Detecting Advanced Threats and Malware with SIEM
Date: Tuesday April 12, 2011
Time: 2:00 p.m. ET/11:00 a.m. PT
While many organizations have deployed security information and event management (SIEM) solution to meet regulatory compliance requirements, high performance SIEM solutions can do much more. By correlating events, logs, and network flows SIEMs can uncover a range of diverse &low and slow" attacks. With threats moving rapidly "up the stack," content aware SIEMs can integrate database session and application layer data to detect dangerous botnets, hidden payloads and covert communications channels.
In this presentation we'll cover technologies, techniques and best practices for effective threat detection and timely incident response using high performance SIEM systems.
Jeremy Conway, senior security analyst, NitroSecurity