Use Cases

Use Cases#

See below for common use cases and sample workflows for NetOps and SecOps teams.

NetOps Use Cases#

Maintain deep visibility, monitor performance, and run customized reports for network operations.

See all NetOps use cases and workflows

Custom reports

Aggregate flow data by any dimension to inspect any host or activity

Customizable observation points and reporting

Collaboration

Streamline information sharing and enhance multi-role workflows

Team collaboration

Investigating congestion

Monitor health and performance in real time to quickly identify root causes

Investigating network congestion

Scheduled email reports

Proactively monitor specified network traffic from any email inbox

Scheduled email reporting

Network visualization

Create and customize network maps to visualize what matters to your team

Network mapping and visualization

NOC dashboards

Maintain multiple dashboards for diverse roles and workflows

NOC dashboards and forensics

NPM

Continuously monitor network performance for deeper traffic insights

Network performance monitoring (NPM)

Capacity planning

Monitor data circuit usage over time to plan future needs and optimize costs

Capacity planning

Cloud visibility and detection

Bridge visibility between cloud and on-prem assets without probes

Cloud visibility and detection

SecOps Use Cases#

See all SecOps use cases and workflows

Get alerted to threats, access historical data, and enhance incident response workflows.

Service behavior monitoring

Continuously monitor critical services for anomalous usage

Service behavior monitoring

General malware detection

Monitor network activity to identify malware-infected hosts

General malware detection

Threat hunting

Inspect device behavior details and pinpoint Indicators of Attack (IoAs)

Threat hunting

Lateral movement detection

Monitor network activity to detect lateral movement behavior

Lateral movement detection

Incident response

Enhance incident response with added visibility and UI-driven workflows

Incident response