SS-SUBJ-39: Risk Based Alerting

Episode 39 December 12, 2021 00:38:46
SS-SUBJ-39: Risk Based Alerting
Security Serengeti
SS-SUBJ-39: Risk Based Alerting

Dec 12 2021 | 00:38:46

/

Show Notes

In this episode, we discuss Risk Based Alerting, a new paradigm in alerting released in a talk at Splunk .conf in 2018.  We're big fans, and we discuss it from start to finish, and share some stats on how much it improved alerting at the companies who have implemented it.

You have to register at Splunk's .conf site to watch the talks, but it's free.  The talks themselves can be found here: https://conf.splunk.com/watch/conf-online.html

After registration and logging in, search for "Risk Based Alerting" and that will get you the majority of the talks.  

If you found this interesting or useful, please like and subscribe, and follow us @serengetisec for more!  Without that social validation, we just sulk around the house all day.

Other Episodes

Episode 100

February 27, 2023 00:40:15
Episode Cover

SS-NEWS-100: More AI Discussion, this time in Amazon!

More AI Discussion!  Yay!  We discuss how Amazon is putting tape guardrails around Chat GPT and where Daniel Miessler thinks AI will drive value...

Listen

Episode 3

March 29, 2021 00:43:28
Episode Cover

SS-NEWS-03: CNA and Insider Threat

This week we discuss two articles around CNA (an insurer that provides cybersecurity insurance) taking down some of their systems, and an insider threat...

Listen

Episode 94

January 16, 2023 00:47:07
Episode Cover

SS-NEWS-094: Russia Meddling and Weak Federal Passwords

Russia Meddling was not quite as bad as originally thought, Federal agency passwords are weak, digital license plates are a terrible but cool idea,...

Listen