Raytheon Oakley’s SureView and CoreView 6.0 improve data collection and content monitoring for
efficient insider threat investigations

New functionality enables activity monitoring and threat detection
within proprietary software applications

SALT LAKE CITY, (March 19, 2008) – Raytheon Oakley Systems, Inc., a Raytheon Company (NYSE: RTN) leader in insider threat protection, has unveiled new capabilities for SureView™ 6.0 and CoreView™ 6.0.

These new releases introduce new content monitoring capabilities, enhanced troubleshooting, diagnostic reporting, agent hardening, product performance and scalability, and improved workflow to facilitate efficient insider threat investigations.

SureView is an insider threat protection solution installed on endpoints that identifies and investigates user activity that violates policy so organizations can proactively manage insider incidents. SureView 6.0 has expanded its award-winning data collection and content monitoring capabilities to include a text collector to capture displayed text from custom, proprietary applications and parse text for content monitoring, analysis and reporting. This expands SureView’s capability to monitor, analyze, and report on content to monitor suspicious user behavior on proprietary applications, which often contain highly sensitive information such as customer financial records or intellectual property.

“Raytheon Oakley Systems continues to lead the market in insider threat protection innovations,” said Derek Smith, president of Raytheon Oakley Systems. “Our technology allows companies and government agencies to proactively find malicious insiders intent on doing harm, while also protecting well-intentioned employees from doing bad things by accident, or from bending the rules. If malicious incidents are found, we provide the visual forensics for investigations and evidentiary proceedings.”

Other new SureView 6.0 enhancements include new diagnostic reporting for agent health status, agent summary information notifications and new filtering options to identify specific agents and health conditions.

SureView 6.0 improves investigation workflow by enabling users to filter events by status on the SureView dashboard and maintain user-defined filters throughout a session, allowing events to be filtered by event ID on the events page. It also introduces a data import-export tool that allows operators to select data to be exported from the central database and imported to another database. These new features allow customers to export and later delete specific data for review by selected investigators throughout an investigation. The SureView agent was also hardened to secure it against tampering, removal from a monitored workstation, or from being shut down.

CoreView is a network appliance-based insider threat protection solution that provides visual analysis of all content transfer and communication activities as they occur on the network. CoreView 6.0 enhancements include new support for IMAP (Internet Message Access Protocol) to provide comprehensive context for e-mail, new archiving capabilities that store event data collections, improved data indexing, and new diagnostic reporting for network collector health, communication, and performance statistics.

SureView 6.0 and CoreView 6.0 are available now. For more information, visit http://www.raytheon.com/oakley.


Raytheon Oakley Systems PR Contact:
Kathy Maag Bentaieb
Raytheon Oakley Systems
408.582 .3780