Las respuesta a estas dos preguntas fueron, en general, qu laplataforma es altamenteefectiva en Deteccn de amenazas, y también simplifce la cantidad de trabajo requerido para deleclar amends, aunque reviewers said that they needed more time before being certain, Here isa sampling of answers to those two questions The most frequent area highlighted for improvement is that ata plug-ins, Data is transmitted fom devices vis plug-ins, many of which ae pre-built, Building customized plug-ins however is ‘more difficult than some would like “Alien Vault has detected suspicious activity before cour antivirus software could, seeing the activity prior to the scan or prior to a virus definition being written, thas also reported a number of vulnerabilities we did not know we had, and in some cases helped us to trouble shoot bad settings, and faulty programs by showing us the suspicious activity. I looks at activity and behavior, not just comparing programs to list of known viruses’ Greg Baugh VP Data Processing, Peoples National Bank 11-50 employees November 2015 “v's prety good, like I said; it catches that 60-10% ‘the bell curve of threat activity. Not everything, but pretty good.” of hntps:/transiate googlousercontent comranslate_f “The IDS function in AlienVault in particular has helped us find quite # number of issues that we have had to ‘deal with. The very nature of the tools to monitor your environment and report on potential issues. Como un SIEM (plus many other thi {rst indicators of compromise or some other security problema, In addition to that the range of tools within fends tobe one of the Alien Vault has given usa lot of vis not have before.” [Administrador Information Technology, Retail Industry 10,000~ employees ‘September 2015 1108 2wver20t7 ‘Aaron Baillo, Security Architecture and Operations Lead University of Oklahoma, 5,001-10,000 employ November 2015 Pagina 20 “AlienVault USM has been very effective in helping to spot several threats in our environment, AV was able to spot a potential DLP event recently, which was not noticed on our Mail Gateway. AlienVault has also spotted C&C activity.” Director Information Technology Banking Industry 201-500 employees ‘Seplember 2015 Simplification/ Work Timesavings “We are new to AlienVault but the litle we have seen i dois remarkable, Instead of going through the system's device logs, you cam easily access the logs and all the issues relating o the devices with just a lick. Ithas reduced the amount of ti ue we spent investigating issues on our network devices.” Augustine Oteng Brobbey Network and Systems Engineer, Genteq Systems Diciembre 2015 “Using AlienVault has resulted in reduced effort to ‘detect and manage threats. The SEIM component ‘means we are no longer responding to every IDS alert ‘and have spent for less time tuning the signatures as the SEIM component does enough analysis in most instances to provide real value.” Derick Burton, Group Security Operations Manager, Digicel Group, Telecommunieations ptember 2015, hntps:/transiate googlousercontent comranslate_f Informe del producta de AlienVault USM ™ Pégina 19 de 28 © TrustRadivs Inc. 2016 “AlienVault has allowed us to see warnings that have ‘been hidden deep within our network, El aiimero de resources We would have required to effectively sort ‘through logs would have exceeded the cost of what ‘the AlienYault system is capable of accomplishing in a lows us to detect trends and check single device. It ‘our traffic with currently known ongoing attacks.” Administrador Information Technology, Hospital & Health Care 11-50 employees Diciembre 2015, “I believe our organization has greatly reduced the amount of work it would traditionally take us to identify security threats. Hetwoen the USM’s vulnerat scanning, traffic monitoring, and IDS capabilites formation from our firewalls o along with the syslog our perimeter, it aggregates all the data into an easy to read format and you can find it allin ome place." Michael Eller, Junior System Administrator Puget Sound Surgical Center 51-200 employees November 2015 “Yes, AlienVaull Unified Security Management not ‘only has a very minimum entry barrier but it's also very effective and you don’t need a large team to operate with a so, Even the casual IT guy can make best use of few days of training.” Analyst, Information Technology and Services 201-500 employees ‘November 2015 18126 Informe del producta de AlienVault USM ™ Page 20 0f 28, ‘©TrustRadivs Ine. 2016 Pagina 2hlienVault USM Customer Demografia ‘AlionVanle’s target markets primarily mid-sized organizations. Small and medium organizations sizeable 2 make up 52% of the reviews on TrustRadius. However, f reviewers actually belong ‘o-enterprises