SS-SUBJ-125: Detection Posture Management

Episode 125 September 12, 2023 00:32:26
SS-SUBJ-125: Detection Posture Management
Security Serengeti
SS-SUBJ-125: Detection Posture Management

Sep 12 2023 | 00:32:26

/

Show Notes

Today we take a look at some tools that provide "Detection Posture Management", which is the fanciest way I found to describe it.  These tools provide content for SIEMS, a Management Platform, data validation, and make SIEM engineering easier.  We take a look at three vendors, do some comparison and contrasting, and discuss the overall capabilities of these tools.

Vendor 1 - Cardinal Ops

Vendor 2 - SOC Prime

Vendor 3 - Anvilogic

Supporting Links:
Hype Cycle for Security Operations, 2023
Can We Have “Detection as Code”?
Detection as Code: How To Embed Threat Detection into Code

If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

Other Episodes

Episode 84

October 31, 2022 00:37:42
Episode Cover

SS-NEWS-084: The Uber Episode!

It's all Uber all day today.  First we discuss the implications of Uber CSO being charged for not reporting the 2016 incident to the...

Listen

Episode 123

August 21, 2023 00:44:38
Episode Cover

SS-REVW-123: Defcon and Black Hat Trip Report!

Matthew has returned from Hacker Summer Camp, full of stories and information about new technology.  So sit with us for a while, and listen...

Listen

Episode 94

January 16, 2023 00:47:07
Episode Cover

SS-NEWS-094: Russia Meddling and Weak Federal Passwords

Russia Meddling was not quite as bad as originally thought, Federal agency passwords are weak, digital license plates are a terrible but cool idea,...

Listen