AUTHOR

Articles by Aaron Jewitt

Videos

Detection engineering — Maximizing analyst efficiency using Cardinality Threshold rules on your alerts

Using Threshold rules to create alerts on your alerts is a great way to maximize your analyst effectiveness without sacrificing visibility. By using these rules, security analysts spend less time investigating false positives.

Videos

Como construir um sandbox de análise de malware com o Elastic Security

Neste post do blog, vamos demonstrar como a equipe de InfoSec da Elastic usa o Elastic Stack com o Elastic Endpoint Security para construir um sandbox de análise de malware totalmente instrumentado usando software gratuito.