SS-SUBJ-125: Detection Posture Management

Episode 125 September 12, 2023 00:32:26
SS-SUBJ-125: Detection Posture Management
Security Serengeti
SS-SUBJ-125: Detection Posture Management

Sep 12 2023 | 00:32:26

/

Show Notes

Today we take a look at some tools that provide "Detection Posture Management", which is the fanciest way I found to describe it.  These tools provide content for SIEMS, a Management Platform, data validation, and make SIEM engineering easier.  We take a look at three vendors, do some comparison and contrasting, and discuss the overall capabilities of these tools.

Vendor 1 - Cardinal Ops

Vendor 2 - SOC Prime

Vendor 3 - Anvilogic

Supporting Links:
Hype Cycle for Security Operations, 2023
Can We Have “Detection as Code”?
Detection as Code: How To Embed Threat Detection into Code

If you found this interesting or useful, please follow us on Twitter @serengetisec and subscribe and review on your favorite podcast app!

Other Episodes

Episode 103

March 20, 2023 00:26:28
Episode Cover

SS-RPRT-103: The Red Report 2023

We discuss The Red Report, a malware focused report from Picus Security.  They analyzed just over half a million malware samples from 2022, and...

Listen

Episode 1

March 14, 2021 00:53:41
Episode Cover

SS-NEWS-001 - Introducing the Security Serengeti!

Hosted by David Schwendinger and Matthew Keener, welcome to the Security Serengeti! Please join us for our introductory episode where we take a look...

Listen

Episode 73

August 15, 2022 00:52:34
Episode Cover

SS-RPRT-073: IBM Cost of a Breach Report

In this episode, we discuss the IBM Security Cost of a Data Breach Report 2022.  It's actually a really interesting report that goes into...

Listen