{"id":2968,"date":"2020-03-26T13:12:35","date_gmt":"2020-03-26T17:12:35","guid":{"rendered":"https:\/\/solutionsreview.com\/security-information-event-management\/?p=2968"},"modified":"2020-03-26T13:12:35","modified_gmt":"2020-03-26T17:12:35","slug":"the-coronavirus-siem-survival-guide-for-businesses","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/","title":{"rendered":"The Coronavirus SIEM Survival Guide for Businesses"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-2173\" src=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg\" alt=\"The Coronavirus SIEM Survival Guide for Businesses\" width=\"800\" height=\"433\" srcset=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg 800w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD-300x162.jpg 300w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD-768x416.jpg 768w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD-499x270.jpg 499w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD-150x81.jpg 150w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD-333x180.jpg 333w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Welcome to the new era of coronavirus SIEM. As this pandemic continues to wreak havoc across the world, businesses face a problem unlike any faced before; namely, how to maintain a consistent layer of security information and event management over a completely remote workforce.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">The coronavirus outbreak requires both a different mindset and a new set of cybersecurity tools. As the editors of Solutions Review, we dedicate our energy and expertise to helping enterprises make sense of their cybersecurity needs.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Therefore, we present our Coronavirus <a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/siem-buyers-guide-security-information-and-event-management\/\" target=\"_blank\" rel=\"noopener noreferrer\">SIEM<\/a> Survival Guide. We don\u2019t know how long this crisis might persist, but we can help you fortify your digital perimeter in the meantime.\u00a0<\/span><\/p>\n<div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/soar-buyers-guide-security-orchestration-automation-and-response\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" src=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2020\/01\/soar-speedbump.jpg\" alt=\"Download Link to SOAR Buyer's Guide\" width=\"800\" height=\"225\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div>\n<h2 style=\"text-align: justify\"><b>The Coronavirus SIEM Survival Guide<\/b><\/h2>\n<h3 style=\"text-align: justify\"><b>Visibility Matters More Than Ever Before<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">As stated above, the coronavirus drives enterprise workforces apart. Employees have little choice but to work from home, which of course expands and scales your IT environment. However, while this proves necessary to flatten the curve of coronavirus infections, it complicates business\u2019 cybersecurity. Visibility is the life-blood of modern cybersecurity; you can\u2019t possibly protect what you can\u2019t see.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Moreover, hackers take every advantage of every unmonitored spot in your network. In the time of on-premises work, hackers would use notorious weak spots such as the Internet of Things (IoT). Now, hackers have their pick of unsecured devices and poor online behaviors from which to initiate their attacks.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Next-generation SIEM solutions help alleviate this problem by increasing visibility across the entire network. While your enterprise shouldn\u2019t try to deploy a new SIEM solution across the entire IT infrastructure at once (this leads to information overload and can lead to serious burnout), you can glean more information as it expands. In fact, SIEM can gather security event information from the most sensitive databases regardless of their location; this prevents potentially devastating cyber attacks from going unnoticed and unmitigated.\u00a0<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>Coronavirus SIEM Includes Contextualized Alerts<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Legacy SIEM and next-generation SIEM alike both provide security alerts when it detects a threat. These alerts help direct your IT security team\u2019s investigations, thus possibly speeding their incident response and remediation efforts.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">However, a common legacy SIEM challenge involves the number of alerts security teams receive each day; depending on the size of the IT environment, alerts could number in the hundreds or thousands. Obviously, this can overwhelm even the most dedicated security team and bury legitimate incidents in false positives.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">The problem often lies with the system\u2019s inability to recognize a deviation from baseline behaviors (an employee logging in from a different device) from a distinct security incident (an employee attempts 60 logins from a device in a completely different country). Sometimes this could result from security teams failing to maintain their alert parameters. At other times, it comes from legacy systems not recognizing nuanced behaviors.\u00a0\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Thankfully, next-generation SIEM solutions can help investigators sort through the alerts and pare back their numbers. They do this through contextualization; this capability outlines the circumstances of the alert (who did what, when, and why it arouses suspicion) so team members can determine whether it merits a closer investigation.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Coronavirus SIEM must focus on reducing as many false positives as possible. As a side note, your security team should adjust your security parameters for alerts to accommodate the new reality of work-from-home.\u00a0<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>Get as Much Intelligence as You Can\u00a0<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">The new reality of work from home also means that hackers are adapting their attacks to fit the new normal. They won\u2019t wait for the virus to abate before restarting their attacks. Instead, they will restructure their malware and identity-based attacks to take advantage of the decentralized landscape.