A Journey of Elastic SIEM: Getting Started through Threat Analysis Part 1

preview_player
Показать описание
Calling all security enthusiasts! Many of us are now facing similar challenges working from home. Elastic SIEM provides security analytics and monitoring capabilities to small businesses and homes with limited time and resources. In this three-part MeetUp series, we will take you on a journey from zero to hero, getting started with the Elastic SIEM to becoming a threat hunter.

Additional Resources:

Connect with us on social media:

About Elastic
Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale. Elastic’s solutions for search, observability, and security are built on the Elastic Search AI Platform — the development platform used by thousands of companies, including more than 50% of the Fortune 500.

#SIEM #SOAR #EndpointSecurity #CloudSecurity #XDR #ThreatIntelligence #ElasticSecurity
Рекомендации по теме
Комментарии
Автор

Great video, one question thou;
As was pointed out by the presenter as well, the credentials are stored in plain text in the config yml file.
Are there any alternatives that allow you to setup a secure connection without storing the password in plaintext?

JohanVide
Автор

too much unnecessary talk. I do not like videos like that. I am out

gilfernando
Автор

"sysmon internals"... the bundle is called sysinternals and in there is something called sysmon. since like over 20 years. it's not that hard, is it? setting execution policy to unrestricted right after you're told that the software IS signed. this video is so full of malpractice and halftruths it better be considered harmful. yes you're in a lab, but if you even opt for the insecure option when it has no benefit at all then you're just teaching people against their own interests.

udirt
welcome to shbcf.ru