A successful SIEM deployment depends on a lot more than implementing the SIEM correctly. So many other things in your environment have an impact on your chances of a successful SIEM.
- Are the right logs enabled?
- Is your EDR working correctly?
- Would you notice a sudden increase or decrease in events from critical sources?
- What can practitioners do to ensure the success of their SIEM deployment?
This segment is sponsored by Graylog. Visit https://securityweekly.com/graylog) to learn more about them!
Show Notes: https://securityweekly.com/esw-400)