Trending

#siem

Latest posts tagged with #siem on Bluesky

Latest Top
Trending

Posts tagged #siem

Preview
Detecting DNS tunneling attacks with Wazuh DNS tunneling allows attackers to hide malicious data and commands within legitimate Domain Name System (DNS) traffic, bypassing firewalls and security controls. Attackers exploit the fact that DNS traffic is often permitted on networks without deep inspection to encode sensitive data and commands into DNS queries and responses. This creates a covert communication channel between […] The post Detecting DNS tunneling attacks with Wazuh appeared first on Wazuh.

Originally from Wazuh: Detecting DNS tunneling attacks with Wazuh ( :-{ı▓ #wazuh #siem #cyberresearch

0 0 0 0
Preview
LevelBlue LevelBlue is the leading provider of unified security management & community-powered threat intelligence required to detect and act on today’s advanced threats

The latest update for #LevelBlue includes "Managed Detection and Response Solutions: Strengthening Security with LevelBlue MXDR" and "5 Key Benefits of a #Cloud Data Security Solution".

#SIEM #threatdetection https://opsmtrs.com/3QVpIWH

1 0 0 0
Preview
The Stryker Cyberattack: Why Endpoint and Mobile Device Monitoring Matter What the Stryker cyberattack reveals about endpoint monitoring, mobile device management, and maintaining visibility across devices.

A cyberattack on medical device maker Stryker disrupted systems used by healthcare providers and emergency responders worldwide.

Key lessons: endpoint monitoring, MDM, centralized logs, and visibility.

Read more:
graylog.org/post/the-str...

#CyberSecurity #HealthcareIT #SIEM

2 2 0 0
Preview
LevelBlue LevelBlue is the leading provider of unified security management & community-powered threat intelligence required to detect and act on today’s advanced threats

The latest update for #LevelBlue includes "5 Key Benefits of a #Cloud #DataSecurity Solution" and "The 6 Steps Organizations Should Immediately Take to Mitigate Quantum-Related Risk".

#SIEM #threatdetection https://opsmtrs.com/3QVpIWH

0 0 0 0
Preview
Securonix Securonix is transforming how security operations are delivered, measured, and scaled. Our Unified Defense SIEM combines SIEM, UEBA, SOAR, TIP, and TDIR in a single cloud-native platform that helps security teams detect threats faster, investigate with context, and respond with precision.

The latest update for #Securonix includes "Security Economics Designed for Outcomes" and "From Alert to Intelligence in Minutes: How ThreatQ + ANY.RUN Transform SOC Triage".

#cybersecurity #cloudsecurity #SIEM https://opsmtrs.com/4qmpzeX

0 1 0 0
Post image

Working on a security operations platform.
Network monitoring
Penetration testing
Vulnerability intelligence
Dark web exposure analysis
SIEM / MDR / XDR pipeline

All designed as a single pane of glass for security and infrastructure visibility.

#Cyber #NetworkMonitoring #Pentesting #SIEM #MDR #XDR

0 0 0 0
Preview
SIEM製品とは?SplunkとSentinelをエンジニア目線で比較してみた! 「ログの取り込み」は、構築の目的ともいえる重要な部分です。 SIEMの先駆者でもあるSplunkは、ログの取得方法が多様で、分析しやすい形でデータベースに取り込めるよう工夫されています。 SentinelはクラウドベースのSIEMのため、クラウドサービス向けに多くのコネクタが準備されていて高効率・安定的なログの取り込みが可能になっています。SentinelではMicrosoft製品からのログの取得は特に簡単で、かつ取り込みにおける失敗も少ない印象です。一方でオンプレミスからのログ取り込みやサードパーティ製品への対応はSplunkと比べると多少不安定な印象があります。 ### 運用

SIEM選定はログ分析の目的と環境で決まる。直感的なSPLで分析に没頭するならSplunk、MS製品との親和性とSOAR自動化で効率化を図るならSentinelが最適だ。クエリの汎用性か現場の操作性か。

#SIEM #セキュリティエンジニア

0 0 0 0
Preview
Deploying StoneFly SA365: Enhancing Cybersecurity with SIEM In this episode, we dive into the deployment of the StoneFly SA365 Cybersecurity SIEM Appliance, exploring how it strengthens security by providing real-time threat detection, log management, and…

Learn how deploying StoneFly SA365 strengthens enterprise security through SIEM integration, enabling real-time threat monitoring, centralized log analysis, and faster incident response.

#StoneFly #CyberSecurity #SIEM #ThreatDetection #TechPodcast

pca.st/63rhft5l

0 0 0 0
Preview
CrowdStrike CrowdStrike protects the people, processes and technologies that drive modern enterprise.

