Cloud, Data Analysis, Cybersecurity

Skip to content
Menu
  • Home
  • Explore
  • Cloud
  • Splunk
  • Consultancy
  • Contact Us

Category: SIEM

SIEM Use Cases

by Sumesh MSPosted onAugust 23, 2021

Usage of proper SIEM Use Cases is critical in setting up the security operations center (SOC) operations. A use case can consist of multiple technical…

Read More

Sending McAfee ePO Threat based SNMP traps to ELK SIEM

by Sumesh MSPosted onApril 2, 2020April 2, 2020

ELK Stack processes events from a device via SNMP traps sent by the device. Configuring SNMP Server to send Threat based SNMP traps from McAfee…

Read More

Search Guard Installation for ELK Stack

by Sumesh MSPosted onJune 4, 2018June 21, 2018

Search Guard Installation and Concepts Search Guard is an Open Source Elasticsearch plugin that offers encryption, authentication, and authorization and can be used to secure…

Read More

Security Monitoring with WAZUH and ELK

by Sumesh MSPosted onMay 23, 2018

Wazuh is a popular open source security detection, visibility, and compliance project which was born as a fork of OSSEC HIDS, and integrates with Elastic…

Read More

Splunk Questions

by Upen PatelPosted onMay 7, 2018May 7, 2018

Searches returns a SINGLE VALUE representing the number of items purchased? sourcetype=access_* action=purchase | stats count What kind of charts represent a series in a…

Read More

Windows Security Event Analysis

by Sumesh MSPosted onMay 6, 2018May 6, 2018

Event logs are the valuable source of information in detecting and investigating security incidents. As part of the regulatory requirements many companies collect and store…

Read More

Splunk Enterprise Installation Script

by Upen PatelPosted onMay 3, 2018May 3, 2018

Splunk Enterprise Installation Script This is a simple shell script for the installation Splunk enterprise in linux. Once the file is created make it executable…

Read More

SPLUNK useful commands and Search

by Upen PatelPosted onMay 2, 2018May 3, 2018

SPLUNK useful commands and Search List of commands for the installation of SPLUNK and Searching indexes sudo groupadd splunk grep splunk /etc/group sudo useradd -g…

Read More

IIS Log Analyzer using ELK

by Sumesh MSPosted onApril 29, 2018April 29, 2018

Logstash is a useful tool for processing log files that accept data from multiple sources and different formats. Logstash easly process text-based logs and send…

Read More

Posts pagination

Page 1 Page 2 Page 3 Next Page
  • Contact us
  • Team
  • Privacy Policy

2023 | www.cloudcybersafe.com

Cambium Theme by BestBlogThemes ⋅ Powered by WordPress