Skip to content

Latest commit

 

History

History
executable file
·
16 lines (15 loc) · 1.2 KB

vborkar_session.md

File metadata and controls

executable file
·
16 lines (15 loc) · 1.2 KB
speaker_name speaker_name_full speaker_talk_title primary_title title keynote_speaker speaker_github speaker_linkedin session_time session_room session_track permalink
vborkar
Vinayak Borkar
Experience Building a SIEM With OpenSearch
Experience Building a SIEM With OpenSearch
OpenSearchCon 2023 Session: Experience Building a SIEM With OpenSearch
false
2023-09-28 - 2:45pm-3:25pm
Redwood
Analytics, Observability, and Security
/events/opensearchcon/sessions/experience-building-a-siem-with-opensearch.html

SIEM systems help organizations analyze data for security incidents, with tasks like data collection, normalization, event analysis, threat detection, incident response, and reporting. However, the increasing volume of data, especially from cloud usage, elevates SIEM solution costs. Teams pre-filter data sources to stay within budgets, raising security risks. Our challenge is cost-effectively storing security data. OpenSearch's indexing and query DSL can address this. We'll share our experience building a cost-effective SIEM using OpenSearch and discuss the engineering hurdles we faced.