The latest update for #CrowdStrike includes "Falcon for XIoT Extends Asset Protection to #Healthcare Environments" and "Falcon Next-Gen #SIEM Simplifies #Onboarding with Sensor-Native Log Collection".

#Cybersecurity #ThreatIntelligence https://opsmtrs.com/3IZx4mq

0 0 0 0
Preview
SPARK Matrix?: Security Orchestration, Automation, and Response (SOAR), Q1 2025 QKS Group's Security Orchestration, Automation, and Response (SOAR) market research includes a compr...

Security Orchestration, Automation, and Response (SOAR): A Key Technology for Modern Cyber Defense

qksgroup.com/market-resea...

#Firewall #Antivirus #SIEM #SecurityOrchestration #SecurityAutomation #security #SOARSecurity #SOARCyberSecurity #SOARPlatform #SOARSIEM

0 0 0 0
Post image

🔍 Wazuh: A Solução SIEM Ideal! 🛡️
O Wazuh é uma plataforma open source que oferece monitoramento de segurança robusto e resposta a incidentes. Proteja sua empresa em tempo real!
👉 Descubra como: Wazuh, o SIEM Certo.
#Cibersegurança #Wazuh #SIEM #XDR

1 0 0 0
Post image

Wazuh + Grafana is a great combo. You can do so much more with Grafana on so many platforms. Here I have it monitoring my Office365 tenant. There's A TON more data it is showing, but I am not showing that for obvious reasons here.

#Cybersecurity #Grafana #Wazuh #SIEM

0 0 0 0
Preview
CrowdStrike CrowdStrike protects the people, processes and technologies that drive modern enterprise.

The latest update for #CrowdStrike includes "Falcon Next-Gen #SIEM Simplifies #Onboarding with Sensor-Native Log Collection" and "CrowdStrike Achieves NCSC CIR Assurance for #IncidentResponse".

#Cybersecurity #ThreatIntelligence https://opsmtrs.com/3IZx4mq

0 0 0 0
Preview
Exabeam Exabeam is a leader in intelligence and automation that powers security operations for the world’s smartest companies. As a global cybersecurity leader,

The latest update for #Exabeam includes "#AI Access Without Add-Ons or Limits" and "Exabeam Agent Behavior Analytics: First-of-Its-Kind Behavioral Detections for AI Agents".

#cybersecurity #SIEM #ThreatDetection https://opsmtrs.com/4hUXdTB

1 0 0 0
Preview
LevelBlue LevelBlue is the leading provider of unified security management & community-powered threat intelligence required to detect and act on today’s advanced threats

The latest update for #LevelBlue includes "#MDR vs. MXDR: Navigating the Landscape of Managed #ThreatDetection and Response Solutions" and "LevelBlue Partners With Tenable to Deliver Expanded Vulnerability and Exposure Management Capabilities".

#SIEM https://opsmtrs.com/3QVpIWH

0 0 0 0
Preview
LevelBlue LevelBlue is the leading provider of unified security management & community-powered threat intelligence required to detect and act on today’s advanced threats

The latest update for #LevelBlue includes "LevelBlue Partners With Tenable to Deliver Expanded Vulnerability and Exposure Management Capabilities" and "LevelBlue Named a Finalist for the 2026 SC Media Awards for Best Managed Security Service".

#SIEM #threatdetection https://opsmtrs.com/3QVpIWH

0 0 0 0
Preview
Securonix Securonix is transforming how security operations are delivered, measured, and scaled. Our Unified Defense SIEM combines SIEM, UEBA, SOAR, TIP, and TDIR in a single cloud-native platform that helps security teams detect threats faster, investigate with context, and respond with precision.

The latest update for #Securonix includes "VOID#GEIST: Stealthy MultiStage #Python Loader with Embedded Runtime Deployment, Startup Persistence, and Fileless Early Bird APC Injection into explorer.exe".

#cybersecurity #cloudsecurity #SIEM https://opsmtrs.com/4qmpzeX

2 0 0 0
Preview
Elastic Elastic is the world's leading software provider for making structured and unstructured data usable in real time for search, logging, security, and analytics use cases.

The latest update for #Elastic includes "Why Orange France is using Elastic for #SIEM" and "How to check the impact of third-party CVEs on your Elastic deployment".

#Cybersecurity https://opsmtrs.com/3iuS618

0 0 0 0
Preview
LevelBlue LevelBlue is the leading provider of unified security management & community-powered threat intelligence required to detect and act on today’s advanced threats

The latest update for #LevelBlue includes "LevelBlue Named a Finalist for the 2026 SC Media Awards for Best Managed Security Service" and "The Resilience Retainer: Incident Response Retainers, Reimagined".

