home.social

#tdir — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #tdir, aggregated by home.social.

fetched live
  1. Are you using your #SIEM to detect #security threats in the most efficient and effective ways possible❓🤔 When you implement and fine-tune SIEM detections, you strengthen your security posture and become better able to strategically aligning with your business objectives.

    Fine-tuning your SIEM detections specifically allows you to:
    💡 Improve threat detection with smarter correlation
    ⬆️ Accelerate incident response
    👀 Gain comprehensive visibility into your environment
    ☑️ Enable compliance and audit readiness
    😌 Reduce alert fatigue

    Read on, to learn about 6 specific steps you can take that will help you build fine-tuned detections and high-fidelity alerts.👇

    graylog.org/post/6-steps-for-u #ThreatDetection #IncidentResponse #TDIR #CyberSecurity

  2. Are you using your #SIEM to detect #security threats in the most efficient and effective ways possible❓🤔 When you implement and fine-tune SIEM detections, you strengthen your security posture and become better able to strategically aligning with your business objectives.

    Fine-tuning your SIEM detections specifically allows you to:
    💡 Improve threat detection with smarter correlation
    ⬆️ Accelerate incident response
    👀 Gain comprehensive visibility into your environment
    ☑️ Enable compliance and audit readiness
    😌 Reduce alert fatigue

    Read on, to learn about 6 specific steps you can take that will help you build fine-tuned detections and high-fidelity alerts.👇

    graylog.org/post/6-steps-for-u #ThreatDetection #IncidentResponse #TDIR #CyberSecurity

  3. Is your financial institution as safe as it could be from #ransomware and other cyber threats? 🤔 Groups like FIN7, Lazarus Group, and Carbanak often specifically target banks with sophisticated attacks, like SWIFT compromises and more. 🏦 💰

    But have no fear, Graylog + Model Context Protocol (MCP) are here to help! 🦸💪 Today, Seth Goldhammer is walking you through a real world example where a bank in the north east, with a simple #Anthropic prompt, learned that it needed to understand the threat landscape and map it to their current log sources — to enable threat detection content in their current #Graylog deployment.

    See how they mastered the challenge and enabled real-time, context-aware recommendations based on their actual environment, in our latest Graylog Labs article.👇

    graylog.org/post/how-to-use-mc

    #CyberThreats #FinServ #GraylogLabs #TDIR #ThreatDetection

  4. Is your financial institution as safe as it could be from #ransomware and other cyber threats? 🤔 Groups like FIN7, Lazarus Group, and Carbanak often specifically target banks with sophisticated attacks, like SWIFT compromises and more. 🏦 💰

    But have no fear, Graylog + Model Context Protocol (MCP) are here to help! 🦸💪 Today, Seth Goldhammer is walking you through a real world example where a bank in the north east, with a simple #Anthropic prompt, learned that it needed to understand the threat landscape and map it to their current log sources — to enable threat detection content in their current #Graylog deployment.

    See how they mastered the challenge and enabled real-time, context-aware recommendations based on their actual environment, in our latest Graylog Labs article.👇

    graylog.org/post/how-to-use-mc

    #CyberThreats #FinServ #GraylogLabs #TDIR #ThreatDetection

  5. Data lakes are typically thought of as simple warehouses. But they don't have to be! 👀 In Graylog 7.0 data lakes function as pressure release valves for #security teams overwhelmed by storage costs, investigation delays, and cloud data sprawl — where analysts can get direct access to long term data, and more.

    Our data lake provides inexpensive storage where logs stay searchable, preview-able, and recoverable. Learn more about getting cloud scale without cloud surprises, and why this is a truly practical stance on managing data volume.

    graylog.org/post/how-to-use-da #CyberSecurity #SEIM #DataLake #TDIR

  6. Data lakes are typically thought of as simple warehouses. But they don't have to be! 👀 In Graylog 7.0 data lakes function as pressure release valves for #security teams overwhelmed by storage costs, investigation delays, and cloud data sprawl — where analysts can get direct access to long term data, and more.

