SS-SUBJ-39: Risk Based Alerting

Episode 39 December 12, 2021 00:38:46
SS-SUBJ-39: Risk Based Alerting
Security Serengeti
SS-SUBJ-39: Risk Based Alerting

Dec 12 2021 | 00:38:46

/

Show Notes

In this episode, we discuss Risk Based Alerting, a new paradigm in alerting released in a talk at Splunk .conf in 2018.  We're big fans, and we discuss it from start to finish, and share some stats on how much it improved alerting at the companies who have implemented it.

You have to register at Splunk's .conf site to watch the talks, but it's free.  The talks themselves can be found here: https://conf.splunk.com/watch/conf-online.html

After registration and logging in, search for "Risk Based Alerting" and that will get you the majority of the talks.  

If you found this interesting or useful, please like and subscribe, and follow us @serengetisec for more!  Without that social validation, we just sulk around the house all day.

Other Episodes

Episode 113

May 29, 2023 00:38:20
Episode Cover

SS-NEWS-113: How much will companies watch you if they could?

This week we discuss company surveillance via JP Morgan Chase, and then the sentences handed down for the CSO of Uber and an Engineer...

Listen

Episode 44

January 18, 2022 00:51:32
Episode Cover

SS-SUBJ-44: Hiring in the Security Space

In this episode we talk about hiring in Information Security.  This discussion was triggered by an article on not hiring losers, so we discuss...

Listen

Episode 134

February 26, 2024 00:50:58
Episode Cover

SS-RPRT-137: The Blue Report

This week we take a look at the Picus Security Blue Report, and provide some analysis of the statements.  Interesting findings here.  The report...

Listen