EclecticIQ

Our Ecosystem

An ecosystem supporting our customers' intelligence-led proactive cybersecurity needs with collaborative partner programs delivering world-class joint solutions. 

Partner Program

Partner with EclecticIQ to bring valuable and innovative security solutions and services to end users. Open to all partner types, including technology developers, service providers, resellers, and community.

Our Partnerships

We partner with the world's premier technology and solution providers to support all phases of your cybersecurity needs. Explore all our partners' solutions and offerings to build and extend your cyber defense ecosystem.

EclecticIQ Resources

We are committed to increasing the knowledge and capabilities of the cybersecurity community through our research & analysis efforts and open source projects.

Browse Resources

Learn more about our technology, solutions and services, and stay updated on the cyber threat landscape with our research reports, webinars and other information.

Open Source Projects

We are proud to be an active member in the open source community and to help develop and advance progress of security technology. Learn more about contributions or go directly to our GitHub page.

Our Ecosystem

An ecosystem supporting our customers' intelligence-led proactive cybersecurity needs with collaborative partner programs delivering world-class joint solutions. 

Partner Program

Partner with EclecticIQ to bring valuable and innovative security solutions and services to end users. Open to all partner types, including technology developers, service providers, resellers, and community.

Our Partnerships

We partner with the world's premier technology and solution providers to support all phases of your cybersecurity needs. Explore all our partners' solutions and offerings to build and extend your cyber defense ecosystem.

EclecticIQ Resources

We are committed to increasing the knowledge and capabilities of the cybersecurity community through our research & analysis efforts and open source projects.

Browse Resources

Learn more about our technology, solutions and services, and stay updated on the cyber threat landscape with our research reports, webinars and other information.

Open Source Projects

We are proud to be an active member in the open source community and to help develop and advance progress of security technology. Learn more about contributions or go directly to our GitHub page.

Our Ecosystem

An ecosystem supporting our customers' intelligence-led proactive cybersecurity needs with collaborative partner programs delivering world-class joint solutions. 

Partner Program

Partner with EclecticIQ to bring valuable and innovative security solutions and services to end users. Open to all partner types, including technology developers, service providers, resellers, and community.

Our Partnerships

We partner with the world's premier technology and solution providers to support all phases of your cybersecurity needs. Explore all our partners' solutions and offerings to build and extend your cyber defense ecosystem.

EclecticIQ Resources

We are committed to increasing the knowledge and capabilities of the cybersecurity community through our research & analysis efforts and open source projects.

Browse Resources

Learn more about our technology, solutions and services, and stay updated on the cyber threat landscape with our research reports, webinars and other information.

Open Source Projects

We are proud to be an active member in the open source community and to help develop and advance progress of security technology. Learn more about contributions or go directly to our GitHub page.

Our Ecosystem

An ecosystem supporting our customers' intelligence-led proactive cybersecurity needs with collaborative partner programs delivering world-class joint solutions. 

Partner Program

Partner with EclecticIQ to bring valuable and innovative security solutions and services to end users. Open to all partner types, including technology developers, service providers, resellers, and community.

Our Partnerships

We partner with the world's premier technology and solution providers to support all phases of your cybersecurity needs. Explore all our partners' solutions and offerings to build and extend your cyber defense ecosystem.

EclecticIQ Resources

We are committed to increasing the knowledge and capabilities of the cybersecurity community through our research & analysis efforts and open source projects.

Browse Resources

Learn more about our technology, solutions and services, and stay updated on the cyber threat landscape with our research reports, webinars and other information.

Open Source Projects

We are proud to be an active member in the open source community and to help develop and advance progress of security technology. Learn more about contributions or go directly to our GitHub page.

Partnerships

EclecticIQ partners with the world’s premier technology and solution providers to support all phases of your cyberdefenses.

  • Integration Partners

    Extend and customize the EclecticIQ Platform to meet your specific cybersecurity needs by connecting with top providers of threat ... Read more

    Extend and customize the EclecticIQ Platform to meet your specific cybersecurity needs by connecting with top providers of threat intelligence and centralized sources of technical data, as well as a full range of IT security solutions deployed within the enterprise. Integrations also extend to ISACs and other information-sharing groups using STIX/TAXII standards and other data formats.

