Unify your Defenses for More Effective Threat Detection & Investigation

Logo
Presented by

Tom D'Aquino, VP of Worldwide Sales Engineering, AlienVault

About this talk

Network IDS is one of the most effective tools for sniffing out attackers in your network. However, correlation of IDS events is needed to minimize noise and focus on the alerts that really matter. Most SIEM solutions ship with a set of "out of the box" correlation directives. But without specific knowledge of which IDS tool and signature set you're using, those rules are all but useless. Writing your own correlation directives is certainly an option, but that requires a great deal of time and expertise to do effectively, and re-do as the network and threats change. Join this webcast to learn: Why "one size fits all" SIEM correlation directives are ineffective How a unified SIEM + IDS solution simplifies threat detection and investigation Why real-time threat intelligence is essential to detect modern threats
Related topics:

More from this channel

Upcoming talks (2)
On-demand talks (34)
Subscribers (72274)
AT&T Cybersecurity’s edge-to-edge technologies provide phenomenal threat intelligence, collaborative defense, security without the seams, and solutions that fit your business. Our unique, collaborative approach integrates best-of-breed technologies with unrivaled network visibility and actionable threat intelligence from Alien Labs researchers, Security Operations Center analysts, and machine learning – helping to enable our customers around the globe to anticipate and act on threats to protect their business.