+
+

Related Products

  • PathSolutions TotalView
    43 Ratings
    Visit Website
  • Blumira
    150 Ratings
    Visit Website
  • ManageEngine OpManager
    1,660 Ratings
    Visit Website
  • Site24x7
    1,160 Ratings
    Visit Website
  • ManageEngine ADAudit Plus
    516 Ratings
    Visit Website
  • Auvik
    668 Ratings
    Visit Website
  • SOCRadar Extended Threat Intelligence
    104 Ratings
    Visit Website
  • Grafana Cloud
    731 Ratings
    Visit Website
  • TelemetryTV
    276 Ratings
    Visit Website
  • Statseeker
    35 Ratings
    Visit Website

About

Corelight brings you the power of Zeek without Linux issues, NIC problems, or packet loss. Deployment takes minutes, not months. After all, your top people should be threat hunting, not troubleshooting. The most capable platform for understanding and protecting your network is built on open source. You'll have open access to your metadata and the ability to customize and extend your capabilities — together with a vibrant community. We’ve built the leading team of Zeek experts and contributors, and have assembled a world-class support team that continually delights customers with their unparalleled knowledge and fast response times. Proactive, secure, and automatic—when you enable Corelight Dynamic Health Check your Corelight Sensor sends performance telemetry back to Corelight to proactively monitor for things like disk failures or abnormal performance metrics that could indicate a problem.

About

Rapid7 Incident Command is an AI-powered next-generation SIEM designed to deliver unified visibility and faster threat response across modern attack surfaces. It brings together logs, telemetry, asset context, and threat intelligence into a single, actionable view across cloud, SaaS, endpoints, and hybrid environments. Incident Command uses AI-driven behavioral detections and alert triage to cut through noise and surface the threats that matter most. Every alert is enriched with exposure, vulnerability, asset risk, and third-party intelligence to guide decisive action. Built-in SOAR automation and guided AI response workflows help reduce dwell time and accelerate containment. The platform supports advanced investigations with natural language search, attack path reconstruction, and MITRE ATT&CK alignment. Rapid7 Incident Command enables security teams to scale their SOC with speed, clarity, and confidence.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Network evidence, investigation, triage, and hunting platform for everyone

Audience

Rapid7 Incident Command is ideal for enterprise security teams, SOC analysts, and security leaders seeking an AI-powered SIEM to unify visibility, reduce alert fatigue, and accelerate threat detection and response across hybrid environments

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Corelight
Founded: 2013
United States
www.corelight.com

Company Information

Rapid7
Founded: 2000
United States
www.rapid7.com/products/siem/

Alternatives

Fidelis Elevate

Fidelis Elevate

Fidelis Security

Alternatives

NetworkMiner

NetworkMiner

Netresec
Alert Logic

Alert Logic

Fortra
Zeek

Zeek

The Zeek Project
Vectra AI

Vectra AI

Vectra

Categories

Categories

Endpoint Detection and Response (EDR) Features

Behavioral Analytics
Blacklisting/Whitelisting
Continuous Monitoring
Malware/Anomaly Detection
Prioritization
Remediation Management
Root Cause Analysis

SIEM Features

Application Security
Behavioral Analytics
Compliance Reporting
Endpoint Management
File Integrity Monitoring
Forensic Analysis
Log Management
Network Monitoring
Real Time Monitoring
Threat Intelligence
User Activity Monitoring

Integrations

AuthPoint
Chronicle
Cisco Duo
Confluent
CyCognito
Exabeam
Forcepoint Behavioral Analytics
Gigamon
Google Digital Risk Protection
Humio
Joe Sandbox
NXLog
Optiv Managed XDR
Palo Alto Networks DNS Security Service
PassiveTotal
ReversingLabs
SOCRadar Extended Threat Intelligence
Squadcast
cPacket

Integrations

AuthPoint
Chronicle
Cisco Duo
Confluent
CyCognito
Exabeam
Forcepoint Behavioral Analytics
Gigamon
Google Digital Risk Protection
Humio
Joe Sandbox
NXLog
Optiv Managed XDR
Palo Alto Networks DNS Security Service
PassiveTotal
ReversingLabs
SOCRadar Extended Threat Intelligence
Squadcast
cPacket
Claim Corelight and update features and information
Claim Corelight and update features and information
Claim Rapid7 Incident Command and update features and information
Claim Rapid7 Incident Command and update features and information