How to Detect Zero Day Attacks with an Analytics-Driven SIEM

Logo
Presented by

Peter Varhol, Technology Evangelist, Gurucul

About this talk

Zero day attacks are one of the most insidious security attacks for analysts to detect and mitigate. Because there are no published reports on them, security analysts have no idea what to look for. And because of the creativity of attackers, there are any number of ways for that attack to occur, and any possible number of bad outcomes for not quickly identifying it. Organizations have to be vigilant in observing and monitoring networks, systems, and traffic to identify attacks of unknown intent and composition. The pressure of zero day attacks on organizations and their security personnel is enormous, because of the uncertainties surrounding the type of attack and the vulnerability being exploited. This webinar describes zero day attacks and provides examples of attacks that have had significant consequences to organizations. It discusses how SIEMs using machine learning algorithms can be used to analyze traffic to quickly identify potential attacks and enable security analysts to mitigate those attacks before they cause harm to IT systems. Attendees will learn: 1. Why zero day attacks can have a devastating impact on organizations. 2. Why zero day attacks are so difficult to identify. 3. How SIEMs using machine learning can enable organizations to quickly identify such attacks.
Related topics:

More from this channel

Upcoming talks (1)
On-demand talks (88)
Subscribers (6875)
Gurucul is a security analytics company founded in data science that delivers radical clarity about cyber risk. Our REVEAL platform analyzes enterprise data at scale using machine learning and artificial intelligence. Instead of useless alerts, you get real-time, actionable information about true threats and their associated risk. The platform is open, flexible, cloud native and cost optimized. Organizations can save 50% or more while achieving complete data control, visibility, searchability, and analytics within a single console. Industry analysts have recognized our platform as a Visionary in the 2024 Gartner(R) Market Quadrant(TM) for SIEM for the third-consecutive year. Our solutions are used by Global 1000 enterprises and government agencies to minimize their cybersecurity risk. To learn more, visit Gurucul.com and follow us on LinkedIn and Twitter.