The Unique Challenges Facing SOC Teams at Large Organizations and How SIEM Automation Can Help

Security teams at large, distributed organizations face unique challenges, with analysts often working in the dark, lacking essential information about the organization. Automation technology can help bridge the gap caused by these more complex networks.

...

Read the full article

May 06, 2020

5 Technologies to Look for When Choosing a SIEM to Protect Your Organization in the Coronavirus Crisis

COVID-19 is wreaking havoc with our lives and our businesses, but hackers aren’t resting. If anything, we’ve seen the level of cyber attacks increase and specifically target new vulnerabilities. Those entrusted with protecting organizations don’t have the luxury to panic, but...

Read the full article

Mar 30, 2020

Main Insights from Gartner’s SIEM Magic Quadrant Report

Every year the SIEM industry holds its breath for Gartner’s SIEM Magic Quadrant report. And for good reason. Gartner coined the term SIEM in 2005 and is still an authority on the SIEM industry.  The 2020 report holds some words of wisdom vendors should heed. Here are my three...

Read the full article

Feb 26, 2020

Iran Is Using MITRE. You Should Too.

Iran cyber attacking the US is no longer a threat - it's our reality. How we can better prepare ourselves and make sure our SIEM is equipped to deal with this very serious threat?

Read the full article

Jan 09, 2020

Log analysis - SIEM SIEM, but different

Your Elastic stack is up and running, and you’re using Logstash for SIEM purposes. But you’re overwhelmed to discover that while every new system produces heaps and heaps of logs, each vendor uses their own data format, and employs a different set of values for describing...

Read the full article

Dec 25, 2019

The Secret to Getting More from Your SIEM

SIEM in a Nutshell

SIEM has come a long way since it first came on the scene, about twenty years ago. 

It began as a log management tool focused on simple collection and storage to meet compliance, and these use cases are still very relevant as 2020 draws nearer.

Initially,...

Read the full article

Dec 02, 2019

How MITRE Helps Break Down the “Tower of Babel” for SIEM

Since its first days, cyber security developed in a patchwork fashion.  A security need came up, a product was developed to address it.  After many years of this, the whole contraption reflects the ad-hoc way in which it was formed, like a kid’s tower of blocks about to...

Read the full article

Jul 22, 2019

It’s All About SIEM Value – Infosec 2019 Wrap Up

Today is the last day of Infosecurity Europe 2019 and, besides looking forward to recuperating with a nice weekend in London, I’m reflecting on what I heard at dozens of meetings and talks with people at Infosec, and what the trends are in SIEM.

Read the full article

Jun 06, 2019

SIEM in the Era of the Cyber Security Skills Crisis

The much talked about cyber security skills shortage is getting worse.  While SIEM was supposed to help lower the workload of security teams, this hasn’t actually been the case.  An overview of what to look for - and what to look out for - when considering SIEM.

Read the full article

Jun 04, 2019

The Ground Is Shifting Under SIEM: 5 Ways Things Have Changed

 Since the birth of SIEM, there have been major shifts in the threat and security operations landscape which render the technologies of yesteryear – and even so called “NG-SIEM” solutions - obsolete.  What has changed, and what needs to change to make SIEM effective?

Read the full article

Feb 21, 2019
No More Posts