Archive for the ‘Log Analysis Professionals’ Category

SANS Security Laboratory “Thought Leaders” Article

Tuesday, May 13th, 2008

Stephen Northcutt, of SANS Institute fame, recently recognized me as a Thought Leader in the area of log management. I'm quite humbled to be included with the likes of our own Log Analysis Professional contributors Dr. Anton Chuvakin and Ron Gula (among others). The interview has been posted on the SANS ...

How to Make Logs Sexy … Again!?

Thursday, May 8th, 2008

Now, some people hate logging, because logs are too hard to deal with (enable, collect, store and especially understand and interpret). However, there is a whole other group of fairly intelligent people who "hate logs:" the organizers of some well-known technical security conferences. The experience of many ...

How to Fight “Log Apathy”?

Wednesday, May 7th, 2008

So, I was talking to this small log management vendor the other day and he confided to me that his product faces fierce competition in his target market (which is, important to note, small to medium companies with 10-100 systems): and this competition is apathy. More specifically, his ...

Welcome Peter Giannoulis to the Log Analysis Professionals Blogger Roster

Friday, March 7th, 2008

I'd like to welcome Peter Giannoulis to the Log Analysis Professionals stable of professional bloggers. Peter is an information security consultant in Toronto, Ontario. Over the last 9 years Peter has been involved in the design and implementation of client defenses using many different security technologies. He is also skilled in ...

Welcome Raffael Marty to the Log Analysis Professionals Blogger Roster

Tuesday, February 26th, 2008

I'd like to welcome Raffael "Raffy" Marty to the Log Analysis Professionals stable of professional bloggers. As chief security strategist and senior product manager, Raffy is customer advocate and guardian - expert on all things security and log analysis at Splunk. With customers, he uses his skills in data visualization, log ...

Welcome Shyaam Sundhar to the Log Analysis Professionals Blogger Roster

Saturday, February 9th, 2008

I'd like to welcome Shyaam Sundhar to the Log Analysis Professionals stable of professional bloggers. Shyaam Sundhar is a security analyst at Symantec MSS. He has been working as an analyst for almost two years, where he was a threat analyst and intrusion signature writer in the previous job. Shyaam, has ...

Welcome Ron Gula to the Log Analysis Professionals Blogger Roster

Thursday, January 31st, 2008

I'd like to welcome Ron Gula to the Log Analysis Professionals stable of professional bloggers. Ron Gula was the original author of the Dragon IDS and CTO of Network Security Wizards which was acquired by Enterasys Networks. At Enterasys, Mr. Gula was Vice President of IDS Products and worked with many ...

Welcome Harlan Carvey to the Log Analysis Professionals Blogger Roster

Tuesday, January 29th, 2008

I'd like to welcome Harlan Carvey to the Log Analysis Professionals stable of professional bloggers. Harlan is a nerd who does incident response and computer forensics work, and is based out of the Metro DC area. In an effort to demonstrate just how much of a nerd he is, Harlan has ...

Welcome Daniel Cid to the Log Analysis Professionals Blogger Roster

Tuesday, January 29th, 2008

I'd like to welcome Daniel Cid to the Log Analysis Professionals stable of professional bloggers. Daniel Cid is the creator and main developer of the OSSEC HIDS (Open Source Security Host Intrusion Detection System). Daniel has been working in the security area for many years, with a special interest in intrusion ...

Against Log Silos!

Monday, January 28th, 2008

While the world of logging is full of inconsistencies and troubles (e.g. ugly logs!), there is one that beats many others: siloed approach to logs! There is little that I hate more than siloed approach to logs. A situation where your security team "owns" network IDS logs, the network team ...