SS-SUBJ-39: Risk Based Alerting

Episode 39 December 12, 2021 00:38:46
SS-SUBJ-39: Risk Based Alerting
Security Serengeti
SS-SUBJ-39: Risk Based Alerting

Dec 12 2021 | 00:38:46

/

Show Notes

In this episode, we discuss Risk Based Alerting, a new paradigm in alerting released in a talk at Splunk .conf in 2018.  We're big fans, and we discuss it from start to finish, and share some stats on how much it improved alerting at the companies who have implemented it.

You have to register at Splunk's .conf site to watch the talks, but it's free.  The talks themselves can be found here: https://conf.splunk.com/watch/conf-online.html

After registration and logging in, search for "Risk Based Alerting" and that will get you the majority of the talks.  

If you found this interesting or useful, please like and subscribe, and follow us @serengetisec for more!  Without that social validation, we just sulk around the house all day.

Other Episodes

Episode 153

November 18, 2024 00:45:41
Episode Cover

SS-NEWS-153 - Lawyers will Inherit Cyber

This week we discuss an academic paper through Venture in Security talking about how companies will rely more and more on legal reasoning and...

Listen

Episode 94

January 16, 2023 00:47:07
Episode Cover

SS-NEWS-094: Russia Meddling and Weak Federal Passwords

Russia Meddling was not quite as bad as originally thought, Federal agency passwords are weak, digital license plates are a terrible but cool idea,...

Listen

Episode 14

June 13, 2021 00:39:28
Episode Cover

SS-NEWS-014: NDA's Expire in RSA Breach

In this episode we discuss the Wired Article on the RSA Breach of 2011.  The NDA's have expired, and the full story has come...

Listen