Logsign - SIEM/threat hunting solution that makes your life easy
Use Cases and Deployment Scope
I am using the solution for Log Management, Correlation, Alerting, Incident Handling, and Compliance. It makes it possible to hunt for threats, be more proactive, and assure that I do not miss any critical and security events. Before we were struggling with events/incident searching performance, with Logsign it is very easy to make reports for the management.
Pros
- Google like search capabilities
- Very easy to create correlation/cross correlation rules
- In-house Rules and Behavioral lists
- Easy to update/upgrade the whole solution
Likelihood to Recommend
Logsign SIEM is well suited for organizations that need quick deployment, and do not need very skilled specialists, everything is easy and intuitive. And with the new license model, it is a very affordable solution. It has everything that modern SOC needs nowadays, automated/semi-automated responses. There are also many plugins for the log source integration, possibilities to create custom your own plugin/logic