    Our data lake provides inexpensive storage where logs stay searchable, preview-able, and recoverable. Learn more about getting cloud scale without cloud surprises, and why this is a truly practical stance on managing data volume.

    graylog.org/post/how-to-use-da #CyberSecurity #SEIM #DataLake #TDIR

  7. #Graylog 7.0 is out, and Ethan C. Keaton's avatar is here to show you how to upgrade! 💥 Whether you're running a small log server or managing an enterprise cluster, keeping Graylog up to date means better performance, stronger #security, and access to the latest features. 👍

    Watch now and get help with preparing your system, upgrading MongoDB and Data Node safely, and more. Ready to get it done without breaking your setup? 👀 Let's go! 👇

    📺 youtube.com/watch?v=uWZlC5DY9WA #CyberSecurity #LogManagement #SIEM #TDIR

  8. #Graylog 7.0 is out, and Ethan C. Keaton's avatar is here to show you how to upgrade! 💥 Whether you're running a small log server or managing an enterprise cluster, keeping Graylog up to date means better performance, stronger #security, and access to the latest features. 👍

    Watch now and get help with preparing your system, upgrading MongoDB and Data Node safely, and more. Ready to get it done without breaking your setup? 👀 Let's go! 👇

    📺 youtube.com/watch?v=uWZlC5DY9WA #CyberSecurity #LogManagement #SIEM #TDIR

  9. Are you working on building an efficient SOC? We can help! 🙌 It's important to start by developing a strategy—as your #security goals must align with business objectives. 💡 In our latest blog, we outline and detail 7 key steps to follow for SOC success. ⭐ They include:

    1️⃣ Developing the strategy
    2️⃣ Designing the solution
    3️⃣ Developing processes, procedures, & training
    4️⃣ Investing in tools & services to fill gaps
    5️⃣ Preparing your environment
    6️⃣ Implementing the solution
    7️⃣ Deploying end-to-end use cases

    Read on to learn more about these 7 key steps along with roles and responsibilities of SOC team members, and more.

    graylog.org/post/7-steps-to-an #CyberSecurity #SIEM #TDIR #APISecurity #SecurityOperations

  10. Are you working on building an efficient SOC? We can help! 🙌 It's important to start by developing a strategy—as your #security goals must align with business objectives. 💡 In our latest blog, we outline and detail 7 key steps to follow for SOC success. ⭐ They include:

    1️⃣ Developing the strategy
    2️⃣ Designing the solution
    3️⃣ Developing processes, procedures, & training
    4️⃣ Investing in tools & services to fill gaps
    5️⃣ Preparing your environment
    6️⃣ Implementing the solution
    7️⃣ Deploying end-to-end use cases

    Read on to learn more about these 7 key steps along with roles and responsibilities of SOC team members, and more.

    graylog.org/post/7-steps-to-an #CyberSecurity #SIEM #TDIR #APISecurity #SecurityOperations

  11. Welcome to November, the end of daylight savings time, and everything "T-Day" for the next four weeks! In the spirit of this month we've got a feast of new features, a cornucopia of new capabilities and a banquet of breakthroughs to share with you. 🦃 🫵 Introducing #Graylog 7.0! 🎊

    Let's take a look at the new improvements across dashboards, automation, and #AI support. There are four key ingredients in this 7.0 #Thanksgiving feast:

    💡 Smarter Dashboards that deliver faster, more meaningful insights
    🛠️ Guided Remediation that ensures consistent, reliable action
    💲 Cost-efficient Data Lake Integration that simplifies cloud management
    🤝 Native MCP Support that brings intelligent collaboration to every investigation

    Ready to learn more? Take a look at the menu and more, in this article by Seth Goldhammer.

    graylog.org/post/gobbling-up-i #CyberSecurity #SIEM #APISecurity #TDIR

  12. Welcome to November, the end of daylight savings time, and everything "T-Day" for the next four weeks! In the spirit of this month we've got a feast of new features, a cornucopia of new capabilities and a banquet of breakthroughs to share with you. 🦃 🫵 Introducing #Graylog 7.0! 🎊

    Let's take a look at the new improvements across dashboards, automation, and #AI support. There are four key ingredients in this 7.0 #Thanksgiving feast:

    💡 Smarter Dashboards that deliver faster, more meaningful insights
    🛠️ Guided Remediation that ensures consistent, reliable action
    💲 Cost-efficient Data Lake Integration that simplifies cloud management
    🤝 Native MCP Support that brings intelligent collaboration to every investigation

    Ready to learn more? Take a look at the menu and more, in this article by Seth Goldhammer.

    graylog.org/post/gobbling-up-i #CyberSecurity #SIEM #APISecurity #TDIR

  13. #HappyHalloween, Everyone! Sticking with the theme of the day — let's talk about how SCARY 👻 it is when cyber attackers target the riskiest users in your environment, like:

    📃 A marketing manager approving third-party contracts
    💲 An HR admin with access to payroll systems
    📛 A facilities lead managing badge entry systems

    These users hold credentials and access that attackers want. 👀 We call them VAPs - or Very Attacked People. Are you protecting them? #Security teams are buried in alerts. If you prioritize alerts based on technical severity alone it leads to noise, burnout, and missed threats. TBH it's more effective when it accounts for who is being attacked, not just how. 💡

