This Thursday, August 12th at 1PM EDT, SANS will be presenting the free webinar, “Detecting Advanced Threats and Malware with SIEM“. Presentation information (from the website):
While many organizations have deployed security information and event management (SIEM) solution to meet regulatory compliance requirements, high performance SIEM solutions can do much more. By correlating events, logs, and network flows SIEMs can uncover a range of diverse “low and slow” attacks.
With threats moving rapidly “up the stack”, advanced SIEMs can integrate database session and application layer data to detect dangerous botnets, hidden payloads and covert communications channels. In this presentation we’ll cover technologies, techniques and best practices for effective threat detection and timely incident response using high performance SIEM systems.
We will definetly be checking this one out. SANS webcasts are always top notch and informative. Hope to see you there!