DTEX User and Entity Behavior Analytics

  • USER AND ENTITY BEHAVIOR ANALYTICS
  • USE CASES
  • USER ACTIVITY MONITORING

Overview

DTEX User and Entity Behavior Analytics combines UEBA with data loss visibility in one lightweight solution for insider risk. It uses high-fidelity metadata, behavioral enrichment, and risk modeling to identify human intent and security issues earlier. 

The DTEX Platform collects the minimum data needed to build a forensic audit trail: 3 to 5 MB per user each day, with near zero endpoint or network impact. It monitors user activity 24/7, on and off network, across supported workstations, servers, and virtual environments. 

DTEX baselines behavior by role, department, and geography, then uses those patterns to create dynamic risk scores. DTEX Pseudonymization™ applies privacy controls across raw fields such as username, email, IP address, domain name, and device name without affecting the risk model or investigations. 

What You'll Learn

  • How DTEX combines UEBA with data loss visibility in one lightweight solution.
  • How metadata, behavioral enrichment, and risk modeling help identify human intent and security issues earlier.
  • How DTEX collects 3 to 5 MB of data per user each day while building a forensic audit trail.
  • How DTEX Pseudonymization™ applies privacy controls while keeping investigation visibility intact.

Frequently Asked Questions

What is DTEX user and entity behavior analytics for insider risk?

DTEX User and Entity Behavior Analytics combines UEBA and data loss visibility in one lightweight solution for insider risk. It uses high-fidelity metadata, behavioral enrichment, and risk modeling to identify human intent and security issues earlier. 

What are the core DTEX behavioral analytics capabilities?

The core DTEX behavioral analytics capabilities include user behavior baselining, dynamic risk scoring, data loss visibility, and forensic audit trail creation. DTEX analyzes behavior by role, department, and geography to identify suspicious behavior earlier. 

How much endpoint data does DTEX collect for user behavior analytics?

DTEX collects 3 to 5 MB of data per user each day. That is the minimum data needed to build a forensic audit trail, with near zero endpoint or network impact. 

What environments does DTEX monitor for user and entity behavior analytics?

DTEX monitors user activity 24/7, on and off network, across supported workstations, servers, and virtual environments. Security teams get visibility into user activity across supported enterprise environments. 

How does DTEX use risk modeling in its analytics platform?

DTEX uses risk modeling to create dynamic risk scores from analyzed and baselined user behavior. Behavior is baselined by role, department, and geography to support earlier identification of human intent and security issues. 

How does DTEX Pseudonymization™ support privacy and investigations?

DTEX Pseudonymization™ applies privacy controls across raw data fields without affecting the risk model or the ability to investigate suspicious behavior. It applies to username, email, IP address, domain name, and device name. 

Ready to Learn More?