mailing list archives
Re: SIEM device?
From: "Rich Borroff" <rich_borroff () harvard edu>
Date: Thu, 20 Dec 2007 10:44:29 -0500
I recently sat through a presentation for the Qradar SLIM, an appliance
with the SIEM and log archiving features approriate for an SMB. I really
liked it: I asked Santa for one.
Network and Server Manager
Harvard University - DCE
security-basics-return-46945 () securityfocus com on Thursday, December 20,
2007 at 7:34 AM -0500 wrote:
You may want to add ArcSight (www.arcsight.com) to the list of SIEM's to
----- Original Message ----
From: "Eggleston, Mark" <meggleston () healthpart com>
To: security-basics () securityfocus com
Sent: Wednesday, December 19, 2007 12:44:05 PM
Subject: SIEM device?
Any of you fine folks using RSAs Envision? Or TriGeo? We use GFI
EventsManager and appreciate it simplicity but not its lack of stability
and scaling issues. Looking for something more robust w/ an easy GUI.
Any suggestions? I am concerned with envisions GUI and find it
cumbersome; however would like to hear if other folks use envision with
or use other products.
Manager, Security and Business Continuity
All the information contained in this electronic communication and
any attachments is intended only for the use of the individual or
entity to which it is addressed. If you are not the intended
recipient, you are hereby notified that you should not disseminate,
distribute or copy any portion of this electronic communication. If
you have received this message in error, please notify the sender
by replying to this email and immediately deleting any and all
copies you may have inadvertently made.
Never miss a thing. Make Yahoo your home page.
- SIEM device? Eggleston, Mark (Dec 19)
- <Possible follow-ups>
- Re: SIEM device? Olmstead, Frank M. - OTR (Dec 20)
- Re: SIEM device? Rich Borroff (Dec 20)