Better SIEM Notifications - Making Your SIEM Situationally Aware
Offered By: YouTube
Course Description
Overview
Learn how to enhance your Security Information and Event Management (SIEM) system's effectiveness through improved notifications and situational awareness. This conference talk explores techniques for creating more intelligent and context-aware SIEM alerts. Discover how to incorporate additional data sources, implement scoring mechanisms, and leverage asset databases to prioritize and enrich notifications. Gain insights into practical examples and understand the inner workings of SIEMs to optimize your security monitoring capabilities.
Syllabus
Intro
Notables
Scores
First Example
Additional Data Sources
Score Modification
Web Server
Asset Database
Examples
Example 3 More Fun
How SIEMs Work
QA Time
Related Courses
Incident Detection and Investigation with QRadarPluralsight Implementing and Administering Azure Sentinel
LinkedIn Learning A Guide to Security Information and Event Management - SIEM
Udemy Vulnerability Management with QRadar
Pluralsight Security Event Triage: Statistical Baselining with SIEM Data Integration
Pluralsight