with over 1,000 employees, indicating thatthe AlienVault value proposition is also attractive to larger organizations, The breakdown of ratings by company size however does reveal stronger ratings from mid-sized companies. Reviewer's comments tend to support the view that the platform is lexible enough to support broad range of organization from small t very large, although some fee thatthe sweet spot is sidesized to large organizations rather than very large enterprises ‘Company Size EESHFBBptoyees MES employees FFB eployes) 3% 21% 8% “AlienVault excels in a small (o medium sized environment and it packs alot of value into its hella, I recommend it almost every day tc isan excellent place to start the security journey.” ts. ‘Aaron 8, Moftet Senior Information Security Consultant, VioPoint 11-50 employees November 2015 hntps:/transiate googlousercontent comranslate_f “Smal offices with no web facing assets may not be ‘the most ideal candidates for the USM platform. yo ‘would imagine this is best suitable for a medium to large size business with atleast one if not several web Facing asses.” Michael Eller, Junior System Administrator Puget Sound Surgical Center 00 employees ‘November 2015 “Cost and complexity are always concerns, but ifyou buy the right package and deploy it correctly it ean ‘cover any environment. There are simple deployments, ‘complex deployments, and even managed deployments. Iecan cover your needs ifsetup correctly. Greg Baugh VP Data Processing, Peoples National Banke 11-50 employees November 2015, Page 21 of 28 ‘eTrustRadius Ine. 2016 19126 Informe del producta de AlienVault USM ™ Pagina 22 ““AtienVault Unified Security is too expensive for smal ‘operations and not scalable enough for very large ‘Operaciones. I would recommend this for companies that have maybe five thousand hosts at most, and no less than a few hundred.” Jacob Lovell IT Security Analyst Associate ‘University of Georgia, Information Technology and Services 10,000 employees Diciembse 2015 “Because ofits fe deployed in a distributed manner, the platform is very sealable and can be used anywhere, from very small environments, to large enterprises. However, we have ound that for very small companies the cost ean be prohibitive ifn appliance needs tobe deployed.” Mike Kerem CTO, TrusiNet Information Technology and Services 11-50 employees Pagina 234 :envult Company and Product Deployment Details hntps:/transiate googlousercontent comranslate_f “AlienVault Unified Security Management is 2 perfect system for small to medium-sized Implementaciones. I could see some challenges with larger deployments that would require additional ‘time and effort to get it functioning appropriately, but it definitely ean be done. Farakt Hussain Manager Information Security, PriceMetrix 51-200 employees Diciembre 2015 Page 22 of 28 ‘eTrustRadivs Ine. 2016 20126 2wver20t7 Informe del producta de AlienVault USM ™ Company Status Privado Fundado 2007 Sede San Mateo CA Clientes ‘Over 3,000 commercial customers Customer Verticals Automotive, Chemical, Consumer Products, Education, Energy / Usiiies, Financial Services, Government, Heath Care Law Practice Legal Support Manfacturng, Real, Teshnalgy TT Servis Service Provider, ‘Telecommunications, Transportation, Gaming, Employees on Linkedin 227 Architecture and Deployment Options ‘The AlienVault USM platform can be deployed in a number of ways, It can be deployed asa single virtual or hardware appliance. Thee are three components to the USM platform: USM Sensor, [USM Server, and USM Logger, You can deploy them as separate components (in any combination of hardware and virtual appliances) or as an All-in-One device (wit each ofthese components combined into a single system) »vDhefieésleegiomiale for data collection and performs asset discovery and vulnerability assessment Seans as well as network-based intrusion detection systems (Host IDS requires the installation ofa lightweight sensor on individual systems). Multiple Sensors canbe deployed cross locations. > DAalotmdtteidiyitne Sensor is forwarded tothe Server for analysis and reporting »Dhusfowagisidtsidionas log data to meet long-term retention requtements For those who already have an Amazon Web Services cloud infrastructure, a version of the AlignVault USM for AWS is als available. The architecture consists of Sensor Nodes reporting into a Coattol Node. Precio ‘The USM All-in-One virual appliance pricing stats at $5,050, and the Ahin-One hardware appliance starts at $14,000, Sensors, servers and loggers can be purchased separately a5 well. UN subscription to the Alien Vault Labs threat intelligence updates is included in the fist year purchase ong with support and training, Professional