WinRM is built into Windows and beloved by attackers for lateral movement.
Graylog's Microsoft WinRM Content Pack turns raw operational event logs into structure with security intelligence, with parsing, enrichment, and a dashboards included.
https://t.co/3pdlOSNa2i
SOC 2 audit coming up? Our definitive guide covers every Trust Services Criteria, control requirement, and best practice, so you're never caught off guard. Compliance, not just point-in-time snapshots.
Link: https://t.co/3VWMICPkgF
#SOC2#Cybersecurity#Compliance
Singapore's CII owners: CCoP 2.0 isn't a checkpoint, it's continuous.
In 2025, a Chinese-linked APT operated inside all four major Singapore telcos, undetected.
6 signs you have a detection gap.
Link: https://t.co/7AdK9kg161
#Cybersecurity#SIEM#Singapore
The electric grid isn't just a physical target, it's a cyber one. NERC CIP sets 13 enforceable standards covering everything from access controls to supply chain risk.
Our latest blog maps out what energy sector orgs need to monitor and why.
https://t.co/7Wjp3NWqK3
Scrambling to pull audit evidence is expensive and avoidable.
This latest blog covers how centralizing logs, building saved queries, and automating control monitoring turns audit prep into a competitive advantage.
Less time auditing. Faster revenue. https://t.co/CINPt16V6r
SaaS-only SIEM doesn't fail because the product is bad.
It fails because the architecture assumes connectivity that some environments structurally cannot provide.
Four of those environments — and what "run anywhere" actually requires 👇
https://t.co/uDQ1WgCzgj
Logs are piling up. Storage costs are climbing. And half that data? You'll never touch it.
A tiered log retention strategy fixes all three problems.
How to build one that balances compliance, security ops, and cost 👇
https://t.co/b8RpO5jDQT
#InfoSec#LogManagement#SecOps
Log management meets home lab hardware 🛠️🌡️
New guide: wire up an ESP32 + DHT22, spin up a tiny API endpoint, and stream live sensor data into @Graylog for a real-time dashboard.
Fun project. Real skills.
👉 https://t.co/ve3eYUxVi3
#IoT#ESP32#HomeLab#Graylog
Graylog is recognized as an Aspiring vendor in the 2026 Gartner®️ SIEM Voice of the Customer report, with an 86% willingness to recommend (based on 52 reviews as of Jan 2026). Access the report.
Link: https://t.co/mIbkwZ9PsD
Audit season stress? New whitepaper: 15 IT audit risks across identity, asset management, monitoring, and change control — with tactical mitigations for each.
Built for lean security teams. →
https://t.co/HApAketxqj
#ITAudit#Cybersecurity#Infosec
Most cloud breaches don't start with a 0-day.
They start with a misconfiguration S3 bucket. A role with wildcard permissions. No MFA on a root account.
We broke down 15 risky cloud misconfigs + how to fix them 🧵→ https://t.co/AZ6PTGK0U7
#CloudSecurity#InfoSec
India's DPDPA applies to any org touching Indian residents' data. Broad data definitions. Consent requirements. 72-hour breach notification. Real penalties. Is your security program ready?
👇
https://t.co/WlCcXkJBsE
#DPDPA#DataPrivacy#Cybersecurity#Compliance
The Australian Information Security Manual (ISM) was updated in Dec 2025, now covering AI, cloud, and modern threats.
link: https://t.co/UOOubIuJGC
#CyberSecurity#InfoSec#ISM
When AI can chain zero-day exploits without a human in the loop, detection speed matters more than team size.
Some thoughts on what that means for lean security teams and how to get more from the tools already in place.
https://t.co/pFi4yvyeJo
#cybersecurity#infosec
Disasters don’t wait. Your recovery plan shouldn’t either.
A solid IT disaster recovery plan = less downtime, lower costs, and faster recovery when systems fail.
Learn how to build one that actually works 👇
https://t.co/ui7JGUNrNP
#ITOps#DisasterRecovery#Cybersecurity
X
If you’re building or deploying LLM-powered apps, the OWASP Top 10 for LLM Security (2025 edition) is essential reading.
Full breakdown here: https://t.co/7Ft6veHooi
#LLMSecurity#OWASP#AppSec
X
NIS2 compliance means a 24-hour early warning window after a security incident.
That's not a lot of time if you're hunting through siloed logs manually.
Centralized log management is how you get there. Here's how 👇
https://t.co/bR77mM4MdR
#NIS2#Cybersecurity#LogManagement
EU cybersecurity certification (EUCC) is coming for ICT vendors. Your Security Target defines your claims, your logs and monitoring have to prove them.
Is your audit evidence ready?
Read here → https://t.co/nKQKVFilol
#Cybersecurity#EUCC#Compliance
Logs shouldn’t live in silos.
Unified logging creates a single source of truth across your entire environment—so security, ops, and engineering work from the same data.
Faster investigations. Better visibility.
Read more: https://t.co/pnPQDAHUhq
#Logging#CyberSecurity#SIEM
Grateful and humbled. Another RSA in the books, great conversations, and new hardware to show for it.
Thanks to all who stopped by and chatted with us.
#RSAC2026#Graylog#SIEM#CyberSecurity