Cisco announced the acquisition of SnapAttack , a company specializing in threat detection, aiming to strengthen its ever-expanding cybersecurity portfolio .

The move is aimed specifically at enhancing Splunk, the company’s leading SIEM (Security Information and Event Management) platform. It is a strategic initiative that underscores Cisco’s commitment to supporting organizations in the face of ever-evolving and increasingly complex cyber threats.
See also: Cisco investigates data breach allegations
SnapAttack specializes in providing end-to-end solutions for the content detection lifecycle, covering all stages: from discovery and testing, to validation and implementation. By using advanced threat intelligence, it enables organizations to instantly adapt their defenses to new cybercriminal tactics and techniques.
Splunk, an integral part of Cisco's security ecosystem, is a powerful Threat Detection, Investigation, and Response (TDIR) platform used by Security Operations Centers (SOCs) worldwide. Splunk Enterprise Security (ES), its core product, delivers ready-to-use detection content through regular Enterprise Security Content Updates (ESCU).

Read also: Cisco: Serious vulnerability in Firepower Management Center
The integration of SnapAttack is expected to accelerate the development of advanced capabilities for Splunk ES, giving security teams more comprehensive visibility and greater control over their detection efforts. The result will be an enhanced, next-generation SOC experience with faster threat detection, deeper data analysis, and modernized platforms.
Key benefits of this acquisition include improved machine learning, enhanced vulnerability understanding, and simplified adoption of Splunk ES. In addition, this strategy promotes automation and the use of artificial intelligence and data analytics to predict future events, making the SOC more efficient and future-ready.

See more: Bootloader vulnerability affects over 100 Cisco Switches
With this move, Cisco further strengthens its position as a leader in cybersecurity, offering comprehensive TDIR solutions that combine rapid detection, automation and advanced intelligence, shaping the SOC of tomorrow.
Source: cybersecuritynews
