Conference 2018
Conference 2018
NREN SIEM Deployment Project
Speakers: Alex Dow, Barb Carra, Jill Kowalchuk, Todd Williams and Ivor MacKay
NREN SIEM Deployment Project Speakers: Alex Dow, Barb Carra, Jill - - PowerPoint PPT Presentation
Conference 2018 Conference 2018 NREN SIEM Deployment Project Speakers: Alex Dow, Barb Carra, Jill Kowalchuk, Todd Williams and Ivor MacKay Speakers Alex Dow, Consultant Mirai Security Barb Carra, Chief Operating Officer Cybera Jill
Speakers: Alex Dow, Barb Carra, Jill Kowalchuk, Todd Williams and Ivor MacKay
Conference 2018
2
Conference 2018
6
Conference 2018
3
Conference 2018
5
Data Sources Analytics Consumption Indexing Collection
Security Analyst
Normalization & Enrichment Transport
ODBC File
WMI/SMB
Syslog API Caching, encryption, compression, bandwidth management Asset/Network Models, DNS, GeoIP, Vuln Database, etc
canarie.ca | @canarie_inc
canarie.ca | @canarie_inc
7
canarie.ca | @canarie_inc
8
canarie.ca | @canarie_inc
9
(presidents of the provincial and territorial networks and of the federal partner, CANARIE)
(priority projects that evolve the NREN and maximize its value for stakeholders)
canarie.ca | @canarie_inc
10
canarie.ca | @canarie_inc
11
canarie.ca | @canarie_inc
12
RAN(s) Infrastructure End-User Institutions RAN Member(s) RAN(s) Network
SIEM Log Collectors SIEM Console
Operational SIEM
SIEM Admin
IT Security Skills & Training
Monitored
Logs
Alarms IT Security Event Response
canarie.ca | @canarie_inc
13
RAN(s) Infrastructure End-User Institutions RAN Member(s) RAN(s) Network
SIEM Log Collectors SIEM Console
Operational SIEM
SIEM Admin
IT Security Skills & Training
Monitored Logs Alarms IT Security Event Response Monitored Logs
canarie.ca | @canarie_inc
14
Imag Image e source: e: https://gbhac acker ers.com
Conference 2018
3
§
Conference 2018
Conference 2018