02.01.2024 Views

The Cyber Defense eMagazine January Edition for 2024

Cyber Defense eMagazine January Edition for 2024 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! 201 page January Edition fully packed with some of our best content. Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

Cyber Defense eMagazine January Edition for 2024 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! 201 page January Edition fully packed with some of our best content. Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Solving <strong>for</strong> What the SOC Needs Now: Flexibility and Optionality<br />

<strong>The</strong> cybersecurity ecosystem is reshaping itself. <strong>The</strong> technology, the leaders, everything now is shifting<br />

so that security teams can have a more open future – a future where they’re not locked into a single<br />

SIEM, one with freedom <strong>for</strong> detections, and freedom <strong>for</strong> response.<br />

From data pipelines to threat detection plat<strong>for</strong>ms, an unbundling is taking place. Security organizations<br />

increasingly prioritize flexibility and optionality, driving demand <strong>for</strong> decoupled solutions. Analytics<br />

separate from data storage, stand schemas and open table <strong>for</strong>mats are all gaining mindshare.<br />

Interest in decoupling threat detection from log storage is fueled by the huge difference in cost between<br />

data plat<strong>for</strong>m options. Where tightly coupled SIEM solutions impose a steep ingest tax, cloud data lake<br />

options charge by usage and don’t limit retention. Use cases whose data can be analyzed outside the<br />

SIEM often see cost savings upwards of 80%. <strong>The</strong> combination of improved visibility and lower spend<br />

makes new data plat<strong>for</strong>ms appealing. As a result, CISOs have started demanding the flexibility to explore<br />

cost-effective alternatives on a per-use case basis.<br />

A New Era of Freedom <strong>for</strong> Splunk + Snowflake Users<br />

Enterprises are being pushed by lock-in fears and pulled by opportunities <strong>for</strong> better scale. <strong>The</strong>y are<br />

looking <strong>for</strong> ways to augment Splunk with data plat<strong>for</strong>ms that deliver efficiencies and support the latest<br />

machine learning. But “rip and replace” is not an option <strong>for</strong> most, so a bridge is needed <strong>for</strong> the transition<br />

from monolithic SIEMs to a security data lake architecture.<br />

In my experiences working with customers at Snowflake, I saw the immediate impact when they could<br />

start using Snowflake alongside Splunk. <strong>The</strong>y no longer only had one option <strong>for</strong> their security data.<br />

<strong>The</strong>y had more choices, they had freedom.<br />

Splunk isn't disappearing. Beyond its continued relevance in cybersecurity, Cisco will invest heavily in<br />

bolstering Observability and application monitoring. At the same time, the "all in one" approach is being<br />

replaced by a SOC architecture that utilizes the most suitable home <strong>for</strong> each data source and use case.<br />

Security teams demand the liberty of choosing where their data lives and the flexibility to detect threats<br />

equally well across their SIEM and data lake of choice. I look <strong>for</strong>ward to helping organizations do just that<br />

in my new role at Anvilogic.<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> – <strong>January</strong> <strong>2024</strong> <strong>Edition</strong> 116<br />

Copyright © <strong>2024</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!