  • Commercial Vendors

    Address your cybersecurity needs by engaging with our global cadre of distinguished Resellers, VARs and consultants who fuse their ... Read more

    Address your cybersecurity needs by engaging with our global cadre of distinguished Resellers, VARs and consultants who fuse their unique expertise and market understanding with our innovative, intelligence-led solutions.

  • Community Partners

    Learn more about intelligence-led cybersecurity and prepare your practitioners to defend against threats to your organization by joining ... Read more

    Learn more about intelligence-led cybersecurity and prepare your practitioners to defend against threats to your organization by joining our collaborative community partners.

  • Accenture

    Accenture

    Integration Partner

    Accenture

    Integration Partner

    Accenture

    Accenture CT­I—one of the world’s largest cybersecurity services providers—leverages its network of global Security Operations Centers and over 7,500 security professionals to develop a nuanced understanding of threats and vulnerabilities at a global level. Our intelligence teams then distill focused insights from that body of knowledge and leverage our integration with EclecticIQ to inject those insights directly into our customers’ operations to deliver improved security outcomes.

  • AlienVault

    AlienVault

    Integration Partner

    AlienVault

    Integration Partner

    AlienVault

    The AlienVault Open Threat Exchange (OTX) is a system for sharing threat intelligence among OSSIM users and AlienVault customers.

  • Amazon

    Amazon

    Integration Partner

    Amazon

    Integration Partner

    Amazon

    Amazon Simple Storage Service (Amazon S3) is an object storage service that offers industry-leading scalability, data availability, security, and performance. This means customers of all sizes and industries can use it to store and protect any amount of data for a range of use cases, such as websites, mobile applications, backup and restore, archive, enterprise applications, IoT devices, and big data analytics. Amazon S3 provides easy-to-use management features so you can organize your data and configure finely-tuned access controls to meet your specific business, organizational, and compliance requirements. Amazon S3 is designed for 99.999999999% (11 9's) of durability, and stores data for millions of applications for companies all around the world.

  • Bitdefender

    Bitdefender

    Integration Partner

    Bitdefender

    Integration Partner

    Bitdefender

    The Bitdefender Advanced Threat Intelligence solution helps security professionals gain visibility into the latest threats by using up-to-date, contextual intelligence on URLs, IPs, domains, certificates, files, Command and Control servers and Advanced Persistent Threats.

  • BitSight

    BitSight

    Integration Partner

    BitSight

    Integration Partner

    BitSight

    AnubisNetworks Cyberfeed allows customers to obtain threat intelligence on real-time security events, with monitoring of countries, organizations and their subsidiaries.

  • Broadcom

    Broadcom

    Integration Partner

    Broadcom

    Integration Partner

    Broadcom

    Leveraging the extensive Symantec Global Intelligence Network, this integration feed allows users to collect raw intelligence data making it available within EclecticIQ Platform. The feed provides a broad range of insights, covering reputation and threat intelligence data for IP, URLs, attacks, bots, cnc, malware, fraud, and phishing.

  • CIRCL - Computer Incident Response Center Luxembourg

    CIRCL - Computer Incident Response Center Luxembourg

    Integration Partner

    CIRCL - Computer Incident Response Center Luxembourg

    Integration Partner

    CIRCL - Computer Incident Response Center Luxembourg

    CIRCL Passive SSL is a database storing historical X.509 certificates seen per IP address. The Passive SSL historical data is indexed per IP address, which makes it searchable for incident handlers, security analysts or researchers. The Passive SSL enricher will retrieve domains and IP’s associated with an SSL Certificate hash.

