Articles tagged with: #xdr Clear filter
Open Source SOC Lab Platform - Integrated Wazuh, MISP, Velociraptor, Shuffle & More

Open Source SOC Lab Platform - Integrated Wazuh, MISP, Velociraptor, Shuffle & More

For [Blue|Purple] Teams in Cyber Defence www.reddit.com

Built an integrated SOC training platform for blue teamers who want to practice without spending days on setup. The stack: - SIEM/XDR: Wazuh + OpenSearch - CTI: MISP with automated feed ingestion - DFIR: Velociraptor for endpoint collection - SOAR: Shuffle for automation workflows - NIDS: Suricata + EveBox for event management - PCAP: Arkime with sample captures - Fleet: osquery fleet management - Detection: 523 YARA rules + 3,047 Sigma rules pre-configured Technical approach: - Docker Compose...

Bitdefender GravityZone vs. Microsoft Defender + XDR  -  for a mid-sized company?

Bitdefender GravityZone vs. Microsoft Defender + XDR - for a mid-sized company?

cybersecurity www.reddit.com

Hi folks! I'd love your take. I work at a company with about 150 users. We currently run GravityZone Business Security Enterprise and have for almost 3 years. Honestly, I don't have many complaints - aside from the occasional high RAM usage - but overall I'm happy with it. We're also in the M365 ecosystem (licensed, email hosted there), and we're planning to migrate to Active Directory in a few months. That got me wondering whether we should switch to Microsoft's security stack - Microsoft...

Will moving to a less technical position hurt my career?

Will moving to a less technical position hurt my career?

cybersecurity www.reddit.com

I'm currently a security engineer at a healthcare provider in my region. It's a company that everyone in the country knows, but absolutely nobody outside has heard of. My job is quite flexible and relatively technical. My day-to-day involves maintaining and configuring WAF, XDR, NDR, and some AppSec work. I received an offer from one of the largest banks in Europe for a senior AppSec position. I'll have to move to a HCOL region, but the salary compensates - net I'd receive more than currently,...

How I started with ELK stack to build a basic monitoring system

How I started with ELK stack to build a basic monitoring system

cybersecurity www.reddit.com

What tools would you use to build a security monitoring system , opensource or paid and which ones specifically , I am thinking roll your own XDR but its a lot of effort ? Would something like ELK Stack be a good starting point or do you suggest other tools ideally a system that can be highly customised and tuned over time. Curious what options are out there. submitted by /u/Red_One_101 [link] [comments]

Free/Open source EDR/XDR for Linux endpoints and servers

Free/Open source EDR/XDR for Linux endpoints and servers

cybersecurity www.reddit.com

Please list the free/open source EDR/XDR for Linux endpoints and servers that you have experience with. Please do not mention "Wazuh" or other SIEM tools. Thanks in advance. submitted by /u/Pristine-Remote-1086 [link] [comments]