{"id":3335,"date":"2019-07-08T22:24:03","date_gmt":"2019-07-08T21:24:03","guid":{"rendered":"https:\/\/werle.pro\/?p=3335"},"modified":"2019-07-08T22:24:33","modified_gmt":"2019-07-08T21:24:33","slug":"ssi-ssi-elastic-siem","status":"publish","type":"post","link":"https:\/\/werle.pro\/index.php\/2019\/07\/08\/ssi-ssi-elastic-siem\/","title":{"rendered":"SSI SSI &#8211; Elastic SIEM"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/werle.pro\/wp-content\/uploads\/2019\/07\/introducing-elastic-siem-14078730261010108800.jpg?resize=1200%2C674&#038;ssl=1\" class=\"wp-image-3334 alignnone size-full\" width=\"1200\" height=\"674\" srcset=\"https:\/\/i0.wp.com\/werle.pro\/wp-content\/uploads\/2019\/07\/introducing-elastic-siem-14078730261010108800.jpg?w=1704&amp;ssl=1 1704w, https:\/\/i0.wp.com\/werle.pro\/wp-content\/uploads\/2019\/07\/introducing-elastic-siem-14078730261010108800.jpg?resize=200%2C112&amp;ssl=1 200w, https:\/\/i0.wp.com\/werle.pro\/wp-content\/uploads\/2019\/07\/introducing-elastic-siem-14078730261010108800.jpg?resize=768%2C431&amp;ssl=1 768w, https:\/\/i0.wp.com\/werle.pro\/wp-content\/uploads\/2019\/07\/introducing-elastic-siem-14078730261010108800.jpg?resize=512%2C288&amp;ssl=1 512w\" sizes=\"(max-width: 1200px) 100vw, 1200px\" data-recalc-dims=\"1\" \/><\/p>\n<h3>Et voici Elastic SIEM<\/h3>\n<p>Au c\u0153ur d&rsquo;Elastic SIEM, nous avons int\u00e9gr\u00e9 la nouvelle application SIEM \u2013 un espace de travail interactif, o\u00f9 les \u00e9quipes en charge de la s\u00e9curit\u00e9 peuvent cat\u00e9goriser les \u00e9v\u00e9nements et effectuer les premi\u00e8res investigations. Gr\u00e2ce \u00e0 son afficheur d&rsquo;\u00e9v\u00e9nements Timeline Event Viewer, les analystes peuvent collecter et stocker les preuves des attaques, \u00e9pingler et annoter les \u00e9v\u00e9nements pertinents, mais aussi commenter leurs r\u00e9sultats et les partager. Le tout, depuis Kibana. Vous pouvez ainsi travailler avec n&rsquo;importe quelles donn\u00e9es au format ECS, et cela devient vraiment simple.<\/p>\n<p>Pour les \u00e9quipes qui doivent visualiser, rechercher et filtrer les donn\u00e9es de s\u00e9curit\u00e9, Kibana a toujours \u00e9t\u00e9 un outil id\u00e9al. L&rsquo;application Elastic SIEM reprend tous les aspects de Kibana qu&rsquo;appr\u00e9cient d\u00e9j\u00e0 les \u00e9quipes de s\u00e9curit\u00e9 : son interactivit\u00e9, la recherche ad hoc et l&rsquo;analyse r\u00e9active en profondeur. Le tout est packag\u00e9 pour offrir une exp\u00e9rience produit intuitive, parfaitement adapt\u00e9e aux workflows des centres op\u00e9rationnels de s\u00e9curit\u00e9 (SOC).<\/p>\n<p><a href=\"https:\/\/www.elastic.co\/fr\/blog\/introducing-elastic-siem\">https:\/\/www.elastic.co\/fr\/blog\/introducing-elastic-siem<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Et voici Elastic SIEM Au c\u0153ur d&rsquo;Elastic SIEM, nous avons int\u00e9gr\u00e9 la nouvelle application SIEM \u2013 un espace de travail interactif, o\u00f9 les \u00e9quipes en charge de la s\u00e9curit\u00e9 peuvent cat\u00e9goriser les \u00e9v\u00e9nements et effectuer les premi\u00e8res investigations. Gr\u00e2ce \u00e0 son afficheur d&rsquo;\u00e9v\u00e9nements Timeline Event Viewer, les analystes peuvent collecter et stocker les preuves des &#8230; <a title=\"SSI SSI &#8211; Elastic SIEM\" class=\"read-more\" href=\"https:\/\/werle.pro\/index.php\/2019\/07\/08\/ssi-ssi-elastic-siem\/\" aria-label=\"Read more about SSI SSI &#8211; Elastic SIEM\">Lire la suite<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[10],"tags":[],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p7ALXt-RN","jetpack-related-posts":[],"_links":{"self":[{"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/posts\/3335"}],"collection":[{"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/comments?post=3335"}],"version-history":[{"count":1,"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/posts\/3335\/revisions"}],"predecessor-version":[{"id":3336,"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/posts\/3335\/revisions\/3336"}],"wp:attachment":[{"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/media?parent=3335"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/categories?post=3335"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/werle.pro\/index.php\/wp-json\/wp\/v2\/tags?post=3335"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}