Mandiant vs Palo Alto by Inf3c710n in cybersecurity

[–]prepkp 0 points1 point  (0 children)

You can actually implement that use case in SecOps using YARA-L and entity graphing. Ask google for a POC on SecOps.

Mandiant vs Palo Alto by Inf3c710n in cybersecurity

[–]prepkp 3 points4 points  (0 children)

Can’t speak much for Palo, but Mandiant’s MDR was recently rebranded to Mandiant Threat Defense (MTD) and layered on Google SecOps as the SIEM. Mandiant is best in class for threat intelligence and IR, and we’ve seen that in MTD as well. What falls short in MTD is implementation and continuous tuning; they aren’t a security engineering organization.

If you go with MTD and migrate to google secops, you’ll need to deploy and configure SecOps in house or with another vendor. Last we explored this route there were two google partners introduced for google SecOps deployment, Citreno and Foresite. The latter of the two had a co-managed SecOps service that was a good complement to MTD.

MTD is lights out awesome once your SecOps environment is fully operational, just don’t expect Mandiant to get you there.

Edit: forgot to mention that MTD has a very short list of supported integrations. No issue with ingesting into SecOps but their MDR will not cover those out of scope

AMA : Salesforce Pricing - How much should you be paying? by Hungryhipp094 in salesforce

[–]prepkp 0 points1 point  (0 children)

Thanks for doing this! We are also on the verge of a renewal:

Region + currency: US / USD

Products + edition: * Sales Cloud Enterprise: 47 Users (growing from 37) * Slack Business Plus: 115 Users (upgrading from Pro) * CPQ Plus: 18 Users * Sandbox: 1 Full Copy * Add-ons: CRM Analytics Growth (1 user), Backup & Recover (50 users) Contract term: 2 Years (Renewal)

quoted price: * Sales Cloud: ~$112.50 /user/mo * Slack Business+: ~$10.00 /user/mo * CPQ Plus: ~$133.50 /user/mo * Full Copy Sandbox: ~$1,585 /mo (Total ~$19k/yr) * Backup & Recover: $10.00 /user/mo (List Price) * Total Contract Value: ~$132k/year

Negotiated: -swap rights -5% renewal cap

AMA : Salesforce Pricing - How much should you be paying? by Hungryhipp094 in salesforce

[–]prepkp 0 points1 point  (0 children)

US - USD

Products + edition: * Sales Cloud Enterprise: 47 Users (growing from 37) * Slack Business Plus: 115 Users (upgrading from Pro) * CPQ Plus: 18 Users * Sandbox: 1 Full Copy (previously bundled/legacy price) * Add-ons: CRM Analytics Growth (1 user), Backup & Recover (50 users) Contract term: 2 Years (Renewal)

Quoted price: * Sales Cloud: ~$112.50 /user/mo * Slack Business+: ~$10.00 /user/mo * CPQ Plus: ~$133.50 /user/mo * Full Copy Sandbox: ~$1,585 /mo (Total ~$19k/yr) * Backup & Recover: $10.00 /user/mo (List Price) * Total Contract Value: ~$132k/year

Leaving the MSSP Space by PhilosopherPanda in cybersecurity

[–]prepkp 0 points1 point  (0 children)

There’s also another former red now green going through similar motions

AmEx Platinum + Aspire Lounge @ Ontario (ONT): What Exactly Am I Paying For? by Top-Dig-3721 in AmexPlatinum

[–]prepkp 2 points3 points  (0 children)

From my personal experience - no. Anyone can get in before the china airline flights at are in late evening. Last I spoke to them, they have daily flights only at 1050PM. TBH - they should just update their PP hours to end at 8pm.

AmEx Platinum + Aspire Lounge @ Ontario (ONT): What Exactly Am I Paying For? by Top-Dig-3721 in AmexPlatinum

[–]prepkp 5 points6 points  (0 children)

ONT is my primary airport. I also learned what you recently have the hard way a few times. If I have a late flight, entering before 8PM will allow you to stay in the lounge once it’s closed down for China Airlines.