    Learn more: graylog.org/post/are-you-prote #CyberAttack #CyberSecurity #SIEM #TDIR

  14. #HappyHalloween, Everyone! Sticking with the theme of the day — let's talk about how SCARY 👻 it is when cyber attackers target the riskiest users in your environment, like:

    📃 A marketing manager approving third-party contracts
    💲 An HR admin with access to payroll systems
    📛 A facilities lead managing badge entry systems

    These users hold credentials and access that attackers want. 👀 We call them VAPs - or Very Attacked People. Are you protecting them? #Security teams are buried in alerts. If you prioritize alerts based on technical severity alone it leads to noise, burnout, and missed threats. TBH it's more effective when it accounts for who is being attacked, not just how. 💡

    Learn more: graylog.org/post/are-you-prote #CyberAttack #CyberSecurity #SIEM #TDIR

  15. With SIEMs, ingest-based and resource-heavy licensing models pressure #security teams into tough tradeoffs—like dropping logs, tuning down detections, or limiting retention just to avoid budget overages. 💸

    But, tradeoffs like these affect compliance, visibility, detection capabilities, and response time. 😱 Seriously... when you drop data, you drop context! 👎 And, missing context can turn a minor oversight into a major blind spot. 🙈

    Watch this enlightening discussion and learn how flexible data routing can allow your team to prioritize the data that powers threat detection, while retaining the rest cost-effectively in a standby data lake. 💡

    youtube.com/watch?v=c7he-teNdO8 #SIEM #SecurityOperations #LogManagement #CyberSecurity #Graylog #TDIR #LogsandLattes

  16. With SIEMs, ingest-based and resource-heavy licensing models pressure #security teams into tough tradeoffs—like dropping logs, tuning down detections, or limiting retention just to avoid budget overages. 💸

    But, tradeoffs like these affect compliance, visibility, detection capabilities, and response time. 😱 Seriously... when you drop data, you drop context! 👎 And, missing context can turn a minor oversight into a major blind spot. 🙈

    Watch this enlightening discussion and learn how flexible data routing can allow your team to prioritize the data that powers threat detection, while retaining the rest cost-effectively in a standby data lake. 💡

    youtube.com/watch?v=c7he-teNdO8 #SIEM #SecurityOperations #LogManagement #CyberSecurity #Graylog #TDIR #LogsandLattes

  17. Grab a cuppa joe and cozy up to your computer for Episode 2 of Logs & Lattes! 🪵 ☕ This week, host Palmer Wallace is talking with Rich Murphy about how you can go from noise to action — and get smarter security ops that reduce risk. ⬇️ ⚠️

    From alert fatigue to risk-first response, let's unpack practical ways you can:
    ✔️ Prioritize real threats
    ✔️ Automate with context
    ✔️ Make incident response faster & more effective
    ✔️ Make SOAR useful for lean teams

    In this episode, we discuss how to respond to #security alerts with purpose, not just speed. Ready? Let's dive in.

    📺 👉 youtu.be/a40J3rSs_PI #SIEM #SecurityOperations #LogManagement #CyberSecurity #Graylog #TDIR #LogsandLattes

  18. Grab a cuppa joe and cozy up to your computer for Episode 2 of Logs & Lattes! 🪵 ☕ This week, host Palmer Wallace is talking with Rich Murphy about how you can go from noise to action — and get smarter security ops that reduce risk. ⬇️ ⚠️

    From alert fatigue to risk-first response, let's unpack practical ways you can:
    ✔️ Prioritize real threats
    ✔️ Automate with context
    ✔️ Make incident response faster & more effective
    ✔️ Make SOAR useful for lean teams

    In this episode, we discuss how to respond to #security alerts with purpose, not just speed. Ready? Let's dive in.

    📺 👉 youtu.be/a40J3rSs_PI #SIEM #SecurityOperations #LogManagement #CyberSecurity #Graylog #TDIR #LogsandLattes

  19. Инновации в кибербезопасности: обзор Carmina AI от Innostage

    Инновации в кибербезопасности: обзор Carmina AI от Innostage Автор: Олейникова Анна, директор по продуктовому развитию Innostage Innostage Carmina AI – это виртуальный помощник, объединяющий передовые технологии искусственного интеллекта, большие языковые модели (LLM) и машинное обучение (ML), предназначенный для специалистов центров мониторинга безопасности. Его главная цель – разгрузить специалистов от типовых операций, ускорить выявление угроз и обеспечить оперативное реагирование на киберинциденты.

    habr.com/ru/companies/innostag

    #Carmina_AI #Innostage #ИИассисент #SOC #SOAR #SIEM #Threat_Intelligence #LLM #ML #TDIR

