Alex Teixeira
Jul 12, 2024

--

Hi Martin,

Hard to answer the Data Engineering part here in a comment, I don't know what you mean with buckets and solutions, where you are coming from...

But indeed, many acronyms. The reality is our practices need data and that is also needed from other teams in the organizations, so we are somehow blending what works (or what might save some money).

On Elastic, it seems to have evolved with the new language but man, it was a terrible UX with that previous, rudimentary query language (Lucene).

But now this https://www.elastic.co/blog/getting-started-elasticsearch-query-language

I haven't tried so I cannot make any comments on that.

Thanks for reading!

--

--

Alex Teixeira
Alex Teixeira

Written by Alex Teixeira

I design and build detection and SIEM/EDR/XDR content for Enterprise #SecOps teams #DetectionEngineering http://opstune.com

Responses (1)