Unsolicited Response

Is The Normalized, Taxonomized Approach In A SIEM Doomed To Fail


Listen Later

Dale and Corey discuss the value of a normalized, taxonomized approach to SIEM, which Dr. Anton Chuvakin has famously claimed is doom to fail. Corey is sympathetic to this view and tries to explain it to Dale.

The alternative is gathering and creating a data lake with more log data and pcaps that can be used by threat hunters and customized rules.

The conversation continues with what types of integration would be helpful between the OT detection products and whatever is used for organization wide detection and response, the packet encryption challenge, and the preference to just buy a product.

You can submit your audio question on this episode or other OT and ICS Security topics to the show by going to dale-peterson.com and clicking on "Record Your Question".

...more
View all episodesView all episodes
Download on the App Store

Unsolicited ResponseBy Dale Peterson: ICS Security Catalyst and S4 Conference Chair

  • 4.9
  • 4.9
  • 4.9
  • 4.9
  • 4.9

4.9

14 ratings


More shows like Unsolicited Response

View all
Risky Business by Patrick Gray

Risky Business

369 Listeners

The Daily by The New York Times

The Daily

112,684 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,982 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

175 Listeners

The Industrial Security Podcast by PI Media

The Industrial Security Podcast

21 Listeners

The Rest Is History by Goalhanger

The Rest Is History

14,050 Listeners

The Mel Robbins Podcast by Mel Robbins

The Mel Robbins Podcast

20,281 Listeners