services have an additonal cost, Page 23 of 28 ‘eTrustRadis Ine. 2016 Pagina 24nterview with AlienVault CEO, ‘Barmak Meftah hntps:/transiate googlousercontent comranslate_f 21126 2wver20t7 2015 was a great year for AlienVault, what drove that momentum? ‘Yes, 2015 was a evord year for us. De echo, our past four years have been record years, ‘which is very encouraging, We curently have 3,000 commercial customers, who rely on our platform for threat detection; and 285 MSSP partners who wrap their services around our product, ‘The main reason fortis suecess is two-fold. Firstly, out approach to threat detection and threat response is unique: we have a unified and simplified approach to how we help organizations of all sizes. We combine al he core security controls together with expert threat intelligence fom our labs teem and (Open Threat Exchange, which reduces the cost and complenity of threat detection, Pagina 25 any size organization that lacks the security resoutees to implement and manage a treat detection strategy. We have hundreds if not thousands of very large customers, but ‘they have smal security organizations or limited resources to address thie threat detection needs Hoving said that, [think your observation is spot on. As our brand recognition is increasing, and our approach to threat ‘detection is geting more traction, we ate getting pulled up-market so we are seeing increased numbers of larger deals. Qué es hntps:/transiate googlousercontent comranslate_f Informe del producta de AlienVault USM ™ ‘Tagrevbanibinmiec urbe yale cite companies of any sie: They canbe smal companies or hig companies, hut they share common stibutes their security organizations are typically seal; Ai esta a ack of seurty expertise and lack of fund for expensive point souions, Ese mathe sprety big and largely untapped ‘Those organizations really need simple, snifed solutions for teat detection and respuesta Ido think the ecuiy concerns of organizations have changed siniicamly, however, the cybersecurity sills shortage is con the se, As more organizations struggle ‘with he chllenges of hiring and retaining ff as well as the complexity of deploying aud manging multiple products, we've seen 8 surge n both end user customers and MSP partners deploying USM. “The original market you serviced was largely the SMB, but I think you are ‘now starting to sell to much larger ‘organizations as well. Is the product ‘equally appealing to large companies? | would characterize our target market as Deing the mid-market which i @ Hue different to SMB. However, we do go after SMB's too. “The reality is that we provide a solution for Page 24 of 28 ‘eTrustRadius Ine. 2016 market, the ability fo consume a form factor that is less complicated and has lot of security controls that are already orchestrated {na unified security management platform is an absolute must, From my experience of being inthis market fora long time, if you want o sell int this segment, selling point products and then expecting the end user to hire an expensive system integrator to glue those point products together doesn't work. I's very expensive ~ it oss it their CapE x and OpEx budgets. ‘But more importantly, there is an inherent 2wver20t7 Informe del producta de AlienVault USM ™ treat about iis that we sell he same product, AljenVault USM, to saaller companies that ‘we sll to larger companies. sn embargo, el larger companies need more of our products ‘because the sizeof the TT assets is much larger than the typical smaller company. (Our USM platform can be collapsed into ‘ery smal form-faefor or it ean seae out horizontally toa very large company that can also enjoy that all-in-one approach to deat ‘management and threat detection. Nosotros también fer lot of deployment flexibility since the [USM platform is available asa vgtal, physical and cloud appliance, ow are you approaching threat detection differently than other vendors? ‘There ae three main things tht differentiate us from some of te ater vendors that have ben inthe market for a while. ‘The first thing is that, in general, our approach to security visibility and threat management is more ofa “ets solve the business problem approach, rather than “let's focus on the technology point product” In our addressable Pagina 26 ‘That exponentially reduces the complexity of ingesting theea intelligence. “The third diferentiator that we have isthe way we gather tht threat data. We leverage a crowd-sourced approach to threat data sharing through our Open Threat Exchange, which enables security practitioners to openly research and collaborate on emerging ‘threats. This is a product unto itself that we launched three years ago and, in a very short