This might help illustrate all the components and levers in place to make Malware/Spectrum function in RSA NetWitness suite. Some of this is obvious, some of it is not.
Hope it helps anyone that is implementing of thinking of implementing the Malware component for packet traffic.
[Updated] - added legend to call out what is RSA Content and what is opportunities for filtering and customization
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.