Search This Blog

Tuesday, December 04, 2007

Next Training Webinar: Filtering Out the Noise in the Security Log

If ever there was a perfect example of the "needle in the haystack" syndrome, it's the Windows Security Log. In order to get the important audit events you need, you also have to deal with a deluge of unimportant, useless noise events. Windows audit policy just isn't flexible or granular enough to configure the noise out of the security log. You have to filter the noise events after the fact. But what events are noise that you can safely discard and what is real audit data you don't want to lose?

In this webinar I will answer those questions. You will take a way a list of "noise" events that you can then implement in your respective log management processes. This is much more than a list of simple event IDs; unfortunately very few event IDs are always noise. More often it's a matter of filtering out events that match a certain event ID and also contain other information in the description of the event.

Join me for this webinar and you'll learn over event patterns you can use to greatly reduce the amount of events you need to review in the security log. You'll also get a chance to learn about Trigeo's log management solution and how they approach this and other challenges with log management and monitoring.

To make this webinar possible your registration data will be shared with our sponsor.

Don’t miss this valuable training. Even if you can’t make the live event register now.

Registering now is the only way to watch the recorded version.

Space is limited.
Reserve your Webinar seat now at:
https://www1.gotomeeting.com/register/384387388

 
Title:   Filtering Out the Noise in the Security Log
Date:  Thursday, December 13, 2007
Time:  12:00 PM - 1:00 PM EDT

Thanks as always for reading and best wishes on security,

Randy Franklin Smith

______________________________________________________________________________
 
All of Randys webinars and more are available online! Click here

Here are some coupon codes you can use! They expire in 7 days though, so don't let this opportunity pass you by.
Edition          Coupon code           Savings
Bronze                QRB                    $10
Silver                  QRS                     $25
Gold                   QRG                    $50
 
________________________________________________________________________________
 
 
To foward this to a friend please click here
 
http://www.ultimatewindowssecurity.com/enews/members.aspx?Task=FF&SI=12379&E=security.world%40gmail.com&S=1&N=27&Format=HTML
 
To opt out please click here
 
http://www.ultimatewindowssecurity.com/enews/members.aspx?Task=OO&SI=12379&E=security.world%40gmail.com&S=1
________________________________________________________________________________
Ultimate Windows Security is a division of Monterey Technology Group, Inc. ©2006-2007 Monterey Technology Group, All rights reserved.
Disclaimer: We do our best to provide quality information and expert commentary but use all information at your own risk.
 
You may forward this email in its entirety but all other rights reserved.

No comments: