meet Video Surveillance Needs In Prisons?

Keeping prisoners safely housed is among the biggest challenges the security industry faces. Correctional applications of security technology are often more extreme and require a specialized mix of technologies. We asked our Expert Panel Roundtable: What are the video security and surveillance needs in prisons, and how well do technologies meet those needs? Are there any ethical qualms about selling to prisons?

Which Technologies Are Transforming Airport Security?
Which Technologies Are Transforming Airport Security?

Air travel is returning to pre-pandemic levels. COVID and its aftermath have added new compliance and operational concerns for airport security, and social and political volatility around the world emphasises the need for constant vigilance. A range of new technologies are enhancing airport security, not to mention providing new tools to simplify processes throughout the airport. We asked our Expert Panel Roundtable: Which technologies are transforming airport security?