It all starts with collection of the logs and events being generated by the devices in an organization’s infrastructure. The RSA enVision platform offers market-leading, out-of-thebox log collection support for over 300 devices. Everything from network devices, servers, routers, storage, and databases to firewalls, intrusion prevention devices, and anti-virus software—the enVision platform has them covered. Do you have proprietary applications or services? Not a problem; the enVision solution provides a wizard-based tool to automate the collection from custom application and services as well. The platform continuously records and stores every event log, ensuring that each event is verifiably complete and accurate. Once logs are collected, the enVision platform permanently archives the log data, processes the logs in real time and generates alerts when it observes suspicious or otherwise notable patterns of behavior. Organizations can interrogate the full volume of stored data at any time.