Alex Teixeira
Oct 23, 2023

--

Very well said, Sai! I have very little hope in "log standardization" or normalization directly from vendors.

We simply can't control what vendors will do with the data they generate and how it better fits their goals.

However, we can control how we manage data once it's in our possession and that's when standardizing and normalizing starts to make sense—but not for all data!

--

--

Alex Teixeira
Alex Teixeira

Written by Alex Teixeira

I design and build detection and SIEM/EDR/XDR content for Enterprise #SecOps teams #DetectionEngineering http://opstune.com

No responses yet