  • Cisco

    Cisco

    Integration Partner

    Cisco

    Integration Partner

    Cisco

    The Cisco Umbrella API helps analysts quickly understand registration details, similar domains and potential malicious ties to observable data. With this integration, analysts can quickly discern threats and attribution intelligence from observables used in active campaigns as the cloud-based enricher provides information relating domains, IP addresses and file hashes. Combining this integration with EclecticIQ Platform enables analysts to dynamically build a repository of intelligence relating to domain activity.

  • Cofense

    Cofense

    Integration Partner

    Cofense

    Integration Partner

    Cofense

    Cofense PhishMe is the leading provider of human-driven phishing defense solutions worldwide. Our collective defense suite combines best-in class incident response technologies with timely attack intelligence sourced from employees. Cofense enables thousands of global organizations to stop attacks in progress faster and stay ahead of breaches.

  • Cognyte

    Cognyte

    Integration Partner

    Cognyte

    Integration Partner

    Cognyte

    Cognyte is a global leader in security analytics software that empowers governments and enterprises with Actionable Intelligence for a Safer World.

  • CrowdStrike

    CrowdStrike

    Integration Partner

    CrowdStrike

    Integration Partner

    CrowdStrike

    CrowdStrike® Falcon Insight™ eliminates silent failure by providing the highest level of real-time monitoring capabilities that span across detection, response and forensics. This ensures nothing is missed, leaving attackers with no place to hide. Falcon Insight provides organizations with state-of-the-art endpoint detection and response (EDR), following an approach recommended by top analyst firms such as Gartner.

  • Cybereason

    Cybereason

    Integration Partner

    Cybereason

    Integration Partner

    Cybereason

    Using the Cyberreason Defense Platform, users are able to leverage the power of EclecticIQ Platform. Users can receive IOCs from the platform to trigger security alerts, and send sightings back to EclecticIQ Platform.

  • D3 Intelligence

    D3 Intelligence

    Integration Partner

    D3 Intelligence

    Integration Partner

    D3 Intelligence

    D3 Intelligence enables companies to connect their business, their technology, their people to their intelligence. We do this by leveraging the intelligence cycle - adopted from the government, refined for the private sector.

  • Devo

    Devo

    Integration Partner

    Devo

    Integration Partner

    Devo

    Devo offers cloud-native data logging and security information and event management (SIEM) solutions. Devo products for threat detection, threat hunting, threat investigation, centralized log management, monitoring stack consolidation, and AIOps.

  • Digital Shadows

    Digital Shadows

    Integration Partner

    Digital Shadows

    Integration Partner

    Digital Shadows

    Digital Shadows SearchLight protects against external threats, continually identifying where your assets are exposed, providing sufficient context to understand the risk, and options for remediation.

  • DomainTools

    DomainTools

    Integration Partner

    DomainTools

    Integration Partner

    DomainTools

    DomainTools helps security analysts turn threat data into threat intelligence. We take indicators from your network and connect them with nearly every active domain on the Internet. Fortune 1000 companies, global government agencies, and leading security solution vendors use the DomainTools platform as a critical ingredient in their threat investigation and mitigation work.

  • Dragos

    Dragos

    Integration Partner

    Dragos

    Integration Partner

    Dragos

    As a leading provider of industrial control systems cybersecurity, the Dragos threat detection and response platform codifies decades of real-world experience in advanced threat analytics. It provides operational and information technology practitioners unprecedented visibility and prescriptive procedures to respond to adversaries in the industrial threat landscape. Through the integration with EclecticIQ Platform, Threat Intelligence Analysts now have access to relevant reports, Indicators, Threat Actors, TTPs and observables that Dragos provides for this unique threat landscape.

  • Elemendar

    Elemendar

    Integration Partner

    Elemendar

    Integration Partner

    Elemendar

    Elemendar was founded in 2017 by Giorgos Georgopoulos and Syra Marshall at the UK’s first GCHQ/NCSC Cyber Accelerator. Their mission is to automate the processing of cyber threat intelligence to better defend organisations against cyber threats. Elemendar work with a number of world-class industry collaborators including governments, enterprise, defence organisations and the Laboratory for Analytic Sciences (LAS).

