Information Security Blog

Making Log Management Simple

Making Log Management Simple

In a previous article, we wrote about how simple OSCAR makes identifying anomalous activity in logs.  However, what you don’t know is that in developing OSCAR, we use our findings to add new features to the product.

oscar-anomalous-activity-detected

Looking back to the original anomaly alert email, we can see that the count is much higher than all comparisons:

  • Like Day, Like Hour
  • Like ...
Continue Reading →

Identifying Abnormal Log Events Using OSCAR’s Query Tool

Identifying Abnormal Log Events Using OSCAR’s Query Tool

We received an alert informing of anomalous activity from OSCAR.  In this article you will see how we identified what caused the alert.  Thankfully OSCAR makes identifying anomalous activity extremely simple.

oscar-anomalous-activity-detected

By looking at the alert email, we knew that the occurrence was between 9:00 and 10:00 am on a Monday morning.  We also knew which firewall logged the event, and the total number of events that ...

Continue Reading →

“Routine” Information Security – The “Truth” Can Set You Free

“Routine” Information Security – The “Truth” Can Set You Free

Odd the connections that our minds make.

As I was reading an email from Verne Harnish the author of “Mastering the Rockefeller Habits”, a quote by a very successful business owner who uses the system really struck me on multiple levels (including running an Information Security Management System),  “Routine sets you free …”

For some reason I tend to view the definition of many, many words as their connotation (subjective cultural or ...

Continue Reading →

Raising The Bar For IT Security Priorities

These Technology IT Security links are part of a weekly series, Ethical Hacker Roundup, featuring the information security and cyber security related articles that we’ve read over and thought worth sharing from the past week.

These articles have were emailed to us, shared on Twitter @pivotpointsec, Google Plus and read in RSS subscriptions this week.

line-break

Calling All Call Centers – ...

Continue Reading →

“Operationalize” Critical Vendor Risk Management (Before You Regret Not Doing So)

Most organizations are reliant upon hundreds or thousands of third-parties for products or services that are integral to their operation.  Unfortunately most organizations do not do a good enough job of differentiating reliant versus RELIANT. Let’s put it in perspective:

If the cafeteria doesn’t get its shipment of ketchup in time for lunch – we may have some angry tater tot loving employees (until someone can run to ShopRite). While the lack of ketchup is ...

Continue Reading →
Page 1 of 39 12345...»