Browse Definitions :
Definition

threat intelligence service (TI service)

A threat intelligence service (TI service) is a provider of information about current or emerging threats that could negatively impact the security of a customer’s organization. 

Threat intelligence services range in cost and complexity from free or low-cost data feeds to high-priced and comprehensive systems that handle data aggregation and correlation to provide organized, analyzed and refined information. Providers at the most expensive end of the scale often also offer consultancy services.

Threat intelligence services evolved as a way to effectively use the massive quantities of data that security organizations have always gathered. The SANS Internet Storm Center  and CERT, for example, have long tracked information related to security threats; both organizations make threat intelligence feeds of updated information available free through their websites. Some companies offer threat intelligence feeds that are essentially the same as the freely-available data.

Symantec and other security product providers maintain global threat databases, which are constantly being populated with data gathered by software agents running on millions of client devices. That data, along with feeds from other sources, provides the information that threat intelligence services make available to customers.

However, it takes considerable time, effort and expertise to transform all that data into information that's pertinent to an organization – which is why many businesses opt for more full-service threat intelligence services.

See an introductory tutorial on threat intelligence:

This was last updated in November 2015

Continue Reading About threat intelligence service (TI service)

SearchCompliance
  • OPSEC (operations security)

    OPSEC (operations security) is a security and risk management process and strategy that classifies information, then determines ...

  • smart contract

    A smart contract is a decentralized application that executes business logic in response to events.

  • compliance risk

    Compliance risk is an organization's potential exposure to legal penalties, financial forfeiture and material loss, resulting ...

SearchSecurity
  • email virus

    An email virus consists of malicious code distributed in email messages to infect one or more devices.

  • key fob

    A key fob is a small, programmable device that provides access to a physical object.

  • identity theft

    Identity theft, also known as identity fraud, is a crime in which an imposter obtains key pieces of personally identifiable ...

SearchHealthIT
SearchDisasterRecovery
  • What is risk mitigation?

    Risk mitigation is a strategy to prepare for and lessen the effects of threats faced by a business.

  • change control

    Change control is a systematic approach to managing all changes made to a product or system.

  • disaster recovery (DR)

    Disaster recovery (DR) is an organization's ability to respond to and recover from an event that affects business operations.

SearchStorage
  • JBOD (just a bunch of disks)

    JBOD, which stands for 'just a bunch of disks,' is a type of multilevel configuration for disks.

  • bare-metal restore

    A bare-metal restore (also referred to as bare-metal recovery or bare-metal backup) is a data recovery and restoration process ...

  • mSATA SSD (mSATA solid-state drive)

    An mSATA SSD is a solid-state drive (SSD) that conforms to the mSATA interface specification developed by the Serial ATA (SATA) ...

Close