#SIEM #threatdetection https://opsmtrs.com/3QVpIWH

0 0 0 0
[Audio] Original post on redefiningcybersecuritypodcast.com

SOC Automation and the AI-Driven Future of Cybersecurity Defense | A Redefining CyberSecurity Podcast Conversation with Richard Stiennon, Chief Research Analyst of IT-Harvest ⬥ EPISODE NOTES ⬥ ...

#siem #ai #security #cybersecurity #podcast #sean #martin #threat #detection #autonomous #response […]

1 0 0 0
Preview
microsoft sentinel -- Virtualization Review Our 1-person SOC from Down Under explains how Microsoft Sentinel has rapidly evolved from its 2019 launch to become a leading cloud-based SIEM solution, now featuring advanced capabilities like graph databases, AI agents, data lake storage, and seamless XDR integration.

Paul Schnackenburg breaks down how Microsoft Sentinel has evolved, from Azure building blocks to newer additions like the Sentinel Data Lake, Defender XDR unification, a graph data interface, and MCP support.

Read the full piece: https://ow.ly/8MaA50YoZZ6

#MicrosoftSentinel #SIEM #Cybersecurity

0 0 0 0
Preview
LevelBlue LevelBlue is the leading provider of unified security management & community-powered threat intelligence required to detect and act on today’s advanced threats

The latest update for #LevelBlue includes "The Resilience Retainer: Incident Response Retainers, Reimagined" and "LevelBlue Security Colony Vendor Assessment: Know Your Vulnerabilities Before Others Do".

#SIEM #threatdetection https://opsmtrs.com/3QVpIWH

0 0 0 0
Post image

🔒 Cloud security isn’t optional.

CloudSpecX helps you build and secure your cloud with Zero Trust, IAM, SIEM, threat detection, and compliance training.

Protect your data. Protect your business.

Get started → cloudspecx.com

#CloudSecurity #CyberSecurity #ZeroTrust #SIEM #IAM #CloudDefense

0 0 0 0

Someone once joked that “continuous monitoring” is really “continuous hoping alerts behave.” Not sure it was a joke.
#SecurityOperations #SIEM #HonestSecurity

0 0 0 0
Preview
LevelBlue LevelBlue is the leading provider of unified security management & community-powered threat intelligence required to detect and act on today’s advanced threats

The latest update for #LevelBlue includes "LevelBlue Security Colony Vendor Assessment: Know Your Vulnerabilities Before Others Do" and "Maximizing Your Microsoft Security Stack with LevelBlue".

#SIEM #threatdetection https://opsmtrs.com/3QVpIWH

0 0 0 0
Post image

🔐 Sécu’ en bref : bien architecturer un système de journalisation selon l’#ANSSI

👉 Cet article résume les points clés du guide officiel de l’ANSSI, pour renforcer vos infrastructures #SI

🔗 www.it-connect.fr/secu-en-bref...

#Cybersecurity #Journalisation #Logs #SecOps #SIEM #BlueTeam

2 0 0 0
Post image

🔍 Wazuh: A Solução SIEM Ideal! 🛡️
O Wazuh é uma plataforma open source que oferece monitoramento de segurança robusto e resposta a incidentes. Proteja sua empresa em tempo real!
👉 Descubra como: Wazuh, o SIEM Certo.
#Cibersegurança #Wazuh #SIEM #XDR

1 0 0 0
Preview
LevelBlue LevelBlue is the leading provider of unified security management & community-powered threat intelligence required to detect and act on today’s advanced threats

The latest update for #LevelBlue includes "Maximizing Your Microsoft Security Stack with LevelBlue" and "LevelBlue SpiderLabs: APAC Emerges as Primary Target for Manufacturing Cyberattacks".

#SIEM #threatdetection https://opsmtrs.com/3QVpIWH

0 0 0 0
Post image

🚨 FREE LIVE WEBINAR 🚨Want to level up your SOC skills? Learn how to correlate logs, map attacks, and detect threats like a pro.

👉🏻 Register now: forms.gle/Srgu1WJAax5m...

#CyberSecurity #SOCAnalyst #LogCorrelation #ThreatDetection #BlueTeam #CyberWebinar #SIEM #IncidentResponse #CWL

0 0 0 0
Preview
Securonix Securonix is transforming how security operations are delivered, measured, and scaled. Our Unified Defense SIEM combines SIEM, UEBA, SOAR, TIP, and TDIR in a single cloud-native platform that helps security teams detect threats faster, investigate with context, and respond with precision.

The latest update for #Securonix includes "Securonix Threat Labs Monthly Intelligence Insights | January 2026" and "How Smarter Security Economics Reduce Risk Without Breaking the SOC Budget".

#cybersecurity #cloudsecurity #SIEM https://opsmtrs.com/4qmpzeX

0 0 0 0