TAP provides enterprise-wide visibility by combining alerts from the diverse range of security technologies throughout the organization. The company’s thin network sensors offer real-time visibility to distributed environments, combining events from remote locations and sending them to a centralized location for log retention, threat analysis and investigation. FireEye has a dedicated TAP team made up of data scientists and security researchers that codify extensive front-line incident response experience into detection rules, behavioral analytics and guided investigations. Within hours of discovering an emerging attack, the team creates new rules and perform a retrospective analysis of the environment to determine the potential impact and feed these rules back into the TAP product. Upon discovering malicious activity, TAP generates alerts enriched with supporting data, such as attacker context, to aid the investigator in validating and scoping the incident.