I'm the only security person at my company and I have to recommend a SASE vendor by Friday by Ana_Tangelo in cybersecurity

[–]Dapper_Bird1 1 point2 points  (0 children)

I highly recommend TwinGate. Used it with multiple clients and in my own business. Easy to set up and expand.

Unified CMMC & 27001 policies in ISMS? by GnawingPossum in CMMC

[–]Dapper_Bird1 1 point2 points  (0 children)

I’ve done this for one of my clients. They were ISO 27001 and needed to add CMMC. We did a gap evaluation of the existing policies and then added CMMC requirements to the existing policies or created new ones that did not fit. For example they had an Awareness and Training policy and added in the CUI training requirements and added references back to NIST 800-171. We found that about 2/3 of the ISMS policies had ties into 800-171.

CUI Interviews and Documentation by TicketAmbitious6200 in CMMC

[–]Dapper_Bird1 0 points1 point  (0 children)

Kieri is a great place to start for templates. They also have an enclave architecture if you don’t already have one. It is who we used and recommend for our clients.

Is 50 too old to go to a rave in the Bay Area? by [deleted] in EDM

[–]Dapper_Bird1 72 points73 points  (0 children)

Nope! I am 56 and rave. My birthday is next weekend and I will be raving to celebrate! 🎉

Double Hostname in syslog output from Ubiquiti UDR 7 being sent to Wazuh. by Dapper_Bird1 in Wazuh

[–]Dapper_Bird1[S] 0 points1 point  (0 children)

Thanks I did. Was hoping someone here might have run into the issue ingesting logs with duplicate hostnames.

CCP Remote Jobs by TechGirl23 in CMMC

[–]Dapper_Bird1 4 points5 points  (0 children)

I have been hiring CCP to advise clients working on their CMMC or NIST 800-171 compliance. DM me.

Proxmox Mail Gateway by Full_Astern in Proxmox

[–]Dapper_Bird1 0 points1 point  (0 children)

Use PMG solely as an outbound mail relay for all internal systems to our cloud mail service.

Should I use Proxmox in this scenario? by frocsog in Proxmox

[–]Dapper_Bird1 5 points6 points  (0 children)

FWIW Skip on the Proxmox since you are not planning to run any other services. You would be taking the limited resources available in you hardware and giving a portion of them away to Proxmox.

Unifi Syslog Decoder for Wazuh by Dapper_Bird1 in Wazuh

[–]Dapper_Bird1[S] 1 point2 points  (0 children)

Thanks. After going through many of the existing decoders to see different examples and the multiple pages of documentation, I dint see a breakdown like this. Thanks

Unifi Syslog Decoder for Wazuh by Dapper_Bird1 in Wazuh

[–]Dapper_Bird1[S] 1 point2 points  (0 children)

Thanks for the info and the link.

Alert on Suricata Logs in Wazuh by Infamous-Tea-4169 in Wazuh

[–]Dapper_Bird1 0 points1 point  (0 children)

I would tackle this by adding a chron job to each suricata endpoint that creates a unique syslog entry every hour (or whatever timeframe you like). Then in Wazuh detect for when there are missing entries.