If you’ve implemented SIEM, what solution are you using?

4.2k views6 Comments
Sort By:
Oldest
Chief Information Security Officer in Software9 months ago
Last year I started implementing Wazuh (based on Elastic stack). I was effective, with both M365 technologies and AWS. Also have the advantage that the agent is running on Windows, MacOS and Linux. If you play a litlle bit with it you can automate mostly everything but Onprem hosted.

After. all I switched to Microsoft Sentinel mostly because I have no patch management to do, I can have all the information need without having patching the system supporting the SIEM. If I have a supporting team form my Secinfra I would go again with Wazuh. But the no brainer choice for me if Sentinel.
Most import is not only to set an SIEM but also have a SOC to deal with all the alerts.
Fractional CISO in Telecommunication9 months ago
The last deployment I made was using Microsoft Sentinel and we were generally very happy with its capabilities and integration options.

Looking forward to seeing how the new Co-Pilot tools will enhance it further.
CISO in Insurance (except health)8 months ago
Currently we are using Splunk for our SIEM but with the purchase of Splunk last year by CISCO we are considering other options but would not implement a SIEM without a co-managed SIEM provider. 
lock icon

Please join or sign in to view more content.

By joining the Peer Community, you'll get:

  • Peer Discussions and Polls
  • One-Minute Insights
  • Connect with like-minded individuals
CIO in Manufacturing8 months ago
We are looking at implementing a SIEM/SOC. Does anyone have experience with SilverSky as a managed service?
1 Reply
CISO in Insurance (except health)8 months ago

Have not worked with SilverSky but have had great success with ReliaQuest. 

1
CIO in Education8 months ago
I/we implemented and are currently using Google Chronicle, but in the past I have also implemented QRadar and Splunk (at a former employer) 

Content you might like

Head of Enterprise Architecture MERCK Group in Healthcare and Biotecha year ago
Strategy & Architecture
Read More Comments
39k views5 Upvotes34 Comments

TCO19%

Pricing26%

Integrations21%

Alignment with Cloud Provider7%

Security10%

Alignment with Existing IT Skills4%

Product / Feature Set7%

Vendor Relationship / Reputation

Other (comment)

View Results
5.7k views3 Upvotes1 Comment
CISO in Energy and Utilities9 days ago
Mentorship is crucial, especially when leading a relatively new team. I've intentionally built a team where nearly 80% are under 35. I sought out young, hungry, and energetic individuals who bring fresh perspectives and a ...read more
3
170 views1 Upvote1 Comment

Yes, and it is always followed22%

Yes, but it is rarely followed54%

Some departments do, but not across the business14%

No9%

View Results
1.8k views2 Upvotes