+
+

Related Products

  • ManageEngine ADAudit Plus
    486 Ratings
    Visit Website
  • Blumira
    146 Ratings
    Visit Website
  • ManageEngine EventLog Analyzer
    190 Ratings
    Visit Website
  • ManageEngine Log360
    141 Ratings
    Visit Website
  • Safetica
    401 Ratings
    Visit Website
  • Graylog
    402 Ratings
    Visit Website
  • DriveLock
    1 Rating
    Visit Website
  • PathSolutions TotalView
    43 Ratings
    Visit Website
  • Guardz
    106 Ratings
    Visit Website
  • ThreatLocker
    501 Ratings
    Visit Website

About

Rapid7 Incident Command is an AI-powered next-generation SIEM designed to deliver unified visibility and faster threat response across modern attack surfaces. It brings together logs, telemetry, asset context, and threat intelligence into a single, actionable view across cloud, SaaS, endpoints, and hybrid environments. Incident Command uses AI-driven behavioral detections and alert triage to cut through noise and surface the threats that matter most. Every alert is enriched with exposure, vulnerability, asset risk, and third-party intelligence to guide decisive action. Built-in SOAR automation and guided AI response workflows help reduce dwell time and accelerate containment. The platform supports advanced investigations with natural language search, attack path reconstruction, and MITRE ATT&CK alignment. Rapid7 Incident Command enables security teams to scale their SOC with speed, clarity, and confidence.

About

Trusted on critical infrastructure globally, Sandfly delivers agentless Linux security with no endpoint agents and no drama. Instant deployment without compromising stability or needing endpoint agents. Sandfly is an agentless, instantly deployable, and safe Linux security monitoring platform. Sandfly protects virtually any Linux system, from modern cloud deployments to decade-old devices, regardless of distribution or CPU architecture. Besides traditional Endpoint Detection and Response (EDR) capabilities, Sandfly also tracks SSH credentials, audits for weak passwords, detects unauthorized changes with drift detection, and allows custom modules to find new and emerging threats. We do all of this with the utmost safety, performance, and compatibility on Linux. And, we do it without loading agents on your endpoints. The widest coverage for Linux on the market. Sandfly protects most distributions and architectures such as AMD, Intel, Arm, MIPS, and POWER CPUs.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Rapid7 Incident Command is ideal for enterprise security teams, SOC analysts, and security leaders seeking an AI-powered SIEM to unify visibility, reduce alert fatigue, and accelerate threat detection and response across hybrid environments

Audience

Linux users requiring a solution to find, isolate and deal with security issues and intruders quickly

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Rapid7
Founded: 2000
United States
www.rapid7.com/products/siem/

Company Information

Sandfly Security
New Zealand
sandflysecurity.com

Alternatives

Alternatives

SanerNow

SanerNow

SecPod Technologies
Alert Logic

Alert Logic

Fortra
Arctic Wolf

Arctic Wolf

Arctic Wolf Networks
ACSIA

ACSIA

DKSU4Securitas Ltd

Categories

Categories

Endpoint Detection and Response (EDR) Features

Behavioral Analytics
Blacklisting/Whitelisting
Continuous Monitoring
Malware/Anomaly Detection
Prioritization
Remediation Management
Root Cause Analysis

SIEM Features

Application Security
Behavioral Analytics
Compliance Reporting
Endpoint Management
File Integrity Monitoring
Forensic Analysis
Log Management
Network Monitoring
Real Time Monitoring
Threat Intelligence
User Activity Monitoring

Integrations

AuthPoint
CentOS
Chronicle SOAR
CyberArk Workforce Identity
Elasticsearch
Google Cloud Platform
Imperva DDoS Protection
Joe Sandbox
Medigate
Microsoft Azure
Monad
NorthStar Navigator
Nucleus
Podman
Proofpoint Adaptive Email Security
Recorded Future
Scuba Database Vulnerability Scanner
The Respond Analyst
Ubuntu

Integrations

AuthPoint
CentOS
Chronicle SOAR
CyberArk Workforce Identity
Elasticsearch
Google Cloud Platform
Imperva DDoS Protection
Joe Sandbox
Medigate
Microsoft Azure
Monad
NorthStar Navigator
Nucleus
Podman
Proofpoint Adaptive Email Security
Recorded Future
Scuba Database Vulnerability Scanner
The Respond Analyst
Ubuntu
Claim Rapid7 Incident Command and update features and information
Claim Rapid7 Incident Command and update features and information
Claim Sandfly Security and update features and information
Claim Sandfly Security and update features and information