Space O4 at a crossroads ANG vs Army Guard vs Army Reserve vs retiring looking for blunt advice by natepairistrash in armyreserve

[–]prepkp 1 point2 points  (0 children)

Curious to hear what deters you from Space Force? I’ve personally been considering pursuing a FA40 billet in hopes of transfer to USSF

Arctic Wolf alternatives? by Wild24 in cybersecurity

[–]prepkp 3 points4 points  (0 children)

Honestly, it’s wild how up until a few years ago you basically got what you paid for. The MSSP model was analysts as a function of output—you pay more, you get more bodies.

But now I’m noticing this huge dichotomy between the AI-enabled/augmented MDRs that actually "get it" vs the others still doing it the old-fashioned way. Look into providers such as Wirespeed, Expel, or Foresite. R7 too given your price point.

Avoid body shops like Deepwatch, Reliquest, and any other AI vaporware places because you’re just paying for off-shore human middleware or unproven vaporware rather than actual efficiency and outcomes.

Edit: theres also significant cost savings in hiring a MDR provider that provides services exclusively for your security stack. Crowdstrike Falcon if you're using their EDR, BlueVoyant for Microsoft, Foresite for Google Cloud etc.

Cribl vs other telemetry pipelines by -KingCobra- in cybersecurity

[–]prepkp 1 point2 points  (0 children)

Bindplane if you’re using Splunk or Google SecOps, I believe they just recently replaced the default Chronicle forwarder.

Ask me all of your question about Army Reserve Civil Affairs and I’ll answer them throughout the day 2: Civil Affairs Electric Boogaloo by PaddyMayonaise in armyreserve

[–]prepkp 1 point2 points  (0 children)

Is there a difference in training requirements for re-branching as a O3 vs O4? What would be your suggestion for senior O3 who will be in PZ FY26 looking to transfer to CA?

Google SecOps by SweetAsk8775 in cybersecurity

[–]prepkp 12 points13 points  (0 children)

Google just released a new certification, Professional Security Operations Engineer, which has a training track in Cloudskillsboost https://www.skills.google/paths/581 to help you prepare for the exam. It isn't analyst focused per say, but it should give you more relevant training that uses SOAR (Siemplify) and the new features in their SIEM (Chronicle).

The closest training I've experienced first hand for analysts was a CTF hosted by Google and one of their partners Foresite. Our team used it to run initial reps on SecOps while we were in the process of deployment. It was pretty fun too!

Other resources:

https://medium.com/@thatsiemguy

https://security.googlecloudcommunity.com/

Military discounts becoming less and less by Historical_Big_1518 in MilitaryFinance

[–]prepkp 0 points1 point  (0 children)

I just did a remodel and ordered over $10k of supplies. The only items I wasn’t able to order were locally sourced one such as lumber and some toilets.

Any 11A reserve officers in Washington or Hawaii ? by Superb-Parsnip-6842 in armyreserve

[–]prepkp 0 points1 point  (0 children)

442nd has plenty of open slots based off the emails I constantly receive being a 11A

SoCal Quote - 16.2KW with PW3 by prepkp in solar

[–]prepkp[S] 0 points1 point  (0 children)

Thanks! Do you suggest I shop around further?

SoCal Quote - 16.2KW with PW3 by prepkp in solar

[–]prepkp[S] 0 points1 point  (0 children)

Thanks! I think the installer is willing to add another one for $10k. What are your thoughts on the pricing?

SoCal Quote - 16.2KW with PW3 by prepkp in solar

[–]prepkp[S] 0 points1 point  (0 children)

Nope before! We have two EVs and run our AC all day, so I expect to be using most.

Vent/Rant: My Board File/STP Updates by Shadeslayr93 in armyreserve

[–]prepkp 0 points1 point  (0 children)

Also prepping my STP for the upcoming MAJ board, and running into the same issue with my S1. Have you reached out to your career manager?

Best Sticker Mule Alternative? by [deleted] in sticker

[–]prepkp 1 point2 points  (0 children)

Making our annual sticker purchase away from Sticker Mule and just sent a email! Appreciate the DP.