  • Farsight Security

    Farsight Security

    Integration Partner

    Farsight Security

    Integration Partner

    Farsight Security

    Farsight Security DNSDB is a Passive DNS historical database that provides a unique, fact-based, multifaceted view of the configuration of the global Internet infrastructure. DNSDB leverages the richness of Farsight’s Security Information Exchange (SIE) data-sharing platform and is engineered and operated by leading DNS experts.

  • FireEye

    FireEye

    Integration Partner

    FireEye

    Integration Partner

    FireEye

    FireEye iSIGHT Intelligence is a proactive, forward-looking means of qualifying threats poised to disrupt your business based on the intents, tools and tactics of the attacker. Our high-fidelity, comprehensive intelligence delivers visibility beyond the typical attack lifecycle, adding context and priority to global threats before, during and after an attack. It helps mitigate risk, bolster incident response, and enhance your overall security ecosystem

  • Flashpoint

    Flashpoint

    Integration Partner

    Flashpoint

    Integration Partner

    Flashpoint

    Flashpoint is the market leader in threat intelligence from the Deep and Dark Web. Flashpoint’s products illuminate threatening actors, relationships, behaviors, and networks.

  • Forcepoint

    Forcepoint

    Integration Partner

    Forcepoint

    Integration Partner

    Forcepoint

    An industry leader in intelligent cybersecurity, Forcepoint enables transparent comprehensive investigation with advanced analytics like machine learning and artificial intelligence that are tuned toward specific behavior risk

  • Fortinet

    Fortinet

    Integration Partner

    Fortinet

    Integration Partner

    Fortinet

  • FS-ISAC

    FS-ISAC

    Integration Partner, Community Partner

    FS-ISAC

    Integration Partner, Community Partner

    FS-ISAC

    The Financial Services Information Sharing and Analysis Center is the global financial industry's go to resource for cyber and physical threat intelligence analysis and sharing. FS-ISAC operates as a member-owned non profit entity. EclecticIQ is an affiliate member.

  • Google

    Google

    Integration Partner

    Google

    Integration Partner

    Google

    Google Cloud Platform provides a suite of cloud computing services, including data management, hybrid & multi-cloud, AI and ML, built to meet your business challenges.

  • Group-IB

    Group-IB

    Integration Partner

    Group-IB

    Integration Partner

    Group-IB

    Group-IB is a global provider of security services and threat intelligence solutions with profound expertise providing the global security community insights into Russian-speaking cyber criminal groups and their tactics.

  • Hexillion

    Hexillion

    Integration Partner

    Hexillion

    Integration Partner

    Hexillion

    The Central Ops.net integration enables analysts to investigate domains and IP addresses. This enricher provides registrant information, DNS records and more. All the information is delivered all in one report; making it much quicker and easier for the analyst. Unlike the free service, this paid account means that there is no limit on the amount of times you need to access the tool.

  • IBM Security

    IBM Security

    Integration Partner

    IBM Security

    Integration Partner

    IBM Security

    IBM Security offers one of the most advanced and integrated portfolios of enterprise security products and services. The portfolio, supported by world- renowned IBM Security X-Force® research, enables organizations to effectively manage risk and defend against emerging threats. IBM operates one of the world’s broadest security research, development and delivery organizations, monitors 150 billion+ security events per day in more than 130 countries, and has been granted more than 10,000 security patents worldwide.

  • Infoblox

    Infoblox

    Integration Partner

    Infoblox

    Integration Partner

    Infoblox

    Infoblox DDI is a industry-leading, integrated, and centrally managed approach to delivering enterprise-grade DDI. It uses the patented Infoblox Grid TM technology to ensure high availability DNS, DHCP, and IPAM services throughout your distributed network. Infoblox DDI makes it easier for you to achieve higher levels service uptime, security, and operational efficiencies across diverse infrastructure, including on-prem, cloud and hybrid deployments.

