DynamiteNSM is an open-source Network Security Monitor (NSM), built on top of several leading, enterprise-grade technologies. The solution provides network and cybersecurity operators with holistic insights into their networks while giving them the ability to deep-dive into lower-level activities.

DynamiteNSM presents powerful dashboards, giving comprehensive view into cyber threats and network performance. It can be easily deployed in different environments including high-speed data centers, small-to-large enterprises, IoT & industrial networks, and even at home.

Zeek and Suricata

Zeek and Suricata technologies are at the heart of DynamiteNSM. Zeek converts traffic into relevant metadata, such as comprehensive connection records and application-layer transcripts. Suricata serves as a Network Intrusion Detection System based on the industry leading ruleset.

DynamiteNSM natively integrates Zeek and Suricata events with a common UID, creating a highly capable solution for incident response, cyber threat hunting and forensic analysis.

Ease of Deployment & Use

DynamiteNSM is designed to be deployed very quickly with minimal configuration. Unlike many other tools, it can be installed and managed with a standalone command-line utility. The system is inherently passive without disruption to the network. There is no need to install agents on every computer, perform network scans, or interact with network assets. Just connect network agents to the monitor and start receiving analytics.

Open-Source Architecture

DynamiteNSM handles massive volumes of network traffic through scalable ingestion and optimized network sensors. The solution includes two key components: the agent and the monitor. The agent analyzes and forwards network events, while the monitor processes incoming events and displays analytic information.

The monitor component builds upon the Elastic/OpenSearch stack and includes a fine-tuned Zeek and Suricata sensor.