Archive for February, 2008

Welcome Raffael Marty to the Log Analysis Professionals Blogger Roster

Tuesday, February 26th, 2008

I'd like to welcome Raffael "Raffy" Marty to the Log Analysis Professionals stable of professional bloggers. As chief security strategist and senior product manager, Raffy is customer advocate and guardian - expert on all things security and log analysis at Splunk. With customers, he uses his skills in data visualization, log ...

Segregating Your Logging for Availability

Monday, February 18th, 2008

Although not a new concept, I thought I'd remind people of the benefits of sending your security, system, and application logs across a segregated network to maintain availability. Consider the following scenario: Your network is experiencing a horrible worm outbreak that is eating up critical bandwidth as it attempts to spread ...

What Logging You MUST Do For PCI DSS Compliance?

Sunday, February 17th, 2008

Somebody asked me a few days ago: EXACTLY what logging we absolutely MUST do for PCI DSS compliance? This is actually not as simple! The honest answer to the above question is that there is no list of what EXACTLY you MUST be logging due to PCI or, pretty much, any ...

Welcome Shyaam Sundhar to the Log Analysis Professionals Blogger Roster

Saturday, February 9th, 2008

I'd like to welcome Shyaam Sundhar to the Log Analysis Professionals stable of professional bloggers. Shyaam Sundhar is a security analyst at Symantec MSS. He has been working as an analyst for almost two years, where he was a threat analyst and intrusion signature writer in the previous job. Shyaam, has ...

The Log Analysis Professionals FeedBurner Network

Sunday, February 3rd, 2008

We recently kicked off the Log Analysis Professionals FeedBurner network. If you have a log-(analysis/management/related) blog and would like to be a member, please send me an email at andrewsmhay/at/gmail.com. Proud member of Log Analysis Professionals, a FeedBurner Network.

Two New SANS Reading Room Papers on Logging Available

Sunday, February 3rd, 2008

Many who know me, know that I am a huge fan of free security resources. Papers from the SANS Information Security Reading Room are just such a resource. Two new papers were recently posted to the reading room that are certainly worth checking out. I'm sure the authors would greatly ...