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Thus, your enterprise needs the latest information on threats. A next-generation SIEM solution can connect your IT security team with multiple threat intelligence feeds. These can help your team recognize threats as they make moves in your network. The importance of responding to threats quickly and completely matters more now with so few direct eyes on your premises.\u00a0<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>How to Learn More<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Check out <a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/siem-buyers-guide-security-information-and-event-management\/\" target=\"_blank\" rel=\"noopener noreferrer\">SIEM<\/a> and <a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/soar-buyers-guide-security-orchestration-automation-and-response\/\" target=\"_blank\" rel=\"noopener noreferrer\">SOAR Buyer\u2019s Guide<\/a> for information on the top solution providers and key capabilities.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\"><br \/>Widget not in any sidebars<br \/>\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Welcome to the new era of coronavirus SIEM. As this pandemic continues to wreak havoc across the world, businesses face a problem unlike any faced before; namely, how to maintain a consistent layer of security information and event management over a completely remote workforce.\u00a0 The coronavirus outbreak requires both a different mindset and a new [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":2173,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[551,1],"tags":[1202,353,1271,95,1188,86,57,22,373,1139],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>The Coronavirus SIEM Survival Guide for Businesses<\/title>\n<meta name=\"description\" content=\"We present our Coronavirus SIEM Survival Guide. We don\u2019t know how long this crisis might persist, but we can help you fortify your digital perimeter.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"The Coronavirus SIEM Survival Guide for Businesses\" \/>\n<meta property=\"og:description\" content=\"We present our Coronavirus SIEM Survival Guide. We don\u2019t know how long this crisis might persist, but we can help you fortify your digital perimeter.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/\" \/>\n<meta property=\"og:site_name\" content=\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\" \/>\n<meta property=\"article:published_time\" content=\"2020-03-26T17:12:35+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"433\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Ben Canner\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/\",\"name\":\"The Coronavirus SIEM Survival Guide for Businesses\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg\",\"datePublished\":\"2020-03-26T17:12:35+00:00\",\"dateModified\":\"2020-03-26T17:12:35+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"description\":\"We present our Coronavirus SIEM Survival Guide. We don\u2019t know how long this crisis might persist, but we can help you fortify your digital perimeter.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg\",\"width\":800,\"height\":433,\"caption\":\"SecureLink and Ponemon: Crisis in Third-Party Remote Access Security\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The Coronavirus SIEM Survival Guide for Businesses\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\",\"name\":\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\",\"description\":\"Buyer&#039;s Guide and Best Practices\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The Coronavirus SIEM Survival Guide for Businesses","description":"We present our Coronavirus SIEM Survival Guide. We don\u2019t know how long this crisis might persist, but we can help you fortify your digital perimeter.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/","og_locale":"en_US","og_type":"article","og_title":"The Coronavirus SIEM Survival Guide for Businesses","og_description":"We present our Coronavirus SIEM Survival Guide. We don\u2019t know how long this crisis might persist, but we can help you fortify your digital perimeter.","og_url":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/","og_site_name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","article_published_time":"2020-03-26T17:12:35+00:00","og_image":[{"width":800,"height":433,"url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg","type":"image\/jpeg"}],"author":"Ben Canner","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/","url":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/","name":"The Coronavirus SIEM Survival Guide for Businesses","isPartOf":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg","datePublished":"2020-03-26T17:12:35+00:00","dateModified":"2020-03-26T17:12:35+00:00","author":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"description":"We present our Coronavirus SIEM Survival Guide. We don\u2019t know how long this crisis might persist, but we can help you fortify your digital perimeter.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#primaryimage","url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg","contentUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/09\/Mechanical-Eye-MOD.jpg","width":800,"height":433,"caption":"SecureLink and Ponemon: Crisis in Third-Party Remote Access Security"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/the-coronavirus-siem-survival-guide-for-businesses\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/security-information-event-management\/"},{"@type":"ListItem","position":2,"name":"The Coronavirus SIEM Survival Guide for Businesses"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website","url":"https:\/\/solutionsreview.com\/security-information-event-management\/","name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","description":"Buyer&#039;s Guide and Best Practices","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/security-information-event-management\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/2968"}],"collection":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/comments?post=2968"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/2968\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media\/2173"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media?parent=2968"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/categories?post=2968"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/tags?post=2968"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}