No more typing reviews! Try our Samantha, our new voice AI agent.

ELK SIEM Setup

reviewer2808624 - PeerSpot reviewer
Soc Analyst at a consultancy with 11-50 employees

Project Description

> SIEM Implementation Using Elastic Stack (ELK) > Implemented Elastic Stack SIEM for centralized log collection and analysis. > Created detection rules for suspicious authentication and privilege escalation events.

Lessons Learned

I will integrate AI with this current project, if I do it now. You can view my project: https://drive.google.com/file/d/19lfZhHPLLkwA7ECqKUKNLW2dpylz_cSB/view?usp=drivesdk

Highlights

Under budget
Received recognition / award

Difficulties

Management had to be convinced
Equipment incompatibility
Steep learning curve