Smiddle Security Administration Platform (SSAP) software automates the processing of indicators of compromise (IoCs), improves protection and increases efficiency for joint customers using Cisco’s Secure Firewall solution.
SSAP can collect and process threat information from a large number of sources (open public sources and sources with limited access that require authorization) and work with different formats: CSV, MISP, TXT, PDF, STIX, HTML, STIX/TAXII.
The Smiddle Security Administration Platform works like a central database that collects, normalizes, and removes duplicate and invalid indicators, prepares personalized lists of threat indicators and enriches corresponding security devices. Providing unique and type-appropriate indicators of compromise increases the security effectiveness.
Automated collection, processing, and normalization of metrics reduces the time security personnel spend processing Threat Intelligence events.