[
NetWitn... Reviews
](https://www.g2.com/products/netwitness-platform/reviews)

[
NetWitn... Reviews
](https://www.g2.com/products/netwitness-platform/reviews)

# NetWitness Platform Features

##### 
## Network Management (3)

Activity Monitoring

Documents the actions from endpoints within a network. Alerts users of incidents and abnormal activities and documents the access point.

Asset Management

Keeps records of each network asset and its activity. Discovers new assets accessing the network.

Log Management

Provides security information and stores the data in a secure repository for reference.

Show More

##### 
## Incident Management (3)

Event Management

Alerts users of incidents and allows users to intervene manually or triggers an automated response.

Automated Response

Reduces time spent remedying issues manually. Resolves common network security incidents quickly.

Incident Reporting

Documents cases of abnormal activity and compromised systems.

Show More

##### 
## Security Intelligence (4)

Threat Intelligence

Stores information related to common threats and how to resolve them once incidents occur.

Vulnerability Assessment

Analyzes your existing network and IT infrastructure to outline access points that can be easily compromised.

Advanced Analytics

Allows users to customize analytics with granulized metrics that are pertinent to your specific resources.

Data Examination

Allows users to search databases and incident logs to gain insights on vulnerabilities and incidents.

Show More

##### 
## Analysis (8)

Continuous Analysis

Constantly monitors traffic and activity. Detects anomalies in functionality, user accessibility, traffic flows, and tampering.

Behavioral Analysis

Constantly monitors acivity related to user behavior and compares activity to benchmarked patterns and fraud indicators.

Data Context

Provide insights into why trends are occurring and what issues could be related.

Activity Logging

Monitors, records, and logs both real-time and post-event activity.

Incident Reporting

Produces reports detailing trends and vulnerabilities related to their network and infrastructur

Network Visibility

Provides all-encompassing display and analysis of environments, resources, traffic, and activity across networks.

Metadata Enrichment

Facilitates Artificial Intelligence (AI) such as Machine Learning (ML) to enable data ingestion, performance suggestions, and traffic analysis.

Metadata Management

Indexes metadata descriptions for easier searching and enhanced insight

Show More

##### 
## Detection (6)

Anomaly Detection

Constantly monitors activity related to user behavior and compares activity to benchmarked patterns.

Incident Alerts

Gives alerts when incidents arise. Some responses may be automated, but users will still be informed.

Activity Monitoring

Monitors the actions from endpoints within a network. Alerts users of incidents and abnormal activities and documents the access point.

Multi-Network Monitoring

Provides monitoring capabilities for multiple networks at once.

Asset Discovery

Detect new assets as they enter a network and add them to asset inventory.

Anomaly Detection

Constantly monitors activity related to user behavior and compares activity to benchmarked patterns

Show More

##### 
## Automation (4)

Workflow Mapping

Visually displays connected applications and integrated data. Allows customization and management of workflow structures.

Workflow Automation

Streamline the flow of work processes by establishing triggers and alerts that notify and route information to the appropriate people when their action is required within the compensation process.

Automated Remediation

Reduces time spent remedying issues manually. Resolves common network security incidents quickly.

Log Monitoring

Constantly monitors logs to detect anomalies in real time.

Show More

##### 
## Orchestration (4)

Security Orchestration

Integrates additional security tools to automate security and incident response processes.

Data Collection

Collects information from multiple sources to cross reference and build contextual to correlate intelligence.

Threat Intelligence

Stores information related to common threats and how to resolve them once incidents occur.

Data Visualization

Offer pre-built and custom reporting and dashboards for quick insights into system states.

Show More

##### 
## Response (6)

Alerting

Clearly notifies users with relevant information and anomalies in a timely manner.

Performance Baselin

Sets a standard performance baseline by which to compare log activity.

High Availability/Disaster Recovery

Allows platform to scale to size of desired environment and configured with high availability and disaster recovery capabilities.

Incident Alerts

Gives alerts when incidents arise. Some responses may be automated, but users will still be informed.

Response Orchestration

Integrates additional security tools to automate security and incident response processes.

Response Automation

Reduces time spent remedying issues manually. Resolves common network security incidents quickly

Show More

##### 
## Detection & Response (4)

Response Automation

Reduces time spent remedying issues manually. Resolves common network security incidents quickly.

Threat Hunting

Facilitates the proactive search for emerging threats as they target servers, endpoints, and networks.

Rule-Based Detection

Allows administrators to set rules specified to detect issues related to issues such as sensitive data misuse, system misconfiguration, lateral movement, and/or non-compliance.

Real-Time Detection

Constantly monitors system to detect anomalies in real time.

Show More

##### 
## Management (3)

Extensibility

Allows for customized support for hybrid environments

Workflow Automation

Streamline the flow of work processes by establishing triggers and alerts that notify and route information to the appropriate people when their action is required within the compensation process.

Unified Visibility

Provides all-encompassing display and analysis of environments, resources, traffic, and activity across networks.

Show More

##### 
## Analytics (3)

Threat Intelligence

Stores information related to common threats and how to resolve them once incidents occur.

Artificial Intelligence & Machine Learning

Facilitates Artificial Intelligence (AI) such as Machine Learning (ML) to enable data ingestion, performance suggestions, and traffic analysis.

Data Collection

Collects information from multiple sources to cross reference and build contextual to correlate intelligence.

