User Behavior Entity Analytics: Why It Matters

User and entity behavior analytics, or UEBA is a type of security software that uses behavioral analytics, machine learning algorithms and automation to identify abnormal and potentially dangerous user and device behavior. UEBA gives teams better security insights and enhances zero trust security programs. 

Behavioral analytics have two primary categories: 

  1. User Behavior Analytics (UBA) focusing on individual users, their activities, and detects anomalies by analyzing patterns.  

  1. User and Entity Behavior Analytics (UEBA) extending the focus not just on users but also on entities such as network devices, servers, and other connected devices.  

The benefits include Proactive threat detection, Improved incident response, and Insider threat detection. 

Watch the video below to see what User Behavior Entity Analytics does then click “THINK” to test your knowledge. Finally, explore additional resources related to Insider Threat by clicking “DIG DEEPER.” 

If you are having trouble viewing the video, access it directly from YouTube.

 
 
 
Next Question

Additional Resources for you to Explore

National Counterintelligence and Security Center | NCSC: 

Protecting Your Information 

National Security Agency | NSA: 

NSA Guidance on Visibility and Analytics Pillar of Zero Trust 

Cybersecurity and Infrastructure Security Agency | CISA: 

Cybersecurity Best Practices | CISA 

Center for Development of Security Excellence | CDSE eLearning: 

Behavioral Threat Analysis to Mitigate Perceived Risk 

Center for Development of Security Excellence | CDSE eLearning, Cybersecurity Toolkit: 

Cybersecurity Toolkit  

Center for Development of Security Excellence | CDSE Insider Threat Toolkit: 

Insider Threat Toolkit 

Center for Development of Security Excellence | CDSE Webinar PDF: 

CDSE Webinars | Behavioral Threat Analysis 

Questions?

Contact the CDSE
Insider Threat Awareness Team!

dcsa.cdsetraining@mail.mil