Risk Based Alerting (RBA): The Future and Foundation of Next Generation Security

Logo
Presented by

Haylee Mills, Splunk

About this talk

The traditional approach of piling on narrowly-defined detections into a SIEM isn't working. Security analysts want tangible, actionable alerts with more context and higher fidelity. Splunk Enterprise Security's Risk-Based Alerting (RBA) intelligently aggregates suspicious behavior and delivers those actionable alerts, freeing up valuable time to proactively mature security operations. In this webinar, you will learn how RBA can help you: - Reduce low-fidelity, time-consuming alert volume by 50-90%. - Provide more time for high-value activities in your security organization like threat hunting, adversary simulation and security content development. - How RBA becomes the foundational approach for success with unique use cases, as well as the perfect dataset for machine learning. Speaker: Haylee Mills Security Strategist Splunk
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (298)
Subscribers (39145)
Splunk is helping to build a safer and more resilient digital world by equipping customers with the unified security and observability platform they need to keep their organization securely up and running — no matter what digital disruptions come their way.