Fork me on GitHub

InformationGathering -> Logging: Correlation of security events

Risk and Opportunity

Risk: Detection of security related events with hints on different systems/tools/metrics is not possible.
Opportunity: Events are correlated on one system. For example the correlation and visualization of failed login attempts combined with successful login attempts.

Usefulness and Requirements of this Activitiy

Usefullness: Medium
Required knowledge: High (two disciplines)
Required time: High
Required resources (systems): High

Additional Information

Dependencies: Visualized logging, Alerting

OWASP SAMM VERSION 2

ISO27001 2017