Review Summary
Users appreciate Recorded Future Intelligence Platform for its comprehensive threat intelligence capabilities, easy- ...
Users appreciate Recorded Future Intelligence Platform for its comprehensive threat intelligence capabilities, easy- ...
Recorded Future, the world's largest threat intelligence company, offers a comprehensive Intelligence Cloud platform. It provides end-to-end intelligence, ranging from adversaries and infrastructure to targets. The tool indexes the internet, including open and dark web as well as technical sources, offering real-time visibility into an expanding attack surface and threat landscape. This helps enterprises reduce risk and drive their business securely with speed and confidence. Though headquartered in Boston, Recorded Future has its offices and employees spread globally. It assists a vast range of businesses and governmental organizations with real-time, unbiased and actionable intelligence.
Do You Manage Peer Insights at Recorded Future?
Access Vendor Portal to update and manage your profile.
As it relates to the threat intelligence module within the Recorded Future platform, we really like the graphical representations of threats to our organization, the ability to alert upon those threat actors or entities, and the ability to conduct deep web searches within Recorded Future's platform. We also really like the malware and ransomware intelligence additions.
Lots of information available on entities along with detection rules.
Threat Intelligence since it's aligned with what is happening in the configured technologies and watch lists. The Integration allowing data ingestion from the main VM and CMDB vendors and taking real advantage of that data to connect the dots for risk assessment.
We do have a few items that we do not like about the threat intelligence module and those are that it is very hard to communicate to leadership why an entity is being tracked as a threat to our organization, the administrative burden to feed the watchlists that help to populate accurate threat data, and the lack of repudiation on the reported threat list.
It can be a bit complicated to learn all the behind the scenes reasons for how they evaluate the risk of entities.
Complexity for non technical team, non technical team is not used to accessing the platform and the alerts are normally translated by the analyst. The threats need to be explained by the Technical team in an executive format. Training for non technical team can be helpful to allow the entire IT department to engage with the tool.