Since 2015, Gatewatcher has been protecting the critical networks of worldwide large companies and public institutions. Our Network Detection and Response (NDR) and Cyber Threats Intelligence (CTI) solutions, quickly detect and respond to any cyber-attacks. Thanks to AI converging with dynamic analysis techniques, Gatewatcher delivers a real-time 360-degree view of threats, covering both cloud and on-premise infrastructures.
Do You Manage Peer Insights at Gatewatcher?
Access Vendor Portal to update and manage your profile.
What we appreciate most about the product is the introduction of metadata management, which has truly revolutionized our SOC (Security Operations Center) analysis. The ability to leverage rich and well-structured metadata enables us to correlate events much more efficiently and gain deeper security insights, significantly improving both detection and incident response. Additionally, the deployment support provided by the vendor was outstandingresponsive, knowledgeable, and efficient, which made the implementation process smooth and straightforward. Finally, the solutions enhanced performance allows us to process high-throughput traffic at the core network level, ensuring we maintain strong security without sacrificing speed or scalability. Overall, these aspects have made a significant positive impact on our operations.
Excellent detection capabilities: good detection engines with powerful tuning options. Built-in dashboards provide quick analysis and response. Very good support team and training team.
The interface is intuitive and easy to use. Alerts are aggregated based on their risk score, which helps us quickly focus on the most critical issues and prioritize investigations according to the level of risk.
What we dislike most about the product is the current limitation of the recently implemented behavioral detection feature. While the introduction of behavioral analytics is an important and promising evolution, the scope of available rules is still quite limited at this stage. However, it is encouraging to see that these capabilities are continually evolving and being expanded over time. We look forward to more comprehensive rule sets and greater flexibility in future updates.
User Interface is difficult to learn / hard to get used to. Tuning part is not easy and takes time The product overall is quite complex
We would like to add the ability to perform conditional whitelisting based on specific fields, allowing for more granular and precise alert filtering.