  • Intel 471

    Intel 471

    Integration Partner

    Intel 471

    Integration Partner

    Intel 471

    Intel 471 provides Adversary and Malware Intelligence for leading intelligence, security and fraud teams. Adversary Intelligence is focused on infiltrating and maintaining access to closed sources where threat actors collaborate, communicate and plan cyber-attacks. Malware Intelligence leverages our underground access to provide timely data and context on malware and adversary infrastructure.

  • Joe Security

    Joe Security

    Integration Partner

    Joe Security

    Integration Partner

    Joe Security

    Deep Malware Analysis for Windows, macOS, Linux, Android and iOS

  • Kaspersky

    Kaspersky

    Integration Partner

    Kaspersky

    Integration Partner

    Kaspersky

    All the knowledge acquired by Kaspersky about cyberthreats, legitimate objects and their various relationships, brought together into a single, powerful web service. Real-time search of many petabytes of threat relationship data enables highly effective incident investigations and threat hunting.

  • Micro Focus

    Micro Focus

    Integration Partner

    Micro Focus

    Integration Partner

    Micro Focus

    Micro Focus ArcSight ESM identifies and prioritize threats in real time so you can respond and remediate quickly. Correlate security logs from multiple data feeds, improve the accuracy of security alerts with complex use cases, and uncover advanced cyber attacks that previously went undetected.

  • Microsoft

    Microsoft

    Integration Partner

    Microsoft

    Integration Partner

    Microsoft

    See and stop threats before they cause harm, with SIEM reinvented for a modern world. Microsoft Sentinel is your birds-eye view across the enterprise. Put the cloud and large-scale intelligence from decades of Microsoft security experience to work. Make your threat detection and response smarter and faster with artificial intelligence (AI). Eliminate security infrastructure setup and maintenance, and elastically scale to meet your security needs—while reducing IT costs.

  • MITRE

    MITRE

    Integration Partner

    MITRE

    Integration Partner

    MITRE

    Understanding how the adversary operates is essential to effective cyber security. CAPEC™ helps by providing a comprehensive dictionary of known patterns of attack employed by adversaries to exploit known weaknesses in cyber-enabled capabilities. It can be used by analysts, developers, testers, and educators to advance community understanding and enhance defenses.

  • National Institute of Standards and Technology (NIST)

    National Institute of Standards and Technology (NIST)

    Integration Partner

    National Institute of Standards and Technology (NIST)

    Integration Partner

    National Institute of Standards and Technology (NIST)

    The National Institute of Standards and Technology (NIST) is a non-regulatory federal agency within the U.S. Department of Commerce.

  • NSFOCUS

    NSFOCUS

    Integration Partner

    NSFOCUS

    Integration Partner

    NSFOCUS

    The integration of NSFocus Global Intelligence includes both the feed and enricher. NSFocus Threat Intelligence, with its extensive sources, provides analysts with enricher information for IP addresses, Domains, CVEs and files. The NSFocus API allows analysts to work with the security event data as a feed. The cyber threat landscape in China is larger and more complex than anywhere else. With this integration, analysts have insight into world's largest numbers of Internet-connected devices and, vast numbers of Internet users.

  • Palo Alto Networks

    Palo Alto Networks

    Integration Partner

    Palo Alto Networks

    Integration Partner

    Palo Alto Networks

    Palo Alto Networks, the global cybersecurity leader, is shaping the cloud-centric future with technology that is transforming the way people and organizations operate. Our mission is to be the cybersecurity partner of choice, protecting our digital way of life. We help address the world's greatest security challenges with continuous innovation that seizes the latest breakthroughs in artificial intelligence, analytics, automation, and orchestration. By delivering an integrated platform and empowering a growing ecosystem of partners, we are at the forefront of protecting tens of thousands of organizations across clouds, networks, and mobile devices. Our vision is a world where each day is safer and more secure than the one before

  • Proofpoint

    Proofpoint

    Integration Partner

    Proofpoint

    Integration Partner

    Proofpoint

    Proofpoint Emerging Threat (ET) Intelligence delivers the most timely and accurate threat intelligence feeds to identify IPs and domains involved in suspicious and malicious activity and are easily digested by your EclecticIQ

  • Qualys

    Qualys

    Integration Partner

    Qualys

    Integration Partner

    Qualys

    Qualys is a pioneer and leading provider of cloud-based security and compliance solutions with over 11,000 customers in more than 130 countries, including a majority of each of the Forbes Global 100 and Fortune 100. Qualys helps organizations streamline and consolidate their security and compliance solutions in a single platform and build security into digital transformation initiatives for greater agility, better business outcomes and substantial cost savings.

