Share your experience using ThreatConnect Threat Intelligence Platform (TIP)

The easiest route - we'll conduct a 15 minute phone interview and write up the review for you.

Use our online form to submit your review. It's quick and you can post anonymously.

Your review helps others learn about this solution
The PeerSpot community is built upon trust and sharing with peers.
It's good for your career
In today's digital world, your review shows you have valuable expertise.
You can influence the market
Vendors read their reviews and make improvements based on your feedback.
Examples of the 85,000+ reviews on PeerSpot:

Senior Engineer at a government with 201-500 employees
Real User
Stable product, offers IOCs and monitors for Dark Web Services, data leakage, and so on
Pros and Cons
  • "The solution improved our overall security posture."
  • "More insights would be helpful. We have multiple solutions for threat intelligence. If someone has a bigger view or full eye on all the incidents, it will be beneficial."

What is our primary use case?

We use it to search for IOCs.

I provide support to government entities that buy and use EDR solutions in general. We encounter it with different customers and clients.

What needs improvement?

More insights would be helpful. We have multiple solutions for threat intelligence. If someone has a bigger view or full eye on all the incidents, it will be beneficial.

So, to include everything in one solution.

For how long have I used the solution?

We deal with EDR and other endpoint solutions from Kaspersky. So, I have been using this particular solution for seven years now. 

What do I think about the stability of the solution?

I would rate the stability a nine out of ten. 

What do I think about the scalability of the solution?

There are around 20 end users using this solution in my organization. 

I would rate the scalability an eight out of ten. It is a great solution. 

I personally use it weekly. 

Which solution did I use previously and why did I switch?

This was the first solution we used.

How was the initial setup?

I would rate my experience with the initial setup an eight out of ten, with one being difficult and ten being easy. 

What's my experience with pricing, setup cost, and licensing?

For the business side, it's a great solution. 

The solution improved our overall security posture. 

I would recommend using it. It has a lot of information, monitors for Dark Web Services, data leakage, and so on.

Overall, I would rate the solution an eight out of ten. 

What other advice do I have?

I recommend the solutions. We use them in different sectors.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate
ALEX LOGINOV - PeerSpot reviewer
Managing Partner at INTEGRISEC CONSULTING
Real User
Completely satisfied with the way the report is prepared and easy to setup
Pros and Cons
  • "The totality of the recordings is quite important. The networks, the new threat actors, the new methods, tactics, techniques, and procedures."
  • "As the landscape evolves, they could provide a little more detail or specificity to map it to the MITRE ATT&CK framework."

What is our primary use case?

I used it to build the strategic threat forecast. The annual forecast for clients.

How has it helped my organization?

We did use it for threat detection, but not directly. I analyze multiple reports, including this one, and assess my client's infrastructure. I identify threats outlined in the reports that may be relevant to the client's infrastructure, and then I help them build detection use cases.

There's no automation. We don't do anything automatically at this point. It's all manual and based on analysis. I can't integrate it into automatic feeds because the report outlines threats that may not be relevant to the client's infrastructure. So, I do the analysis and integrate it manually.

I'm completely satisfied with the way the report is prepared. It's a good report.

What is most valuable?

The totality of the recordings is quite important. The networks, the new threat actors, the new methods, tactics, techniques, and procedures. The most important is the forecast. It's how the reports depict what's coming.

What needs improvement?

As the landscape evolves, they could provide a little more detail or specificity to map it to the MITRE ATT&CK framework. Even though it is done in the report, it could be done better.

For how long have I used the solution?

I used it for four years, since 2020. But recently, I stopped using it. 

What do I think about the stability of the solution?

I would rate the stability a nine out of ten. Ten means outstanding, so I don't give ten for anything. 

There is always some room for improvement, but I have had no big issues or troubles with stability.

What do I think about the scalability of the solution?

I would rate the scalability a nine out of ten. It is quite good. I would recommend it for medium and large-sized companies. 

I wouldn't recommend it for small companies because their infrastructure is not large enough.

How are customer service and support?

I never needed it.

Which solution did I use previously and why did I switch?

I find it more relevant than others. Some reports are vague or irrelevant with too much information. 

For example, I use CrowdStrike and some other vendors, but I think Group-IB's report is more specific. I am happy with the report.

How was the initial setup?

The initial setup is straightforward. I had no issues with that.

What's my experience with pricing, setup cost, and licensing?

The pricing is alright. It's right on the mark. It costs money, but it's not too high. It's reasonable.

For me, it's a reasonable price for the quality of the product.

What other advice do I have?

Overall, I would rate the solution a nine out of ten. 

I would recommend using it.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate