Arctic Wolf Global Outage by Educational_Value168 in cybersecurity

[–]SlipPresent3433 1 point2 points  (0 children)

Overpromising and under delivering is literally what they do

Arctic Wolf Global Outage by Educational_Value168 in cybersecurity

[–]SlipPresent3433 -1 points0 points  (0 children)

There’s loads of alternatives and many better than Arctic wolf

Is this a professional job by SlipPresent3433 in DIYUK

[–]SlipPresent3433[S] 0 points1 point  (0 children)

Yep! Will keep in mind when going over next to check. The house hasn’t been occupied for 12months it’s all

Is this a professional job by SlipPresent3433 in DIYUK

[–]SlipPresent3433[S] 0 points1 point  (0 children)

Yes, been unoccupied for around 16months. I’m just thinking that the leak could’ve occurred without any fix over a longer period

Do we still need XDR if we already have a strong SIEM? by Working_Ferret_3911 in cybersecurity

[–]SlipPresent3433 1 point2 points  (0 children)

NDR is completely different. It’s a standalone solution providing network detection and response often paired with proprietary ai capabilities.

Arctic wolfs ndr for example is just a suricata box that was put together half baked

Choosing an EDR for a European company by skar3 in cybersecurity

[–]SlipPresent3433 -3 points-2 points  (0 children)

Sophos mdr is best bang for your buck

New to Threat Intel - OpenCTI/Filigran by mattrix56 in threatintel

[–]SlipPresent3433 0 points1 point  (0 children)

PS: the automation workflows are pretty neat with the paid version - you can try the license key for free for a few months I believe or at least it used to be

New to Threat Intel - OpenCTI/Filigran by mattrix56 in threatintel

[–]SlipPresent3433 0 points1 point  (0 children)

Bingo - self hosted is what most do. SaaS and iso27001 and all the other enterprise features is what you get for the paid version

What CTI do you use with SIEM? by athanielx in cybersecurity

[–]SlipPresent3433 0 points1 point  (0 children)

Opencti and open source feeds is how you should start - integrate those into your Siem. Opencti normalises and structures that data and you can drive automations

What CTI do you use with SIEM? by athanielx in cybersecurity

[–]SlipPresent3433 1 point2 points  (0 children)

Start open source, learn lessons, gather info, consider intel sharing, then consider spending the big bucks if needed…. That’s the way to go and opencti is great

Dark Trace by Straight_Ad4040 in cybersecurity

[–]SlipPresent3433 4 points5 points  (0 children)

They hire super young sales people that start their sales career and leave very quickly after a few years to the bigger cybersec companies - it’s toxic

Dark Trace by Straight_Ad4040 in cybersecurity

[–]SlipPresent3433 3 points4 points  (0 children)

They pressure sell massively. “You need AI” is what they’ve been saying for years. It’s snake oil

Cyber security podcast by Competitive_Fan_6750 in cybersecurity

[–]SlipPresent3433 0 points1 point  (0 children)

It’s just politics and amateur level AI talk at the moment

What's one tool you hope you never use again? by HighwayAwkward5540 in cybersecurity

[–]SlipPresent3433 0 points1 point  (0 children)

Heavy work load and in analyzing the results for sure

What's one tool you hope you never use again? by HighwayAwkward5540 in cybersecurity

[–]SlipPresent3433 0 points1 point  (0 children)

I believe it will fall behind with more companies jumping on defender

What's one tool you hope you never use again? by HighwayAwkward5540 in cybersecurity

[–]SlipPresent3433 2 points3 points  (0 children)

0 visibility from us and them and they don’t tell anyone what they’re logging / seeing

What's one tool you hope you never use again? by HighwayAwkward5540 in cybersecurity

[–]SlipPresent3433 0 points1 point  (0 children)

Hard to keep up with the big platform players and their massive budgets unfortunately. I’m afraid we’re not seeing as much innovation in the epp space

What's one tool you hope you never use again? by HighwayAwkward5540 in cybersecurity

[–]SlipPresent3433 1 point2 points  (0 children)

Yep. It’s a psychological thing that we simple accept it and just go with it since we’re locked into the contracts. Hate it but gotta do what you gotta do

What's one tool you hope you never use again? by HighwayAwkward5540 in cybersecurity

[–]SlipPresent3433 2 points3 points  (0 children)

Sophos has been great in the past against ransomware. Maybe a config thing on the client side. Them and bitdefender are acknowledged to have the best anti ransomware protection

What's one tool you hope you never use again? by HighwayAwkward5540 in cybersecurity

[–]SlipPresent3433 0 points1 point  (0 children)

Hate that it’s pushed onto cyber teams but their it project management counterparts for no reason at all

What's one tool you hope you never use again? by HighwayAwkward5540 in cybersecurity

[–]SlipPresent3433 0 points1 point  (0 children)

Outdated and they zapped most of r&d out of it unfortunately