In this episode, we discuss Risk Based Alerting, a new paradigm in alerting released in a talk at Splunk .conf in 2018. We're big fans, and we discuss it from start to finish, and share some stats on how much it improved alerting at the companies who have implemented it.
You have to register at Splunk's .conf site to watch the talks, but it's free. The talks themselves can be found here: https://conf.splunk.com/watch/conf-online.html
After registration and logging in, search for "Risk Based Alerting" and that will get you the majority of the talks.
If you found this interesting or useful, please like and subscribe, and follow us @serengetisec for more! Without that social validation, we just sulk around the house all day.
This week we discuss Malware stored on the Blockchain (coming soon to a theater near you!), how to stop Heroes in your SOC (common...
In this episode, we discuss the coming business of PERSONAL cyber insurance, and the late breaking news that India will be soon requiring some...
Today we discuss the Detection Engineering Behavior Maturity Model, which is a new Capability Maturity Model for Detection Engineering (surprise!) from Elastic. It seems...