Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Finding Relevant Alerts, Events and Logs

SANS via YouTube

Overview

Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Learn to connect isolated security alerts into coherent attack chains using open-source AI models in this 35-minute conference talk from the SANS DFIR Summit 2025. Discover how traditional detection methods struggle with contextualizing vast amounts of security data, often leaving slow and stealthy attacks undetected among noise and false positives. Explore a novel approach that employs clustering, knowledge graphs, and AI-driven correlation to map and correlate security alerts for uncovering coordinated attacks. Examine the methodology, open-source tools, and practical results of this approach across diverse environments including cloud, telecom, and industrial control systems. Gain insights into improving SOC (Security Operations Center) efficiency and effectiveness through advanced correlation techniques that transform disconnected alerts into actionable intelligence for cybersecurity professionals.

Syllabus

Finding Relevant Alerts, Events and Logs

Taught by

SANS Digital Forensics and Incident Response

Reviews

Start your review of Finding Relevant Alerts, Events and Logs

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.