SS-SUBJ-125: Detection Posture Management

Episode 125 September 12, 2023 00:32:26
SS-SUBJ-125: Detection Posture Management
Security Serengeti
SS-SUBJ-125: Detection Posture Management

Sep 12 2023 | 00:32:26

/

Show Notes

Today we take a look at some tools that provide "Detection Posture Management", which is the fanciest way I found to describe it.  These tools provide content for SIEMS, a Management Platform, data validation, and make SIEM engineering easier.  We take a look at three vendors, do some comparison and contrasting, and discuss the overall capabilities of these tools.

Vendor 1 - Cardinal Ops

Vendor 2 - SOC Prime

Vendor 3 - Anvilogic

Supporting Links:
Hype Cycle for Security Operations, 2023
Can We Have “Detection as Code”?
Detection as Code: How To Embed Threat Detection into Code

If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

Other Episodes

Episode 14

June 13, 2021 00:39:28
Episode Cover

SS-NEWS-014: NDA's Expire in RSA Breach

In this episode we discuss the Wired Article on the RSA Breach of 2011.  The NDA's have expired, and the full story has come...

Listen

Episode 102

March 13, 2023 00:37:53
Episode Cover

SS-NEWS-102: They're from the government, and they're here to help!

We discuss women in cybersecurity companies vs on the dark side, the new CyberSecurity Strategy from the White house, and a re-written Smart Contract...

Listen

Episode 17

July 04, 2021 00:37:47
Episode Cover

SS-BOOK-017: Book Review - The Phoenix Project

In this episode we review and discuss one of the books on the Cybersecurity Canon - The Phoenix Project! In as spoiler free way...

Listen