Collecting logs is not enough. Here is what a SIEM actually does - and what most people get wrong about incident detection and response.
This is my first time learning about SIEM
Great! Thank you for your comment!
Do you think this article helped you understand the core idea of SIEM solutions? Or is there something confusing for you?
Very detailed article! Especially I like the way how you connect these concepts to certifications!
Happy to hear that!
I have many subscribers preparing for those certifications, which means I always focus on pinpointing exactly what they need to pass the exams.
If you are interested in Sentinel Siem you have many detections, dasboards, notebooks in this repo. https://github.com/davidalonsod/Dalonso-Security-Repo/tree/main/Workbooks/AI-Agents-Monitoring
yeah, I was definitely confusing this with log management and I think it is pretty easy to do that. Nicely written, it was short and easy to understand : D
This is my first time learning about SIEM
Great! Thank you for your comment!
Do you think this article helped you understand the core idea of SIEM solutions? Or is there something confusing for you?
Very detailed article! Especially I like the way how you connect these concepts to certifications!
Happy to hear that!
I have many subscribers preparing for those certifications, which means I always focus on pinpointing exactly what they need to pass the exams.
If you are interested in Sentinel Siem you have many detections, dasboards, notebooks in this repo. https://github.com/davidalonsod/Dalonso-Security-Repo/tree/main/Workbooks/AI-Agents-Monitoring
yeah, I was definitely confusing this with log management and I think it is pretty easy to do that. Nicely written, it was short and easy to understand : D