Главная
Study mode:
on
1
Intro
2
Team Introduction
3
What is Cloudflare
4
Design Process
5
Log ingestion
6
Analysis
7
Notifications
8
Automations
9
Detection Response Team
10
QA
11
Open Source
12
Cloud Native
13
Things to watch for
14
Storage costs
15
Automation
16
Sources of Complexity
Description:
Explore a groundbreaking approach to security information and event management (SIEM) in this 35-minute conference talk from BSidesLV 2021. Dive into the world of serverless SIEM as Chen Cao and Daniel Stinson-Diess present their innovative solution for detecting threats. Learn about the design process, log ingestion techniques, analysis methods, and notification systems. Discover how automations and a dedicated Detection Response Team enhance security operations. Gain insights into open-source and cloud-native technologies, while considering important factors such as storage costs and potential sources of complexity. Whether you're a security professional or enthusiast, this talk offers valuable knowledge on cutting-edge SIEM implementations using Cloudflare's infrastructure.

A Serverless SIEM - Detecting All Baddies

BSidesLV
Add to list