SS-SUBJ-125: Detection Posture Management

Episode 125 September 12, 2023 00:32:26
SS-SUBJ-125: Detection Posture Management
Security Serengeti
SS-SUBJ-125: Detection Posture Management

Sep 12 2023 | 00:32:26

/

Show Notes

Today we take a look at some tools that provide "Detection Posture Management", which is the fanciest way I found to describe it.  These tools provide content for SIEMS, a Management Platform, data validation, and make SIEM engineering easier.  We take a look at three vendors, do some comparison and contrasting, and discuss the overall capabilities of these tools.

Vendor 1 - Cardinal Ops

Vendor 2 - SOC Prime

Vendor 3 - Anvilogic

Supporting Links:
Hype Cycle for Security Operations, 2023
Can We Have “Detection as Code”?
Detection as Code: How To Embed Threat Detection into Code

If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

Other Episodes

Episode 57

April 18, 2022 00:36:40
Episode Cover

SS-SUBJ-057: Future of Infosec Work Pt. I

In this episode, we take a deep dive into an article by my Infosec spirit animal, Daniel Miessler on the future of Information Security...

Listen

Episode 21

August 01, 2021 00:37:14
Episode Cover

SS-SUBJ-021: Security 101 - AI and ML!

In this episode, we bring in a ringer!  Tyler, a friend of ours who is deep into AI and ML, is here to explain...

Listen

Episode 4

April 04, 2021 00:39:42
Episode Cover

SS-SUBJ-04: Security 101 - What is XDR?

This week we discussed XDR.  What is it?  How much of it is marketing speak?  How much should you care? Here are some links...

Listen