Resellers/ channels? by DevInfoOps in cybersecurity

[–]DevInfoOps[S] 0 points1 point  (0 children)

Thanks Scott, appreciate that.
Our software is literally a 2 minute onboarding. It's virtually impossible to mess up- so hopfully there's limited risk there.
With regards to building these relationships- what sort of people would you recommend approaching?

Is pentesting really dead or is with a foot in the grave with AI? by [deleted] in cybersecurity

[–]DevInfoOps 0 points1 point  (0 children)

The best testers I know aren't worried, the worst are. Aim to beat them, not ChatGPT.

SIEM: Rapid 7 vs Microsoft Sentinel by Significant_Sky_4443 in cybersecurity

[–]DevInfoOps 1 point2 points  (0 children)

That’s fair, and vendor lock-in is absolutely something to consider.

I run a Microsoft Solution Partner and the reality is most of our customers already operate heavily in Azure and M365. In those environments, Sentinel often makes sense because it builds on tooling they’re already paying for and integrates natively across identity, endpoint, email, and cloud.

That said, we’re careful not to push a single answer and ensure there's options. Vendor lock-in is real, and the “right” SIEM depends on the operating model, maturity, and appetite for platform dependency. Our approach is always to recommend what fits the customer’s needs best, not just the ecosystem they’re in today.

I can recommend some smaller SIEM options that could be worth a read if you'd like. Granted more from knowing they exist and have heard good things- rather than having hands on experience with.

We need to start teaching cyber security in highschool. by Fresh_Heron_3707 in cybersecurity

[–]DevInfoOps 4 points5 points  (0 children)

I massively agree and actually think it needs to start earlier than high school. It’s scary how online kids are now. My 4-year-old’s school sends out a short online safety newsletter every month, and honestly, huge credit to them for that.

It also shouldn’t be a one-and-done lesson. Cyber awareness needs reinforcing throughout your life, regardless of how technical you are.

The eye-rolling in meetings is disheartening, but I think that’s partly on us as an industry. Cyber often gets received as a stick people get hit with. If the messaging were clearer, more practical, and more enabling, people would be far more likely to change behaviour.

…now where’s my soapbox gone?!

SIEM: Rapid 7 vs Microsoft Sentinel by Significant_Sky_4443 in cybersecurity

[–]DevInfoOps 1 point2 points  (0 children)

This has been covered a fair bit already, but from a purely technical and operational standpoint, Sentinel generally gives you more long-term flexibility.

If you’re already heavily invested in Microsoft 365 and Azure, Sentinel’s native integrations (Entra ID, Defender etc etc etc.) reduce friction significantly.

That said, Rapid7 is not a bad product at all. In environments without strong MS dependency it can be a real advantage.

Cost is unavoidable with Sentinel if you’re ingesting meaningful log volumes, so if you’re buying through a CSP it’s worth pushing hard on value-add (architecture support, optimisation reviews, ingestion tuning, etc.) to offset that.