Experimenting with Real-Time Event Feeds
Offered By: Black Hat via YouTube
Course Description
Overview
Explore innovative approaches to real-time event monitoring and analysis in this 28-minute Black Hat conference talk. Delve into the limitations of traditional SIEM-based security operations and discover alternative methods for handling high-volume data streams. Learn how to overcome the challenges of pre-configuring log collection and the prohibitive costs of storing raw data. Gain insights into effective strategies for prefiltering and summarizing critical security information, enabling more efficient and proactive threat detection. Presented by Jose Morris, this talk challenges conventional wisdom and offers fresh perspectives on maximizing the value of real-time event feeds in modern cybersecurity operations.
Syllabus
Experimenting with Real-Time Event Feeds
Taught by
Black Hat
Related Courses
Palo Alto Networks CybersecurityPalo Alto Networks via Coursera (ISC)² Systems Security Certified Practitioner (SSCP)
(ISC)² via Coursera CompTIA Security+ (SY0-701) Complete Course & Exam
Udemy SSCP®: Monitoring and Analysis & Risk, Response, and Recovery (2012 Objectives)
Pluralsight SSCP®: Security Operations and Administration
Pluralsight