amoun¢ of time, ifs gotten Tot of traction sound the globe, in more than 140 countries. ‘And, we have a very rich pariner ecosystem supporting the Open Thneat Exchange inchuding big security companies, HP and Intel, and several small vendors. What we do is erowd-soureetheeat data; everybody in the community contributes ther threat data hntps:/transiate googlousercontent comranslate_f lack of experise in these organizations where they are notable to ingest all the data and ‘orchestrate all these security controls on their propio. We've taken a very unique approach to threat detection and threat management by providing an integrated security platform that delivers all the core security capabilities required for threat detection “The second key strength is that we have an integrated threat intelligence platform. Como you know, when you think about security, there are three components 0 it, There's the astomation platform, s te frst thing we id. was simplify the automation platform by ‘bundling a lot ofthese point sotions under 4 unified security management platform. “The second thing insecurity is content, los security controls don't know what 9 do i they're no provided a rich set of threat. alos, We have a very integrated approach to that threat intelligence. The threat data and theat intelligence tht we have includes correlation rules, inteusion signatures, and threat vectors, which are all fed into our USM. platform whether it be virtual, physical, or inthe cloud, ina fully automsted fashion. Page 25 of 28, ‘eTrustRadivs Ine. 2016 positioned inthe “Visionary” quadrant and that is because ofthe combination of those thee differentiator, Do customers buy AlienVault prim toimprove network security, or to meet compliance requirements like PCI DSS? How important a requirement is compliance? sa bit of both, and it really depends on two ‘Vectors, It depends on the vertical industry thatthe company i in, and the compliance requirements that ave been imposed on. ellos. It also depends on the size of company and the maturity ofthe orgenizaton in their approach to threat detection. De hecho, cuando We survey newly acquired customers and ask them why they bought our platform, the three 23126 2wver20t7 SUT WERE ET no atibution back to whoever submited that threat data, to protect their identity ‘That allows for avery disaggregated, crowd. sourced, open and collaborative way to get threat intelligence from around the world from actual victims of breaches, which is invaluable, One ofthe benefits we provide to our customers is that we synthesize that threat data, write correlation rules and directives and provide those automatically to our unified security management platform ~ a service that no other vendor provides it’s customers. So, the combination of a simplified security ‘management platform, automated threat intelligence feeds, and our community- sourced threat data gives ws avery unique advantage to go after that under resourced mercado. IF you look atthe Gartner Magic Quadrant, we ar the only company Pagina 27 Follo ig some very public data breaches, security issues are Increasingly recognized asa significant risk factor for organizations. Es security a C-level sue now, or sit still primarily an TT concern? Its definitely becoming more of «boardroom issue and thats been the case forthe past three or four years. In fact, Ist on many. industry forum panels, and this is a pretty big conversation; the role of information security in general, and then, more specifically, the role ofthe C1SO is getting elevated dramatically, I'you compare where the industry has been the lst $-10 years, to where it is right now, there is an amplification of the role of seeurity, and that topic is dfinitely discussed inthe boardroom, {In much the same way that companies care about thei isk profile in doing business, | think the information risk or cyber risk is gelling elevated, and is being talked as about asa component ofthe overall risk to hntps:/transiate googlousercontent comranslate_f Informe del producta de AlienVault USM ™ IEE SCL NARS, el Sse ‘We have a very horizontal sellin that we care about the size of your security organization Ifyou look at our customers inthe diferent vertical industries lke banking, eedit unions, ecommerce, electronic retailers; estos son people that typically have a very heavy PCL ‘compliance requirement, and healtheare also hhes HIPAA compliance, ete. The main driver then stats with,“ nood to comply with PCI” ‘They start there, but then realize they can use the same product for threat management. Ifyou look at other industries that are not heavily regulated, they are more interested in being proactive with threat management to protect