Leveraging Event and Log Data for Security and Compliance

by Dave Shackleford
Sept. 1, 2017 SANS Institute

Despite the proliferation of enterprise log management and event monitoring solutions in use today, the overall state of information security has not measurably improved after incidents and audits. “Our findings show that data breaches are a pervasive problem for most organizations in the United States today,”explains Larry Ponemon in a May,2007,Network World article. “We also show that despite negative repercussions in terms of cost outlays and reputation diminishment, many companies that experience a breach do not take appropriate steps to prevent future incidents.”1 Why is this the case, particularly in light of the growth in logging and event management solutions?