Group-IB Threat Intelligence offers strategic insights for financial institutions, enhancing threat detection and response capabilities through advanced features such as sandbox and site intelligence, effectively aiding in security operations.



| Product | Mindshare (%) |
|---|---|
| Group-IB Threat Intelligence | 2.1% |
| Recorded Future | 7.1% |
| CrowdStrike Falcon | 4.8% |
| Other | 86.0% |
Group-IB Threat Intelligence plays a crucial role in protecting tier-one banks in Indonesia against cyber incidents. It leverages strategic, operational, and technical intelligence to support threat hunting, incident response, and vulnerability management. Equipped with capabilities for continuous assessment of compromised activities and strategic threat forecasting, it enables seamless integration with internal systems via STIX, TAXII, or an API. However, it could improve its integration with SIEM and SOAR systems through enhanced middleware and address OT security and dark web intelligence for better industry alignment.
What are the key features of Group-IB Threat Intelligence?Group-IB Threat Intelligence is widely implemented in the financial sector, particularly among tier-one banks in Indonesia. Its integration capabilities via STIX, TAXII, or APIs facilitate intelligence streamlining with existing cybersecurity frameworks. Users focus investments on key cybersecurity technologies, benefiting from strategic threat forecasting and enhanced response mechanisms.
| Author info | Rating | Review Summary |
|---|---|---|
| Managing Partner at INTEGRISEC CONSULTING | 4.5 | <p>I use Group-IB Threat Intelligence to build strategic threat forecasts, valuing its comprehensive reports on emerging threats. While it excels in specificity compared to other solutions like CrowdStrike, it could improve by better aligning details with the MITRE ATT&CK framework.</p> |
| CTI & Threat Hunter at Telecom Egypt | 4.0 | I use Group-IB Threat Intelligence for threat hunting, incident response, and vulnerability management. Its site intelligence feature is valuable for tracking threat actors and analyzing TTPs, though its dark web intelligence could be improved compared to other solutions. |
| Team Lead Threat Intelligence at First Bank of Nigeria Ltd. | 4.0 | I find Group-IB Threat Intelligence essential for defending against cyber incidents, primarily because of its effective sandbox feature. However, there's room for improvement in integrating with SIEM and SOAR solutions, which could enhance its overall performance. |
| CTO at systema | 5.0 | I value Group-IB Threat Intelligence for its strong detection, stability, and responsive support, providing high ROI. However, I note its complex integration, high cost for some, and absence of on-premise options as areas for improvement. |
| Chief Cyber Security Officer at a tech services company with 1,001-5,000 employees | 4.5 | I recommend Group-IB Threat Intelligence. Its threat activation is excellent, setup easy, and support good. While costly, it offers value and stability. I feel its OT security could improve. |