Security Intelligence with Sumo Logic: Your guide to an effective security detection and response program with the Sumo Logic platform
暫譯: 使用 Sumo Logic 的安全情報:有效的安全檢測與回應計畫指南
Kireeve, Bogdan, Clawson, Chas
- 出版商: Packt Publishing
- 出版日期: 2026-01-30
- 售價: $1,690
- 貴賓價: 9.5 折 $1,605
- 語言: 英文
- 頁數: 568
- 裝訂: Quality Paper - also called trade paper
- ISBN: 183588976X
- ISBN-13: 9781835889763
-
相關分類:
Penetration-test
海外代購書籍(需單獨結帳)
商品描述
Build a modern security intelligence program with Sumo Logic that combines DevSecOps practices, Cloud SIEM insights, and automation to detect, investigate, and respond faster while ensuring compliance
Free with your book: DRM-free PDF version + access to Packt's next-gen Reader*
Key Features:
- Master essential skills for security monitoring and analytics using Sumo Logic
- Perform advanced threat hunting using Cloud SIEM in Sumo Logic
- Get up to speed quickly and easily with this practical guide for security analysts
- Purchase of the print or Kindle book includes a free PDF eBook
Book Description:
Modernize your security operations with Sumo Logic's Continuous Intelligence Platform that delivers real-time detection, analysis, and response to threats, and find out how it enables security teams to unify monitoring, apply advanced analytics, and strengthen defenses across diverse environments.
Step by step, this guide takes you through configuring Sumo Logic to ingest and visualize log data, running versatile queries, and using Security Apps to meet compliance and audit demands. You'll learn how to take full advantage of Cloud SIEM by creating enriched records, building correlation rules, proactively threat hunting, and tuning signals to reduce false positives.
Beyond traditional SIEM use cases, discover how Sumo Logic supports modern DevSecOps practices that embed security into the development lifecycle without compromising delivery speed and features such as entity inventory, third-party integrations, and best practices that enhance investigation and detection accuracy.
Finally, you'll prepare for the future of security intelligence, where automation, machine learning, and AI-driven insights reshape threat defense, ensuring you're ready to transform your security operations with Sumo Logic Cloud SIEM.
*Email sign-up and proof of purchase required
What You Will Learn:
- Discover why advanced security intelligence matters and how to achieve it with Sumo Logic
- Explore the Sumo Logic platform to perform security monitoring and analytics
- Understand Sumo Logic Cloud SIEM and modernize your security operations
- Leverage Sumo Logic's cloud-native SIEM for threat detection and threat hunting
- Implement best practices and techniques to make full use of what Sumo Logic offers
- Adapt to the future of security intelligence
Who this book is for:
The book covers everything from basics to best practices so that you can make the most of Sumo Logic. It equips you with the practical knowledge that transforms how you develop and implement cybersecurity intelligence solutions.
Table of Contents
- Introduction to Sumo Logic
- The Role of DevSecOps
- Measuring Security Outcomes and Performance
- Setting Up Your First Collector
- Ingesting Data
- Analyzing Data
- Metrics
- Alerting, Monitoring, and Visualizing Data
- Cloud SIEM
- The Insight Engine
- The Automation Service and Playbooks
- Bringing a Security Intelligence Program to Life with Sumo Logic
- Compliance and Reporting
- The Future of Security Intelligence
商品描述(中文翻譯)
建立一個現代化的安全情報計劃,使用 Sumo Logic 結合 DevSecOps 實踐、雲端 SIEM 洞察和自動化,以更快地檢測、調查和回應,同時確保合規性
隨書附贈:無 DRM 的 PDF 版本 + 訪問 Packt 的下一代閱讀器*
主要特點:
- 精通使用 Sumo Logic 進行安全監控和分析的基本技能
- 使用 Sumo Logic 中的雲端 SIEM 進行高級威脅獵捕
- 通過這本實用指南快速輕鬆上手安全分析
- 購買印刷版或 Kindle 書籍可獲得免費 PDF 電子書
書籍描述:
使用 Sumo Logic 的持續智能平台現代化您的安全操作,該平台提供對威脅的實時檢測、分析和回應,並了解它如何使安全團隊統一監控、應用高級分析並加強各種環境中的防禦。
本指南逐步引導您配置 Sumo Logic 以攝取和可視化日誌數據,運行多功能查詢,並使用安全應用程序滿足合規性和審計需求。您將學會如何通過創建豐富的記錄、建立關聯規則、主動進行威脅獵捕以及調整信號以減少誤報,充分利用雲端 SIEM。
除了傳統的 SIEM 用例外,還可以發現 Sumo Logic 如何支持現代 DevSecOps 實踐,將安全嵌入開發生命周期,而不妨礙交付速度和功能,例如實體清單、第三方集成以及增強調查和檢測準確性的最佳實踐。
最後,您將為安全情報的未來做好準備,當自動化、機器學習和 AI 驅動的洞察重塑威脅防禦時,確保您準備好使用 Sumo Logic Cloud SIEM 轉型您的安全操作。
*需要電子郵件註冊和購買證明
您將學到什麼:
- 發現為何高級安全情報至關重要,以及如何使用 Sumo Logic 實現它
- 探索 Sumo Logic 平台以進行安全監控和分析
- 理解 Sumo Logic Cloud SIEM 並現代化您的安全操作
- 利用 Sumo Logic 的雲原生 SIEM 進行威脅檢測和威脅獵捕
- 實施最佳實踐和技術,充分利用 Sumo Logic 提供的功能
- 適應安全情報的未來
本書適合誰:
本書涵蓋從基礎到最佳實踐的所有內容,讓您能夠充分利用 Sumo Logic。它為您提供實用知識,改變您開發和實施網絡安全情報解決方案的方式。
目錄:
- Sumo Logic 簡介
- DevSecOps 的角色
- 測量安全結果和性能
- 設置您的第一個收集器
- 攝取數據
- 分析數據
- 指標
- 警報、監控和可視化數據
- 雲端 SIEM
- 洞察引擎
- 自動化服務和操作手冊
- 使用 Sumo Logic 實現安全情報計劃
- 合規性和報告
- 安全情報的未來