This presentation will cover strategies used to solve major problems faced by security analysts working in large corporate environments today, including:
• Access and politics
• Signature development and alert correlation
• Automated alert analysis, prioritization and review
• Understanding false positives as a metric
• Host analysis on unfamiliar systems
• Analysis Correlation Engine (ACE) - $dayjob tool created by Mr. Davison.
If you would like to republish one of the articles from this site on your webpage or print journal please contact IronGeek.
Copyright 2020, IronGeek