Nov. 12, 2022, 9 a.m. | /u/coffeebeanboy

cybersecurity www.reddit.com

I work in a SOC; sec logs are getting pretty large for one of our clients.

I was going to start with analysing what is causing large amounts of noise on each device and work things out from there, but wanted to know if there are any guides for straight exclusions from sec logs that I could start with? Or if anyone has any general advice for filtering sec logs? TIA!

advice cybersecurity events logs security windows windows security

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Junior Cybersecurity Triage Analyst

@ Peraton | Linthicum, MD, United States

Associate Director, Operations Compliance and Investigations Management

@ Legend Biotech | Raritan, New Jersey, United States

Analyst, Cyber Operations Engineer

@ BlackRock | SN6-Singapore - 20 Anson Road

Working Student/Intern/Thesis: Hardware based Cybersecurity Training (m/f/d)

@ AVL | Regensburg, DE