  20. Drum roll please! 🥁🥁🥁 Today we are excited to introduce the new Logs & Lattes podcast. 💥🎙️ In this inaugural episode, Seth Goldhammer joins host Palmer Wallace to talk about the hidden cost of traditional #SIEM pricing. ⛔ 💵 🤔

    How much value are we really getting from our logs, and what are we giving up to stay on budget? Let's talk about how ingest-based and resource-heavy licensing models pressure #security teams into tough tradeoffs—like dropping logs, tuning down detections, or limiting retention just to avoid budget overages. 😓

    But, there’s a smarter way forward. 😍 Learn how to escape this tradeoff trap and get the most out of your security data. Watch now! 📺 👇

    youtu.be/c7he-teNdO8 #SecurityOperations #LogManagement #CyberSecurity #Graylog #TDIR #LogsandLattes

  21. Drum roll please! 🥁🥁🥁 Today we are excited to introduce the new Logs & Lattes podcast. 💥🎙️ In this inaugural episode, Seth Goldhammer joins host Palmer Wallace to talk about the hidden cost of traditional #SIEM pricing. ⛔ 💵 🤔

    How much value are we really getting from our logs, and what are we giving up to stay on budget? Let's talk about how ingest-based and resource-heavy licensing models pressure #security teams into tough tradeoffs—like dropping logs, tuning down detections, or limiting retention just to avoid budget overages. 😓

    But, there’s a smarter way forward. 😍 Learn how to escape this tradeoff trap and get the most out of your security data. Watch now! 📺 👇

    youtu.be/c7he-teNdO8 #SecurityOperations #LogManagement #CyberSecurity #Graylog #TDIR #LogsandLattes

  22. The world of #SIEM has changed! And, #Graylog's Seth Goldhammer is here to talk to you about what #security teams needs from SIEM today. 📺 Watch and learn about:

    ☑️ What's broken with legacy SIEM
    ☑️ How you can get answers, not just alerts
    ☑️ Getting native AWS integration while operating in the cloud
    ☑️ Removing the bottleneck that slows you down—by prioritizing alerts that matter
    ☑️ Reducing mean time to detect and mean time to respond
    ☑️ Moving from alert fatigue to action
    ☑️ How your security team can do more, with less

    Join Seth for this hot 10 Minute Take on smarter threat detection for AWS environments! 👉 graylog.org/resources/graylog- #threatdetection #TDIR #cybersecurity #AWS

  23. The world of #SIEM has changed! And, #Graylog's Seth Goldhammer is here to talk to you about what #security teams needs from SIEM today. 📺 Watch and learn about:

    ☑️ What's broken with legacy SIEM
    ☑️ How you can get answers, not just alerts
    ☑️ Getting native AWS integration while operating in the cloud
    ☑️ Removing the bottleneck that slows you down—by prioritizing alerts that matter
    ☑️ Reducing mean time to detect and mean time to respond
    ☑️ Moving from alert fatigue to action
    ☑️ How your security team can do more, with less

    Join Seth for this hot 10 Minute Take on smarter threat detection for AWS environments! 👉 graylog.org/resources/graylog- #threatdetection #TDIR #cybersecurity #AWS

  24. ScaryByte has tackled an important and growing challenge—digital academic fraud. 💻 🏫 🦹 Their integrated #security platform combining #Graylog Security, AWS, and Obala AI now unifies observability, streamlines detection, and accelerates response time for critical institutions. 🙌

    ScaryByte delivers outcomes that matter, including:
    🔍 Real-time threat detection
    ☑️ Faster forensics and compliance
    🖥️ Expert-led deployments, scalable on AWS

    Learn more about how ScaryByte is helping institutions restore trust in online learning.💡😃 See the full case study.👇

    graylog.org/resources/customer
    #cybersecurity #threatdetection #incidentresponse #TDIR

  25. ScaryByte has tackled an important and growing challenge—digital academic fraud. 💻 🏫 🦹 Their integrated #security platform combining #Graylog Security, AWS, and Obala AI now unifies observability, streamlines detection, and accelerates response time for critical institutions. 🙌

    ScaryByte delivers outcomes that matter, including:
    🔍 Real-time threat detection
    ☑️ Faster forensics and compliance
    🖥️ Expert-led deployments, scalable on AWS

    Learn more about how ScaryByte is helping institutions restore trust in online learning.💡😃 See the full case study.👇

    graylog.org/resources/customer
    #cybersecurity #threatdetection #incidentresponse #TDIR

  26. It's time to tune in for the latest from #GraylogLabs! 📺 🎊 Today we're taking about the new Caddy Webserver Content Pack. Say what? No, not #Caddyshack! ⛳ 🦫 Caddy Webserver! 🖥️

