Educause Security Discussion mailing list archives

Re: SIEM Solution Recommendation


From: "King, Ronald A." <raking () NSU EDU>
Date: Wed, 26 Oct 2011 11:52:43 -0400

We have a NitroSecurity solution and are pleased with their products.  They
have been very responsive to support requests including adding additional
devices to their list of devices they can receive and correlate events from.


I actually had a Webex with our rep yesterday as they are getting ready to
release 9.0.  The additional alerting, management or device
organization/zoning look to be impressive.

The only negative I would say is there is so much you can do, we just don't
have enough time.  We have only scratched the surface of the solutions
capabilities.

Another bit of info to consider is the their acquisition by McAfee.  

Ronald King
Security Engineer
http://security.nsu.edu


-----Original Message-----
From: The EDUCAUSE Security Constituent Group Listserv
[mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Burton, Abigail F
Sent: Wednesday, October 26, 2011 11:39 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] SIEM Solution Recommendation

Greetings All:

We are in the process of doing dog and pony shows for SIEM solutions and I
would like to get a general perspective of what you have experienced
in-house and those that belong in the out-house :-) 

We are looking at:
ArcSight
RSA
NitroSecurity
NetIQ

to just name a few. Any thoughts would be very helpful. Please feel free to
contact me directly.

Best regards,
--
Abigail Burton
Sr. Information Security Analyst
Enterprise IT Security and Compliance
Baylor College Of Medicine
http://www.bcm.edu
 
Voice: 713.798.4559     afburton () bcm edu
Main:  713.798.3900     itsc () bcm edu
Fax:   713.798.1205
 
This email and any files transmitted with it are confidential and are
intended solely for the use of the individual or entity to which they are
addressed.  
This communication may contain material that is privileged and legally
protected from disclosure by federal law, including the Health Insurance
Portability and Accountability Act (HIPAA).  If you are not the intended
recipient or the person responsible for delivering the email to the intended
recipient, be advised that you have received this email in error and that
any use, dissemination, forwarding, printing, or copying of this email is
strictly prohibited.  
If you have received this email in error, please immediately notify the
sender and delete this message.

Attachment: smime.p7s
Description:


Current thread: