Here is the list of log sources we recommend to start with:
1. Your next-gen firewall and IPS.
2. Your Advanced Endpoint Security Solutions
3. Your Domain Controller.
4. Your key application and database servers.
5. Your Web Servers that are exposed to the internet.
When deciding which logs to collect and feed into your SIEM for analysis, the main factor is this: what are the critical components of your network? What are the critical components of your business? These MUST be given top priority.
"It’s just good practice to use ethical hackers to find our weakest links so we can fix them before an unethical hacker comes along. NetWorks Group helps EBI stay ahead of the threats." says Director of Information Technology at EBI. Learn more here: https://t.co/c3faFcyfMD
Calvin Hedler (@001SPARTaN), Penetration Tester at NetWorks Group explains some of the security practices that make it difficult for a hacker to break into an enterprise environment. https://t.co/LHvTc4rIlj #hacking#security
Over 80 tech companies are opening their doors to the public on 6/15, including NetWorks Group. Don’t miss out on all the tech fun! Register here: https://t.co/6JCiPGqTn1
Learn how NetWorks Group helped @CMNHospitals gain better understanding of security risks so the organization could budget its security spend effectively, and make more strategic decisions to ensure stronger defenses throughout the organization. https://t.co/ddeTaLRGZg #security
Are Employees Dodging Security? https://t.co/EclgOeWmZt by @CaffeinatedSec The number of options users have to evade the rules you as a network admin put in place can cause a major headache. #security