    This new content pack is going to help you quickly turn raw logs into structured, searchable insights. 🔎💡 🙌 It's available in Illuminate 6.4 and a Graylog Enterprise or Graylog #Security license, and delivers ready-to-use parsing rules, streams, and dashboards. 🚚

    Read up on:
    ❓ What this pack does
    🪵 Getting logs into #Graylog
    🫵 Why you should log Caddy Webserver logs
    🔍 How this helps you quickly detect anomalies, identify suspicious requests, and feed relevant data directly into your #TDIR workflows

    graylog.org/post/caddy-webserv #cybersecurity #threatdetection #incidentresponse #SIEM

  27. It's time to tune in for the latest from #GraylogLabs! 📺 🎊 Today we're taking about the new Caddy Webserver Content Pack. Say what? No, not #Caddyshack! ⛳ 🦫 Caddy Webserver! 🖥️

    This new content pack is going to help you quickly turn raw logs into structured, searchable insights. 🔎💡 🙌 It's available in Illuminate 6.4 and a Graylog Enterprise or Graylog #Security license, and delivers ready-to-use parsing rules, streams, and dashboards. 🚚

    Read up on:
    ❓ What this pack does
    🪵 Getting logs into #Graylog
    🫵 Why you should log Caddy Webserver logs
    🔍 How this helps you quickly detect anomalies, identify suspicious requests, and feed relevant data directly into your #TDIR workflows

    graylog.org/post/caddy-webserv #cybersecurity #threatdetection #incidentresponse #SIEM

  28. 🗣️ Let's talk about APTs (advanced persistent threats). 😬 An APT can gain access to your company’s systems and networks then hide within, and wait to complete objectives at a later time. ⏳👀 Since they can cause long-term damage to sensitive systems and data, understanding what they are and why they matter will enable you to better protect your org. 🛡️

    Read our latest blog to learn about:
    🗝️ The key characteristics of APTs
    ⚔️ The 3 stages of an APT attack
    🎯 The main motives and targets of an APT attack
    🔍 How to detect an advanced persistent threat
    👍 Best practices for mitigating, detecting, and responding to APTs

    graylog.org/post/advanced-pers #cybersecurity #cyberattack #TDIR #threatdetection #incidentresponse

  29. 🗣️ Let's talk about APTs (advanced persistent threats). 😬 An APT can gain access to your company’s systems and networks then hide within, and wait to complete objectives at a later time. ⏳👀 Since they can cause long-term damage to sensitive systems and data, understanding what they are and why they matter will enable you to better protect your org. 🛡️

    Read our latest blog to learn about:
    🗝️ The key characteristics of APTs
    ⚔️ The 3 stages of an APT attack
    🎯 The main motives and targets of an APT attack
    🔍 How to detect an advanced persistent threat
    👍 Best practices for mitigating, detecting, and responding to APTs

    graylog.org/post/advanced-pers #cybersecurity #cyberattack #TDIR #threatdetection #incidentresponse

  30. Up next on the busy #Graylog conference circuit we have... #AWSreInforce starting this Monday! (Party ON 🥳) And on Tuesday at the show, the amazing Rich Murphy will talk about taming your alert avalanche, at 1:30 PM. 🚨 🏔️ 🫢

    Learn how to tune out false positives, consolidate redundant alarms, and apply risk-based filtering so that high-fidelity alerts rise to the top. 💯

    We'll also have Sam Parikh, Quinn Kroll, and Justine Simpson on-site to connect with you. See us there in booth #423.

    Learn more: registration.awsevents.com/flo #TDIR #threatdetection #incidentresponse #cybersecurity

  31. Up next on the busy #Graylog conference circuit we have... #AWSreInforce starting this Monday! (Party ON 🥳) And on Tuesday at the show, the amazing Rich Murphy will talk about taming your alert avalanche, at 1:30 PM. 🚨 🏔️ 🫢

    Learn how to tune out false positives, consolidate redundant alarms, and apply risk-based filtering so that high-fidelity alerts rise to the top. 💯

    We'll also have Sam Parikh, Quinn Kroll, and Justine Simpson on-site to connect with you. See us there in booth #423.

    Learn more: registration.awsevents.com/flo #TDIR #threatdetection #incidentresponse #cybersecurity

  32. It's a busy conference season for #Graylog! 😅 #AWSreInforce is coming up soon on June 16th through 18th in Philadelphia, PA. Grayloggers Sam Parikh, Quinn Kroll, Justine Simpson, and Rich Murphy will be there to answer all your Graylog questions.

