Demo for Elastic's Auditbeat and SIEM
-
Updated
Jun 15, 2021 - HCL
Demo for Elastic's Auditbeat and SIEM
Automated installation of Wazuh SIEM [Indexer, Server and Wazuh Dashboard] and agents with Terraform in Google Cloud Platform
Deploy ELK platform in Yandex Cloud for analyzing K8s security logs: Audit logs, Policy Engine, Falco.
Export of Kubernetes Audit logs to Yandex Object Storage.
🔍 Build a robust Security Operations Center (SOC) with this comprehensive blueprint, featuring Splunk SIEM, automation, and enterprise-level security monitoring.
Production-ready SOC implementation with Splunk, SOAR automation, and MITRE ATT&CK detection rules splunk, phantom, zeek, incident-response, threat-hunting, detection-rules, blue-team, security-orchestration, aws, cloud-security, devops, infrastructure-as-code
Sentinel capabilities sandbox
Collecting, monitoring and analyzing audit logs in Yandex Managed Service for Managed Service for Elasticsearch (ELK).
Export of Kubernetes Audit logs to Yandex Data Streams (YDS) or Kinesis Data Streams.
Collecting, monitoring, and analyzing Yandex Cloud audit logs in an external SIEM Splunk.
Enterprise SIEM with GuardDuty threat detection and automated incident response
Add a description, image, and links to the siem topic page so that developers can more easily learn about it.
To associate your repository with the siem topic, visit your repo's landing page and select "manage topics."