Axi0kers0s πŸ‘Ύ · @axi0kers0s
55 followers · 271 posts · Server infosec.exchange

Saturday on SOC duty ... Dashboard full of alerts and haven't had the chance to sip my coffee yet ... Long day ahead

#socanalysts #socsaturday

Last updated 2 years ago

Joe Shenouda · @shenouda
100 followers · 97 posts · Server cybersecurity.masto.host

Hackers often exploit more during the holidays due to an increase in online shopping, financial transactions, and travel. This can lead to a busy and stressful time for SOC analysts, who may be working with a smaller team to monitor and respond to security incidents. Stay vigilant about cybersecurity during the holiday season to protect yourself and your loved ones. linkedin.com/pulse/why-grinch-

#cybersecurity #holidays #socanalysts

Last updated 2 years ago

πŸ“° Hot off the press πŸ“°
---------------------------------------
I wrote this article for PowerGrid International magazine and it is to help folks with tuning their ICS /OT / SCADA network security monitoring alerts. πŸ› οΈπŸ“‰ You don't have to reinvent the wheel!

***If ICS NSM is in your responsibility, please read this article (link below) I would love to get your feedback.***

Documentation about tuning ICS NSM systems are rare. ICS NSM solution documentation tends to focus on how to turn on and off the baseline feature, and not go into specifics about how to fine tune the system.

If you buy an ICS NSM solution and forget it, it will be useless. If a vendor says their sensor/IDS requires no tuning, they are lying to you. An unmanaged and untuned ICS NSM or IDS will create floods of alerts, nuisance alerts, and contributes to alert fatigue for your engineers and SOC analysts.

Thank you!

πŸ“°: When fine-tuning your cybersecurity alerts, it’s best to focus on the basics
power-grid.com/td/when-fine-tu

#ics #ot #scada #icssecurity #otsecurity #networksecuritymonitoring #nsm #ids #soc #socanalysts #blueteam #tuning

Last updated 2 years ago

Sarah Young · @sarahyo
502 followers · 23 posts · Server infosec.exchange

RT @fancy_4n6@twitter.com

One of the most popular of @fr0gger_@twitter.com's is this Parsing .

Very helpful to have on hand when analysing large sets of log data.

twitter.com/fancy_4n6/status/1

πŸ¦πŸ”—: twitter.com/fancy_4n6/status/1

#infographics #log #cheatsheet #dfir #socanalysts #logtools #grep

Last updated 2 years ago