LevelBlue Threat Detection and Response for Government (LevelBlue TDR for Gov) is built on the Federal Risk and Authorization Management Program (FedRAMP)-authorized, industry-leading Unified Security Management (USM) platform. This combines multiple essential security capabilities and enables fast deployment and broad visibility across your whole network. LevelBlue TDR for Gov has achieved FedRAMP Moderate Authority to Operate (ATO) on Amazon Web Services (AWS) GovCloud. The following table lists the feature parity and divergence between USM Anywhere Premium and LevelBlue TDR for Gov. Unless specified, LevelBlue TDR for Gov adheres to USM Anywhere’s documentation. Comparison Between USM Anywhere Premium and LevelBlue TDR for Gov
Product CapabilitiesUSM Anywhere PremiumLevelBlue TDR for Gov
Asset discovery and inventory✔️✔️
Vulnerability assessment (supports CVSS v2 and v3)✔️✔️
Intrusion detection, host IDS✔️✔️
Intrusion detection, network IDS✔️✔️
Intrusion detection, cloud IDS✔️✔️
SIEM event correlation✔️✔️
Incident response✔️✔️
Endpoint detection and response✔️✔️
Log management✔️✔️
Compliance reports✔️✔️
Email alerts✔️✔️
Integrated ticketing and alerting✔️✔️
Orchestration with security tools✔️✔️
Investigations✔️✔️
Automated incident response and forensics✔️✔️
Dark web monitoring✔️✔️
Advanced BlueApps✔️✔️
Advanced Security Notifications (through third party software services)✔️✔️
Support for higher data volumes✔️✔️
Support PCI log storage requirements✔️✔️
Threat Intelligence powered by LevelBlue Labs™✔️✔️
Sensor deployment✔️✔️
On premises, Hyper-V✔️✔️
On premises, VMWare✔️✔️
Commercial Cloud Environments, Amazon Web Services (AWS)✔️✔️
Commercial Cloud Environments, Microsoft Azure✔️✔️
Commercial Cloud Environments, Google Cloud Platform (GCP)✔️✔️
Government Cloud Environments, AWS GovCloud✔️
Government Cloud Environments, Microsoft Azure Government✔️
Government Cloud Environments, GCP✔️
AWS Cloud Connector✔️✔️
ReportingScheduled reportsStandard reports
Access URL<subdomain>.alienvault.cloud<subdomain>.gov.alienvault.us
Geo-IP resolutionapi.geoip-enrichment.<REGION>.prod.alienvault.cloud/geo-ip/sensorapi.geoip-enrichment.us-gov-west-1.prod-gov.gov.alienvault.us/geo-ip/sensor
Storage, hot (searchable) storage15, 30, 90, or 180 days90 or 180 days
Storage, cold storageUnlimitedUnlimited
Storage, data retentionService termService term
Customer support hoursMonday-Friday, 7AM-5PM PacificMonday-Friday, 8AM-6PM Eastern

(Support personnel are US citizens based in contiguous United States.)
Platform monitoring24/724/7 (US citizens / US soil)

FAQ