Improving Security Management with Real-Time Queries

by Dave Shackleford
Sept. 1, 2017 SANS Institute

One of the biggest challenges facing organizations today is the lack of knowledge about system state at any given time. SANS has long espoused a strategy of continuous monitoring for all systems (or at least critical ones), but most have struggled to actually implement this. As threats become more stealthy and persistent, understanding organizational security posture at all times and reacting quickly to any potential attacks become paramount.