their brand. So it really depends on La industria, The good news is wherever the ‘company decides to star; there is no reason to only buy the product for compliance or threat management, ast can handle both Page 26 0f 28 ‘eTrustRadis Ine. 2016 expertise and thus there isa need to simplify ‘heat detection and threat response in the addressable marke! that we go afer. ‘What are some ofthe thi party endorsements you have received? ‘Were always honored when somebody recognizes AlionVault for what we stand for, and we've been fortunate enough to win several awards recently, We were named 10 Deloitte's 2015 “Technology Fast 500” ist ofthe fastest-growing companies in North America, And, we were also named to Forbes’ list of hotest cybersecurity startups and ranked thtd in the Cybersecurity 500 List of ‘Companies to Watch in 2015, which isa great honor. We've also een recognized by SC ‘Magazine, European IT & Software Excellence, and Computing Security. And, ofcourse, we \were again placed in the Visionary quadrant for Gariners SIEM Magic Quadrant ‘What’ peat is that a fot ofthese awards corroborate the vision that we have, and the 24126 2wver20t7 the business, which is a great ching. Eso es increasing the awareness and accentuating the amount of financial and human capital resources that shouldbe avaiable for information security quite abit. Teniendo said that, there sila heavy shortage of information security expertise out there and, if you look into our addressable market, i you exclude the Fortune 500 where the ions are very big and have and human capital available to them, the vast majority ofthe market still suffers from a lack of security information expertise anda lack of financial affordability So although the role of information security is jetting elevated, there is sila big shortage of Pagina 28 ‘elif that we can build the best products out there, but if those produets arent being enjoyed by our customers or our partner cevosystem, we haven't really made that much ofa stride. So we constantly end surveys out to our customers and we keep an open earto what they'te telling us and incorporate that into our roadmap, They are going to be some immediate tactical enhancements inthe product as a result of us listening to our customers and partner cvosistema, In the nea term, documentation is going to be improved dramatically; foeron also going to put alot more emphasis on cr support organization; and our rd-party components are going to be enhanced. yo ‘think we have very good and extensible ‘way to integrate 3rd-party components, but this integration is going tobe enhanced, fos 00d news is that a lot ofthe core capabilities of our product are being enjoyed by our customers so the resuls of our mast recent survey were very encouraging and confirmed the core features around intrusion detection and threat intelligence ae working very well Inthe broader horizon, ur development team has boen working on some really exciting advances for our USM platform that we hope to announce later in 2016, There ae hntps:/transiate googlousercontent comranslate_f Informe del producta de AlienVault USM ™ ARP ER AHL EUP ORAL SPATE Ry you always have a hypothesis around the product and what the product does, and how you want to go to market, But, util the narke validate it, you really dont know that youre atthe right place, and you fel realy god tht the fit isthe right one far the market we'e going afer. ‘What's on the roadmap for AlienViault in 20167 ‘A couple af things: We're a very customer centric organization and the customer experience i something that is built ito the DNA of the company, We have an inherent Pege 27 of 28 ‘eTrustRadis Ine. 2016 (On the go-to-market side we are going to concentrate on leveraging our channel ccosistema, We area a size now where the bannel provides big operating leverage for us, and we want to go aftr that pretty aggressively. We've hired a very able channel executive, who will own the entire channel ecosystem, so there wil be aig emphasis on how we use the channel as an extension to ‘our field to accelerate growth and meet the neds of our customers even more. 25126 2wver20t7 Informe del producta de AlienVault USM ™ some Key developments around extensibility scalability nd more ease-of-use features in cl producto, What we want to dois provide a comprehensive security manegement platform that is easy to deploy, and easy to consume, ‘but atthe saze time delivers improved scalability, We're also making our platfore more extensible so that other Srd-party security controls can be built ontop of our plataforma. That'll on the innovation side hntps:/transiate googlousercontent comranslate_f Page 28 of 28 ‘eTrustRadivs Ine. 2016 26126