  • Recorded Future

    Recorded Future

    Integration Partner

    Recorded Future

    Integration Partner

    Recorded Future

    The Recorded Future integration provides both a feed and enricher capabilities. With the feed, users have access to the Recorded Future Risk List which includes IP and file hashes, for example. The results are provided in standard STIX/TAXII protocols including TTPs and Indicators. The enricher allows users to query Domains, hashes, URLs and IP addresses.

  • RIPE NCC

    RIPE NCC

    Integration Partner

    RIPE NCC

    Integration Partner

    RIPE NCC

    RIPEstat provides everything you ever wanted to know about IP address space, Autonomous System Numbers (ASNs), and related information for hostnames and countries in one place.

  • RiskIQ

    RiskIQ

    Integration Partner

    RiskIQ

    Integration Partner

    RiskIQ

    RiskIQ PassiveTotal overcomes the challenges in discovering and proactively blocking malicious infrastructure. Using innovative techniques and research processes, PassiveTotal provides analysts with a single view into all the data they need.

  • RSA Security

    RSA Security

    Integration Partner

    RSA Security

    Integration Partner

    RSA Security

    Using the NetWitness app, RSA users are able to leverage the power of EclecticIQ Platform directly from the NetWitness interface. Users can receive IOCs from the platform to trigger security alerts, and send sightings back to EclecticIQ Platform.

  • Silobreaker

    Silobreaker

    Integration Partner

    Silobreaker

    Integration Partner

    Silobreaker

    Silobreaker helps business, security and intelligence professionals make sense of the overwhelming amount of unstructured data on the web. By providing powerful tools and visualisations that cut through the noise and analyse data from hundreds of thousands of open sources, Silobreaker makes it easy for users to monitor and research threats or opportunities.

  • Splunk

    Splunk

    Integration Partner

    Splunk

    Integration Partner

    Splunk

    The Splunk platform removes the barriers between data and action, empowering observability, IT and security teams to ensure their organizations are secure, resilient and innovative. Founded in 2003, Splunk is a global company — with over 7,500 employees, Splunkers have received over 1,020 patents to date and availability in 21 regions around the world — and offers an open, extensible data platform that supports shared data across any environment so that all teams in an organization can get end-to-end visibility, with context, for every interaction and business process. Build a strong data foundation with Splunk.

  • SpyCloud

    SpyCloud

    Integration Partner

    SpyCloud

    Integration Partner

    SpyCloud

    The SpyCloud integration feed helps users protect employees and customers. It provides information which can prevent account take over, fraud, IP theft and brand damage. The feed alerts users when an employee's or company's assets have been compromised.

  • Sumo Logic

    Sumo Logic

    Integration Partner

    Sumo Logic

    Integration Partner

    Sumo Logic

    Sumo Logic empowers the people who power modern, digital business through its Continuous Intelligence Platform™. Practitioners and developers around the world rely on Sumo Logic to gain real-time analytics and insights from their cloud-native applications, helping them ensure application reliability, secure and protect against modern security threats, and gain insights into their cloud infrastructures.

  • VMRay

    VMRay

    Integration Partner

    VMRay

    Integration Partner

    VMRay

    Surmounting the persistent shortcomings of other DFIR tools, VMRay delivers rapid detection results and in-depth analysis reports without compromising performance or security. VMRay flexibly integrates with other systems, automating the submission of files and URLs for analysis. Precise, actionable results are returned that drive block/allow decisions and other security measures across the enterprise.

© 2014 – 2024 EclecticIQ B.V.
EclecticIQ. Intelligence, Automation, Collaboration.
Get demo