Lead IT Service Analyst at a manufacturing company with 10,001+ employees
Real User
Top 10
Jun 16, 2026
I use ExtraHop Reveal(x) 360 as our cloud-native NDR platform, with primary use cases including monitoring real-time network traffic across the north-south environment. While we do not currently focus on east-west traffic, we have plans to enable that capability in our roadmap for upcoming quarters. Additionally, we address advanced threats such as lateral movement and insider threats. We also use the platform for visibility of all encrypted traffic deployed with endpoint agents, supporting incident response investigations integrated with our SIEM and cross-functional threat intelligence sources. Our SOC team has highlighted several scenarios demonstrating how ExtraHop Reveal(x) 360 helps with incident response investigations. One major threat involved an open port that was not supposed to be part of our standards, which was detected and resolved.
We were seeking a solution that can effectively identify security incidents within our networks, providing a level of visibility that surpasses what other products with agents currently offer. Additionally, we have a critical need for robust asset management capabilities. Traditional agent-based products fall short in comparison to what we can automatically glean from our network. Our third priority lies in network hardening. We aim to rapidly identify vulnerabilities and weaknesses, a task that has historically been time-consuming or, in some cases, nearly impossible. The ability to receive comprehensive information within a mere three minutes is crucial for enhancing our network security posture.
ExtraHop Reveal(x) 360 offers advanced network detection and response capabilities, designed to provide real-time situational awareness and threat detection across hybrid and multi-cloud environments.Built to meet the demands of modern enterprises, ExtraHop Reveal(x) 360 enhances visibility into network activities, delivering comprehensive security insights. It uses high-speed data analysis to identify anomalous behaviors and potential threats, helping security teams respond effectively. With...
I use ExtraHop Reveal(x) 360 as our cloud-native NDR platform, with primary use cases including monitoring real-time network traffic across the north-south environment. While we do not currently focus on east-west traffic, we have plans to enable that capability in our roadmap for upcoming quarters. Additionally, we address advanced threats such as lateral movement and insider threats. We also use the platform for visibility of all encrypted traffic deployed with endpoint agents, supporting incident response investigations integrated with our SIEM and cross-functional threat intelligence sources. Our SOC team has highlighted several scenarios demonstrating how ExtraHop Reveal(x) 360 helps with incident response investigations. One major threat involved an open port that was not supposed to be part of our standards, which was detected and resolved.
We were seeking a solution that can effectively identify security incidents within our networks, providing a level of visibility that surpasses what other products with agents currently offer. Additionally, we have a critical need for robust asset management capabilities. Traditional agent-based products fall short in comparison to what we can automatically glean from our network. Our third priority lies in network hardening. We aim to rapidly identify vulnerabilities and weaknesses, a task that has historically been time-consuming or, in some cases, nearly impossible. The ability to receive comprehensive information within a mere three minutes is crucial for enhancing our network security posture.
The solution is primarily used for network detection and response. We collect network traffic with it.