Data Analytics

Finding the unknown unknowns.



Finding deep patterns at enterprise scale

ENSIGN is used by security administrators and threat specialists to mine large volumes of unlabeled multidimensional data, such as spreadsheets or logs, for patterns that cue investigations.


These patterns are used in day-to-day operations to discover “what has changed” and support skilled hunt teams who use them to make directed, efficient use of big-graph platforms and search tools. In both cases, ENSIGN’s advanced unsupervised machine learning capability connects key dots that make clear who the relevant actors are.


In this way, ENSIGN is the ultimate forensics tool for navigating big data.

For more information about Reservoir products or to purchase, please

Core Capabilities

Total Data Utilization

Organizations collect more data than they can effectively analyze. ENSIGN provides a singular tool to make use of all the data you are collecting now, without the need for time-consuming labeling or complex feature engineering.

Threat Discovery

Today’s attackers are smart. Security professionals make mistakes. Rules can be incomplete and outdated. With ENSIGN see the real story in your data, without bias. Discover what you thought you were protected against.

Maximize Modern Search Tools

Whether you are using Elastic, Splunk, Neo4j or something else, ENSIGN provides the forensic trailheads necessary to make smart, focused use of modern search tools. Form queries relevant to your data. No more boiling the ocean to get thousands of hits against abstract patterns.

Unknown Unknowns

Statistics only tell part of the story. With ENSIGN you can see the patterns that make up your data, over any time interval. Learn to separate the normal from the suspicious, the high-volume activity from the low and slow, and find what you didn’t know you were looking for.

For more information about Reservoir products or to purchase, please

ENSIGN: cyber

Network security monitor

Group 2808

Ensign - cyber

ENSIGN® is the codename for an innovative machine learning technology offering multi domain analytics with High Performance Computing scalability. ENSIGN accepts large, structured, multi-dimensional datasets, such as spreadsheets or logs, and decomposes them,
independently or jointly, into identifiable, discrete patterns of behavior. These patterns provide a roadmap for data comprehension and can be used to drive both investigative and automated security activities