- Get Started with Outcomes Navigator
- Use Outcomes Navigator with the MITRE ATT&CK® Framework
- Use Outcomes Navigator with the Threat Detection, Investigation, and Response (TDIR) Use Case Categories Framework
- Use Outcomes Navigator for Compliance
- View Recommendations for Improving Your Configuration
- Share Information in Outcomes Navigator
- Outcomes Navigator Coverage Calculation
- The Role of Parsed Fields in Coverage Calculation
- Prerequisites for Calculating Coverage
- Types of Coverage Scores
- Use Case Coverage Score
- MITRE Coverage Score
- Compliance Framework Coverage Score
- Control Coverage Score
- Advanced Analytics Rules Coverage Calculation
- Correlation Rules Coverage Calculation
- Dashboards Coverage Calculation
- Coverage Over Time Calculation
- Outcomes Navigator Parser Calibration Tier Average Calculation
Outcomes Navigator
Configure your environment using an outcome-based approach with Outcomes Navigator.
Outcomes Navigator is an application on New-Scale Security Operations Platform that analyzes the configuration of your environment and assesses how well it protects against threats or meets compliance requirements. With Outcomes Navigator, you can better align your environment with your goals and ensure it delivers specific outcomes. If you're new to Exabeam, you can use Outcomes Navigator to get started and strategize what you want Exabeam to do for you.
First, select the frameworks you want to use to examine your environment. You can choose from the Exabeam Threat Detection, Investigation, and Response (TDIR) Use Case Categories framework, MITRE ATT&CK® framework, or various other compliance frameworks. Then, depending on the framework you choose, explore all threats or compliance requirements and determine which ones your configuration should focus on to achieve your goals. For a use case or ATT&CK technique of interest, you can assess the current state of your configuration and where there are gaps. Finally, for use cases and ATT&CK techniques, you can view recommendations for improving your configuration.[1]
In Outcomes Navigator's approach, the best way to fill the gaps in your protection is to configure more products in specific product categories. For example, to better protect against phishing threats, you should configure products in the data exfiltration, email, firewalls, operating systems, and VPN server product categories. If you configure one product in each product category and ensure critical fields in the logs from those products are parsed correctly, you significantly improve how well your environment protects against a use case or technique or meets a compliance requirement.
Outcomes Navigator is available for all New-Scale Security Operations portfolio licenses and Exabeam Security Operations portfolio licenses.
[1] MITRE ATT&CK and ATT&CK are trademarks of The MITRE Corporation ("MITRE"). Exabeam is not affiliated with or sponsored or endorsed by MITRE. Nothing herein is a representation of the views or opinions of MITRE or its personnel.