YoVDO

Better SIEM Notifications - Making Your SIEM Situationally Aware

Offered By: YouTube

Tags

Conference Talks Courses Security Information and Event Management (SIEM) Courses Web Servers Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Learn how to enhance your Security Information and Event Management (SIEM) system's effectiveness through improved notifications and situational awareness. This conference talk explores techniques for creating more intelligent and context-aware SIEM alerts. Discover how to incorporate additional data sources, implement scoring mechanisms, and leverage asset databases to prioritize and enrich notifications. Gain insights into practical examples and understand the inner workings of SIEMs to optimize your security monitoring capabilities.

Syllabus

Intro
Notables
Scores
First Example
Additional Data Sources
Score Modification
Web Server
Asset Database
Examples
Example 3 More Fun
How SIEMs Work
QA Time


Related Courses

Incident Detection and Investigation with QRadar
Pluralsight
Implementing and Administering Azure Sentinel
LinkedIn Learning
A Guide to Security Information and Event Management - SIEM
Udemy
Vulnerability Management with QRadar
Pluralsight
Security Event Triage: Statistical Baselining with SIEM Data Integration
Pluralsight