    And... Rich Murphy will share insight on how to tame your alert avalanche — on June 17th, 1:30 PM, in his presentation at the show. 🚨🏔️ Learn about a battle-tested playbook for alert noise reduction!

    More: reinforce.awsevents.com/ #TDIR #threatdetection #incidentresponse #cybersecurity

  33. It's a busy conference season for #Graylog! 😅 #AWSreInforce is coming up soon on June 16th through 18th in Philadelphia, PA. Grayloggers Sam Parikh, Quinn Kroll, Justine Simpson, and Rich Murphy will be there to answer all your Graylog questions.

    And... Rich Murphy will share insight on how to tame your alert avalanche — on June 17th, 1:30 PM, in his presentation at the show. 🚨🏔️ Learn about a battle-tested playbook for alert noise reduction!

    More: reinforce.awsevents.com/ #TDIR #threatdetection #incidentresponse #cybersecurity

  34. Graylog is going to #AWSreInforce! 🎊🕺 We'll have Sam Parikh, Quinn Kroll, Justine Simpson, and Rich Murphy on-site to talk with you at the show. And speaking of Rich Murphy, catch him there, live, on June 17th, 1:30 PM. He'll be talking about taming your alert avalanche. 🚨 🏔️ 🫢

    Are you an SOC analyst drowning in alerts? 🤔 Learn about a battle-tested playbook for alert noise reduction. Rich will discuss methods to systematically tune out false positives, consolidate redundant alarms, and apply risk-based filtering so that your high-fidelity alerts rise to the top. 🙌

    See you there! 👀

    Learn more: registration.awsevents.com/flo

    #TDIR #threatdetection #incidentresponse #cybersecurity

  35. Graylog is going to #AWSreInforce! 🎊🕺 We'll have Sam Parikh, Quinn Kroll, Justine Simpson, and Rich Murphy on-site to talk with you at the show. And speaking of Rich Murphy, catch him there, live, on June 17th, 1:30 PM. He'll be talking about taming your alert avalanche. 🚨 🏔️ 🫢

    Are you an SOC analyst drowning in alerts? 🤔 Learn about a battle-tested playbook for alert noise reduction. Rich will discuss methods to systematically tune out false positives, consolidate redundant alarms, and apply risk-based filtering so that your high-fidelity alerts rise to the top. 🙌

    See you there! 👀

    Learn more: registration.awsevents.com/flo

    #TDIR #threatdetection #incidentresponse #cybersecurity

  36. ⚠️ While #AWS manages the #security of its cloud infrastructure, YOU still need to manage security within your AWS environment—which means you need a comprehensive AWS cloud security strategy to protect your sensitive data and applications. 🤔🔒

    To help you, here's an excellent primer that explains what you need to know about:
    ⛅ The details of AWS cloud security
    ⚙️ How AWS could security works
    🛠️ Which security tools AWS offers
    😬 Why orgs sometimes struggle with AWS cloud security
    ☑️ Best practices for implementing AWS cloud security with a #TDIR solution
    🔍 TDIR for AWS or multi-cloud monitoring

    graylog.org/post/understanding #cloudsecurity #threatdetection #incidentresponse #cybersecurity

  37. ⚠️ While #AWS manages the #security of its cloud infrastructure, YOU still need to manage security within your AWS environment—which means you need a comprehensive AWS cloud security strategy to protect your sensitive data and applications. 🤔🔒

    To help you, here's an excellent primer that explains what you need to know about:
    ⛅ The details of AWS cloud security
    ⚙️ How AWS could security works
    🛠️ Which security tools AWS offers
    😬 Why orgs sometimes struggle with AWS cloud security
    ☑️ Best practices for implementing AWS cloud security with a #TDIR solution
    🔍 TDIR for AWS or multi-cloud monitoring

    graylog.org/post/understanding #cloudsecurity #threatdetection #incidentresponse #cybersecurity

  38. Continuing on today with the topic of MITRE ATT&CK... let's consider how IP address alert investigations map to the MITRE ATT&CK framework and why it's important to consider when building out your incident detection and response capabilities. 👀

    Learn about:
    ↔️ How to correlate these alerts with other information generated by your environment
    🤔 Why IP addresses are important to security alerts
    🗺️ Mapping IP address information to ATT&CK
    ⚠️ #TDIR for IP Address Alert Investigations
    ...and more.

    graylog.org/post/ip-address-al #incidentresponse @mitreattack

  39. Continuing on today with the topic of MITRE ATT&CK... let's consider how IP address alert investigations map to the MITRE ATT&CK framework and why it's important to consider when building out your incident detection and response capabilities. 👀