Show More

##### 
## Agentic AI - Security Information and Event Management (SIEM) (4)

Autonomous Task Execution

Capability to perform complex tasks without constant human input

Multi-step Planning

Ability to break down and plan multi-step processes

Proactive Assistance

Anticipates needs and offers suggestions without prompting

Decision Making

Makes informed choices based on available data and objectives

Show More

##### 
## Agentic AI - User and Entity Behavior Analytics (UEBA) (4)

Autonomous Task Execution

Capability to perform complex tasks without constant human input

Multi-step Planning

Ability to break down and plan multi-step processes

Proactive Assistance

Anticipates needs and offers suggestions without prompting

Decision Making

Makes informed choices based on available data and objectives

Show More

##### 
## Agentic AI - Extended Detection and Response (XDR) Platforms (3)

Autonomous Task Execution

Capability to perform complex tasks without constant human input

Proactive Assistance

Anticipates needs and offers suggestions without prompting

Decision Making

Makes informed choices based on available data and objectives

Show More

##### 
## Services - Network Detection and Response (NDR) (1)

Managed Services

Offers managed network detection and response services.

Show More

##### 
## Services - Extended Detection and Response (XDR) (1)

Managed Services

Offers managed detection and response services.

Show More

[

 ![EventSentry](https://images.g2crowd.com/uploads/product/hd_favicon/278afada11d7e387a57f1df48a3d0458/eventsentry.svg "EventSentry")

Sponsored

EventSentry

4.6/5

(50)

Visit Website

](javascript:void(0))

## Top-Rated Alternatives

[

 ![IBM QRadar SIEM](https://images.g2crowd.com/uploads/product/hd_favicon/7d76baae79036d41d25c4a6c46e5af43/ibm-ibm-qradar-siem.svg "IBM QRadar SIEM")

IBM QRadar SIEM

4.4/5

(280)

](https://www.g2.com/products/ibm-ibm-qradar-siem/reviews)

[

 ![Splunk Enterprise Security](https://images.g2crowd.com/uploads/product/hd_favicon/b92838221b8df42dd6b5bb09c9f8ff55/splunk-enterprise-security.svg "Splunk Enterprise Security")

Splunk Enterprise Security

4.3/5

(222)

](https://www.g2.com/products/splunk-enterprise-security/reviews)

[

 ![Microsoft Sentinel](https://images.g2crowd.com/uploads/product/hd_favicon/a8a99a96fda235658139f710592f8a53/microsoft-sentinel.svg "Microsoft Sentinel")

Microsoft Sentinel

4.4/5

(272)

](https://www.g2.com/products/microsoft-sentinel/reviews)

[
View All Alternatives
](https://www.g2.com/products/netwitness-platform/competitors/alternatives)

NetWitness Platform Comparisons

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_91bcb2c063fcfb0a82dfedcf1a6463d1/splunk-enterprise-security.jpg "Product Avatar Image")

Splunk

4.3/5

(246)

[
Compare Now
](https://www.g2.com/compare/netwitness-platform-vs-splunk-enterprise-security)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_1616bb8054a8f27102d8ba094c99bab5/ibm-ibm-qradar-siem.png "Product Avatar Image")

IBM QRadar SIEM

4.4/5

(335)

[
Compare Now
](https://www.g2.com/compare/ibm-ibm-qradar-siem-vs-netwitness-platform)

 ![Product Avatar Image](https://images.g2crowd.com/uploads/product/image/small_square/small_square_4e2b08dd17397bdc99a5658447cbc589/microsoft-sentinel.jpg "Product Avatar Image")

Microsoft Sentinel

4.4/5

(295)

[
Compare Now
](https://www.g2.com/compare/microsoft-sentinel-vs-netwitness-platform)

##### Categories on G2

[
Extended Detection and Response (XDR) Platforms
](https://www.g2.com/categories/extended-detection-and-response-xdr-platforms)[
Security Information and Event Management (SIEM)
](https://www.g2.com/categories/security-information-and-event-management-siem)[
Security Orchestration, Automation, and Response (SOAR)
](https://www.g2.com/categories/security-orchestration-automation-and-response-soar)

[
User and Entity Behavior Analytics (UEBA)
](https://www.g2.com/categories/user-and-entity-behavior-analytics-ueba)[
Network Detection and Response (NDR)
](https://www.g2.com/categories/network-detection-and-response-ndr)

Show More

##### Explore More

[
What is the most affordable work management software for SMBs?
](https://www.g2.com/discussions/what-is-the-most-affordable-work-management-software-for-smbs)[
Where to find the best VoIP service for ecommerce business
](https://www.g2.com/discussions/where-to-find-the-best-voip-service-for-ecommerce-business)[
Best customer success platform for growing software companies
](https://www.g2.com/discussions/best-customer-success-platform-for-growing-software-companies)

[
Top tools for designing and testing APIs
](https://www.g2.com/discussions/top-tools-for-designing-and-testing-apis)[
Which solution supports RBA for multi-device login scenarios?
](https://www.g2.com/discussions/which-solution-supports-rba-for-multi-device-login-scenarios)[
Pros and Cons Details
](https://www.g2.com/products/netwitness-platform/reviews?qs=pros-and-cons)

Show More

[
What is the most affordable work management software for SMBs?
](https://www.g2.com/discussions/what-is-the-most-affordable-work-management-software-for-smbs)[
Where to find the best VoIP service for ecommerce business
](https://www.g2.com/discussions/where-to-find-the-best-voip-service-for-ecommerce-business)[
Best customer success platform for growing software companies
](https://www.g2.com/discussions/best-customer-success-platform-for-growing-software-companies)

[
Top tools for designing and testing APIs
](https://www.g2.com/discussions/top-tools-for-designing-and-testing-apis)[
Which solution supports RBA for multi-device login scenarios?
](https://www.g2.com/discussions/which-solution-supports-rba-for-multi-device-login-scenarios)[
Pros and Cons Details
](https://www.g2.com/products/netwitness-platform/reviews?qs=pros-and-cons)