Introduction
Welcome to the Nuix Adaptive Security Rule Language Reference Guide. The purpose of this guide is to allow users to become familiar with the Filter Engine Rules used in the Nuix Adaptive Security application.
Nuix Adaptive Security
Visibility into the security of your environment is crucial to your organization's success. Nuix Adaptive Security can help you answer questions about your organization, such as:
Is my organization compromised?
Has someone taken critical data out of my organization?
How was someone able to access our environment?
Is something about to happen?
When you don't have visibility, it leaves your organization in a precarious position, at a decision-making disadvantage, and open to greater risk.
Nuix Adaptive Security delivers a proactive approach that provides the kind of visibility, adaptability, and control that is missing with traditional endpoint products. By leveraging endpoint analytics, Nuix Adaptive Security reduces the time it takes to detect an impending or ongoing attack, accelerates recovery time, easily adapts to changing environments, regulations, and attack vectors, and ultimately, stops incidents in their tracks.
Nuix Adaptive Security has perfected the art of continuous monitoring and response to isolate the important (and often small) signals from the noise and identify when behaviors exhibit uncharacteristic patterns. Nuix Adaptive Security relies on two fundamental and unique elements to drive the protect-detect-response-remediate process:
The Digital Behavior Recorder (TM) continuously monitors and records key digital behaviors.
The patent-pending logic engine provides customizable logic on the endpoint, enabling it to recognize and act on threats in real-time.
About this guide
This guide explains how to protect a computer network by creating custom rules to effectively respond to events generated by the endpoint agents. Specifically, this guide discusses the Event Filter Language used within the Nuix Adaptive Security application.
Intended audience
This guide is for all users of Nuix Adaptive Security software.
Additional information
Refer to the following documentation for additional information:
Nuix Adaptive Security Installation Guide, Version 2.16.0
Nuix Adaptive Security Quick Start Guide, Version 2.16.0
Nuix Adaptive Security User Guide, Version 2.16.0
Nuix Adaptive Security Administration Guide, Version 2.16.0
Nuix Adaptive Security Release Notes, Version 2.16.0