    Learn about:
    ↔️ How to correlate these alerts with other information generated by your environment
    🤔 Why IP addresses are important to security alerts
    🗺️ Mapping IP address information to ATT&CK
    ⚠️ #TDIR for IP Address Alert Investigations
    ...and more.

    graylog.org/post/ip-address-al #incidentresponse @mitreattack

  40. Improve your overall security posture with MITRE ATT&CK #API-based techniques! What are ATT&CK techniques, you ask? They explain different ways that malicious actors achieve their objectives and give you the “how” of the attack to help you look for security gaps. 🙌

    Read to get started? Learn all about enterprise API techniques and mitigations and integrating API monitoring into threat detection and incident response. ⤵️

    graylog.org/post/mitre-attck-a #cybersecurity #cybercrime #APIsecurity #infosec #TDIR

  41. Improve your overall security posture with MITRE ATT&CK #API-based techniques! What are ATT&CK techniques, you ask? They explain different ways that malicious actors achieve their objectives and give you the “how” of the attack to help you look for security gaps. 🙌

    Read to get started? Learn all about enterprise API techniques and mitigations and integrating API monitoring into threat detection and incident response. ⤵️

    graylog.org/post/mitre-attck-a #cybersecurity #cybercrime #APIsecurity #infosec #TDIR

  42. The #Graylog UK team (Randall Otto, Benedict Price, Kuljot Singh, Trent Gashi, Sivapriyan Srikandarajah, Ram Dhaliwal, Noor Islam, Ahmed Haddad, Taylor M. Rhoades, Ross Brewer, Ned Dunningham, and Kyle Pearson ) took some time to celebrate the season this week with a festive team lunch! 🎉 🎁🍷✨ Party time is fun. 🥳

    #cybersecurity #SIEM #APIsecurity #TDIR

  43. The #Graylog UK team (Randall Otto, Benedict Price, Kuljot Singh, Trent Gashi, Sivapriyan Srikandarajah, Ram Dhaliwal, Noor Islam, Ahmed Haddad, Taylor M. Rhoades, Ross Brewer, Ned Dunningham, and Kyle Pearson ) took some time to celebrate the season this week with a festive team lunch! 🎉 🎁🍷✨ Party time is fun. 🥳

    #cybersecurity #SIEM #APIsecurity #TDIR

  44. Are you prepared to combat destructive #malware? ☠️ ⚠️ Also called “crimeware” or “wiper”, this malicious software is designed to harm computer systems and data with the purpose of destroying or rendering data unusable, interrupting operations, or disrupting infrastructures. 😰

    Trojans, worms, #ransomware, and #botnets are all types of destructive malware that can wreck havoc on your systems. Learn about the motivations behind deploying destructive malware, the different types, how it works, and how threat detection and incident response (#TDIR) using MITRE ATT&CK can help. 🛡️

    graylog.info/4golMrW #cybersecurity #infosec

  45. Are you prepared to combat destructive #malware? ☠️ ⚠️ Also called “crimeware” or “wiper”, this malicious software is designed to harm computer systems and data with the purpose of destroying or rendering data unusable, interrupting operations, or disrupting infrastructures. 😰

    Trojans, worms, #ransomware, and #botnets are all types of destructive malware that can wreck havoc on your systems. Learn about the motivations behind deploying destructive malware, the different types, how it works, and how threat detection and incident response (#TDIR) using MITRE ATT&CK can help. 🛡️

    graylog.info/4golMrW #cybersecurity #infosec

  46. ⚡ It's been a thrilling year for #Graylog Capture The Flag (#CTF) events! 👏 Participants at many major #cybersecurity conferences have tested their skills in a range of challenging scenarios designed to simulate real-world cyber threats. From North America to Europe and beyond, we saw cybersecurity professionals and enthusiasts go head-to-head in our CTFs... flexing their skills, deepening their knowledge, and having fun along the way. Here’s a look at the standout moments and achievements from our CTF events throughout 2024! 👀

    Kudos to Adam "Abe" Abernethy, Paul Shattuck and the whole Graylog CTF team for a job well done! 🏆

    Read all about the highlights, the stats, and were we are headed with our CTFs in 2025.

    graylog.org/post/graylog-year- #APIsecurity #TDIR #infosec

  47. ⚡ It's been a thrilling year for #Graylog Capture The Flag (#CTF) events! 👏 Participants at many major #cybersecurity conferences have tested their skills in a range of challenging scenarios designed to simulate real-world cyber threats. From North America to Europe and beyond, we saw cybersecurity professionals and enthusiasts go head-to-head in our CTFs... flexing their skills, deepening their knowledge, and having fun along the way. Here’s a look at the standout moments and achievements from our CTF events throughout 2024! 👀

    Kudos to Adam "Abe" Abernethy, Paul Shattuck and the whole Graylog CTF team for a job well done! 🏆

    Read all about the highlights, the stats, and were we are headed with our CTFs in 2025.

    graylog.org/post/graylog-year- #APIsecurity #TDIR #infosec

  48. 🖥️ In today’s business environment, cyber incidents are critical business events, especially as governments and agencies create more reporting requirements. 📑 This is why the cyber incident report is such a key element of any incident response process.

