Security News > 2021 > January > How next-gen cloud SIEM tools can give critical visibility to companies for effective threat hunting

How next-gen cloud SIEM tools can give critical visibility to companies for effective threat hunting
2021-01-15 16:39

When the move to the cloud was dramatically exacerbated by companies rapidly shifting to remote work, these tools fell short of supplying clear visibility into multiple environments and technology layers.

The need to quickly adapt and scale to the new reality provided the perfect opportunity to accelerate the push to cloud, but outdated traditional security information and event management tools are not able to efficiently collect and process the high volume of telemetry generated by the multiple cloud services adopted as part of this push.

Organizations must focus on tools such as Next-Gen SIEM, cloud-focused tools such as cloud access security broker and cloud security posture management, and modern consolidated network and security services such as secure access service edge, which all enable modern security architecture approaches.

Scott Matteson: How do next-gen cloud SIEM tools play a role?

Unlike their predecessors, they are equipped with purpose-built threat detection content, to not only handle the load of new cloud services but also monitor and detect new threat vectors related to the cloud.

Many of those who rely on EDR are expanding their portfolio of technology to account for blind spots by adding next-gen cloud SIEM tools to their backends, where they can aggregate data from existing EDR tools with data from other sources.


News URL

https://www.techrepublic.com/article/how-next-gen-cloud-siem-tools-can-offer-critical-visibility-companies-for-effective-threat-hunting/#ftag=RSS56d97e7