SIEM 101 – Best Practices for Implementation
Security information and event management (SIEM) is about collecting, detecting, and responding. That is, collecting data into a single pane of glass...
A 25+ year industry veteran, David is a cybersecurity strategist and platform evangelist at Netenrich. Most recently, he was Principal Architect at Securonix. Prior companies include Accuvant, Dell, Fortinet, and IBM. He has consulted to Microsoft, Apple, Visa, Chevron, and Amex and has authored publications and articles on cybersecurity. He holds a BSBA from the University of Texas at Dallas and and holds numerous certifications.
Security information and event management (SIEM) is about collecting, detecting, and responding. That is, collecting data into a single pane of glass...
At Netenrich, part of what we’re doing is looking "left of bang." Bang (!) is geek speak for when we see detonation of malicious content. What...
Threats start with risks. Understanding risks is really just situational awareness. And that awareness leads to faster and better detection. The...
"UEBA, it’s just a use case." – Netenrich CISO Chris Morales
He’s not wrong. But I’d take it a step further. User entity and behavior analytics (...
One vendor uses 5 patterns, the other uses 500 rules. What’s better?
Anyone who has configured a SIEM or UEBA (e.g., QRadar, Splunk, ArcSight,...
The best source of information for Security, Networks, Cloud, and ITOps best practices. Join us.