    Let's talk about IT security incident response reports, why they are needed, and what they should contain. 🤔 Read on to learn about:
    ❓Why IT security reports are important
    📈 Cyber reporting challenges
    ☑️ What needs to be in a cyber security incident report
    🤖 Responsible AI for automating IT security incident reporting

    graylog.org/post/best-practice #ITsecurity #TDIR #cybersecurity

  49. 🖥️ In today’s business environment, cyber incidents are critical business events, especially as governments and agencies create more reporting requirements. 📑 This is why the cyber incident report is such a key element of any incident response process.

    Let's talk about IT security incident response reports, why they are needed, and what they should contain. 🤔 Read on to learn about:
    ❓Why IT security reports are important
    📈 Cyber reporting challenges
    ☑️ What needs to be in a cyber security incident report
    🤖 Responsible AI for automating IT security incident reporting

    graylog.org/post/best-practice #ITsecurity #TDIR #cybersecurity

  50. 👋 Hello #MISAON! Don't miss this afternoon work session on Monday, Oct. 28th starting at 1PM. Immerse yourself in a virtual sandbox environment, where you'll take on unique and captivating puzzles sure to entertain and challenge your wit and skill in data analytics and #cybersecurity.

    As a bonus, there's also a #TDIR companion talk as part of the afternoon. Bigger and badder than last year — this unforgettable event is perfect for beginner to intermediate skill levels. Compete, learn, and win prizes at this one-of-a-kind event! 💪🏆 Grayloggers Adam "Abe" Abernethy and Dan McDowell can't wait to see you there. 👀

    site.pheedloop.com/event/EVEBO #cybersecurity #infosec

  51. 👋 Hello #MISAON! Don't miss this afternoon work session on Monday, Oct. 28th starting at 1PM. Immerse yourself in a virtual sandbox environment, where you'll take on unique and captivating puzzles sure to entertain and challenge your wit and skill in data analytics and #cybersecurity.

    As a bonus, there's also a #TDIR companion talk as part of the afternoon. Bigger and badder than last year — this unforgettable event is perfect for beginner to intermediate skill levels. Compete, learn, and win prizes at this one-of-a-kind event! 💪🏆 Grayloggers Adam "Abe" Abernethy and Dan McDowell can't wait to see you there. 👀

    site.pheedloop.com/event/EVEBO #cybersecurity #infosec

  52. And... that's a wrap! 🎬 Thank you to all of our amazing presenters, everyone who joined us for the sessions and the #GraylogCTF, and especially to our fabulous production team on the ground at #Graylog HQ: Michelle Marshall, Justine Simpson, Angie Fairbanks, Kimber Spradlin, and Ryane May for making #GraylogGO 2024 a stellar event! ⭐ ✨

    You can leave us a review at go2.graylog.org/reviews and get swag. Plus, check out Graylog Academy at academy.graylog.org. And see Graylog 6.1 documentation at go2docs.graylog.org.

    Thank you, everyone! #SIEM #TDIR #cybersecurity #APIsecurity

  53. And... that's a wrap! 🎬 Thank you to all of our amazing presenters, everyone who joined us for the sessions and the #GraylogCTF, and especially to our fabulous production team on the ground at #Graylog HQ: Michelle Marshall, Justine Simpson, Angie Fairbanks, Kimber Spradlin, and Ryane May for making #GraylogGO 2024 a stellar event! ⭐ ✨

    You can leave us a review at go2.graylog.org/reviews and get swag. Plus, check out Graylog Academy at academy.graylog.org. And see Graylog 6.1 documentation at go2docs.graylog.org.

    Thank you, everyone! #SIEM #TDIR #cybersecurity #APIsecurity

  54. 📢 Listen up peeps. #GraylogGO starts in just SIX (6️⃣) days! 🎉 That means that if you want to participate live and/OR watch the recordings when the event is over, you must be registered (🆓) no later than 1:00 pm ET on 10/24. So get those registrations in NOW, so you don't forget! 👍

    See y'all next week. 👀 😁

    Register here. ➡️ graylog.info/47cYFx0
    #logmanagement #SIEM #cybersecurity #APIsecurity #TDIR