SS-SUBJ-39: Risk Based Alerting

Episode 39 December 12, 2021 00:38:46
SS-SUBJ-39: Risk Based Alerting
Security Serengeti
SS-SUBJ-39: Risk Based Alerting

Dec 12 2021 | 00:38:46

/

Show Notes

In this episode, we discuss Risk Based Alerting, a new paradigm in alerting released in a talk at Splunk .conf in 2018.  We're big fans, and we discuss it from start to finish, and share some stats on how much it improved alerting at the companies who have implemented it.

You have to register at Splunk's .conf site to watch the talks, but it's free.  The talks themselves can be found here: https://conf.splunk.com/watch/conf-online.html

After registration and logging in, search for "Risk Based Alerting" and that will get you the majority of the talks.  

If you found this interesting or useful, please like and subscribe, and follow us @serengetisec for more!  Without that social validation, we just sulk around the house all day.

Other Episodes

Episode 31

October 17, 2021 00:21:57
Episode Cover

SS-SUBJ-31: Zero Trust Networking

In this episode, we review what we know about Zero Trust Networking, and the types of products that claim to do it.   Original Forrester...

Listen

Episode 97

February 06, 2023 00:28:23
Episode Cover

SS-RPRT-097: Blackberry Quarterly Threat Intel Report

Once again, we dip our toes into another report, in constant hope of finding one worth the time it takes to read! This is...

Listen

Episode 117

June 26, 2023 00:25:06
Episode Cover

SS-NEWS-117: Mt Gox Hackers Named and Public Wifi!

This week we discuss the Mt. Gox hack, 9 years on, due to the recent charging, we discuss how sextortion is changing with the...

Listen