TrustRadius: an HG Insights company

Cofense Triage

Score9.4 out of 10

69 Reviews and Ratings

What is Cofense Triage?

Cofense Triage accelerates phishing qualification, investigation, and response by automating standard responses to suspicious emails to make analysts more efficient and driving out actionable intelligence, and providing incident response playbook.

Categories & Use Cases

Media

Triage Dashboard
Triage Dashboard Cluster Details
Triage Cluster Details
Triage Cluster Malicious Attachment
Triage Cluster Headers
Triage Reporter Details
Triage Noise Custom Rules

1 / 7

Top Performing Features

  • Centralized Dashboard

    A central dashboard provides analysts with a clear look at the most important data

    Category average: 8.5

  • Live Response for Rapid Remediation

    Live remediation response allows incident responders to initiate remediation from anywhere over secure connection

    Category average: 8.3

  • Attack Chain Visualization

    Attack chain visualization to help identify root cause

    Category average: 6.5

Areas for Improvement

  • Integration with Other Security Systems

    Pre-built integration with other security systems like SIEM and threat intelligence

    Category average: 7.5

Cofense is on top two and not number two!

Use Cases and Deployment Scope

I will list the product address and scope of use in one paragraph below. In my organization, we use Cofense Triage for e-mail security. Mainly Cofense Triage automates the scanning, analysis, and blocking of e-mails with malicious intent. Our end users also have the ability to manually report suspicious and potentially malicious e-mails. There is an add-in integrated into our e-mail platform/application, which is a button that end users click to report an e-mail. I receive and see all the e-mails which are reported and analyze which ones are malicious and which ones are not. From there, have an action plan.

Pros

  • Automated E-mail analysis.
  • Automated E-mail scanning.
  • Automated Malicious E-mail Blocking.
  • Reporting to administrators.

Cons

  • None
  • None
  • None

Return on Investment

  • Automation of IT services.
  • Saves analysis time.
  • Improved e-mail security.
  • Improved end user/staff e-mail security awareness.

Alternatives Considered

KnowBe4 PhishER

Other Software Used

KnowBe4 Security Awareness Training, Symantec Advanced Threat Protection, Microsoft Teams, FortiClient

Love Triage

Use Cases and Deployment Scope

Cofense Triage is used across the whole organization.

What business problems does it address? Reporting suspicious emails.

Pros

  • Provides a safe environment for investigation of potentially malicious emails
  • Ability to automate responses to reported emails
  • Makes reading of headers and attachments easy

Cons

  • Ability to leave a comment across clusters

Return on Investment

  • Reduced staffing needs, probably saves us one FTE

Alternatives Considered

Proofpoint ThreatResponse

Other Software Used

Proofpoint Email Protection, Cisco Umbrella, Microsoft Defender for Endpoint (formerly Microsoft Defender ATP)

Usability

Cofense Triage - Saving Time and Effort in the Fight for Accurate Phishing Detection and Response

Use Cases and Deployment Scope

Cofense Triage allows the analysts on our Threat Detection team the

ability to quickly review and respond to each of the reported emails by

our users. Our response rate to our employees is now 100% and we are

able to stay on top of undetected threats that come across in phishing

emails. Cofense Triage conducts the initial analysis on these emails and

tags them appropriately so that we cut down on the amount of time that

we need to spend on each one.

Pros

  • Groups emails of the same type together
  • Applies tags to emails based on rules
  • Allows quick and efficient responses to users

Cons

  • The ability to customize responses on the fly would be helpful
  • The ability to hover over elements in the HTML preview to get a mouseover tool tip of things like the URL (not-clickable) would be a great improvement

Return on Investment

  • Saved time
  • Decreased time to detect phishing
  • Increased accuracy in phishing detection

Other Software Used

Avanan, LogRhythm NextGen SIEM Platform, Cofense Reporter

Get Protection to emails only through Cofense Triage

Use Cases and Deployment Scope

Cofense Triage is used to identify phishing and spam emails in my organization. I play the admin role of setting up triage, roles, etc. for the employees. Business problems the product addresses is we can come to know who, when from where the emails came the full detailed history of phishing and spamming can be seen which gives very very less impact to the organization from data breaching. The scope is we can create many recipes according to our requirements we can see the rules matching etc. overall it's allrounder software for emails which must be a need of all the organization.

Pros

  • Processed reports by type of emails which came during the day
  • Process reports by category (Non-malicious, spam, malware, fraud )
  • Average time to process a report
  • Cofense Intelligence rules

Cons

  • Improvement for email parsing like there are many parameters where the emails go through but sometimes they fail and becomes unparsed and the emails get into a pending state

Return on Investment

  • It saves time by auto categorizing the emails .
  • Simple , easy , reliable , budget friendly
  • Compliance is on point because every incident on email is been triggered and handled
  • Easy integration with other automations

Alternatives Considered

Cofense Vision and Cofense PhishMe

Other Software Used

Symantec Endpoint Security, Cybereason Managed Detection & Response (MDR), Cofense Vision, Cybereason Defense Platform

Cofence Triage - Value for Money

Use Cases and Deployment Scope

To solve the phishing response system

Pros

  • Clusters email to prioritize them
  • Automated Response to Reporters
  • Consolidated email to proxy team
  • identifying who else in the organization had received the similar email

Cons

  • rule creations
  • configuring 3rd party APIs
  • NA

Return on Investment

  • Reporting phishing email culture had improved on our organization
  • identifying all the incoming phishing emails
  • noise reduction of spam emails helped to focus on the real threat

Other Software Used

Cofense PhishMe, Cofense Vision, Cofense LMS