An integrated server with AI agent capability and risk detection capability, covering security, monitoring, and business scenarios

2. How to implement security functions?

> Lateral Movement Attack Detection

TiCenter comes with a risk detection engine (TiDetector) that can use the application and business messages uploaded by TiFlow Microprobe as metadata to detect attack risks; The biggest advantage of this detection capability is that based on the fully blind spot free deployment of TiFlow Microprobe, it can easily determine global risks in cloud and cloud native environments, rather than just point and line detection capabilities; Can have an effect on attacking the east-west lateral movement of clouds; See details;

> HIDS/EDR Implementation

The TiScanner host security baseline data (and TiFlow's system log data) can help TiCenter quickly implement the main application scenarios of HIDS/EDR;

> Cloud Abnormal Traffic Analysis

Based on TiCenter's visual dashboard and alarm algorithm, combined with TiFlow's rich network layer indicators and asset information, it can also achieve monitoring and analysis of abnormal traffic related to cloud assets;

> SOC?or XDR?

TiCenter can also access third-party alarm data, combined with TiFlow and TiScanner data to achieve more powerful comprehensive analysis capabilities; and can use TiCenter AI agent modules to achieve more intelligent security analysis.