How Much Log Data Is Enough?

Published: March 4, 2021, 11 a.m.

b'

All links and images for this episode can be found on CISO Series

https://cisoseries.com/defense-in-depth-how-much-log-data-do-you-need

You\'re a CISO struggling with an influx of log data into your SIEM. What\'s the data you want to keep, and for how long? You want insights, but you also want to keep costs down. Holding onto everything is going to cost a fortune.

Check out\\xa0this post\\xa0for the basis for our conversation on this week\\u2019s episode which features me,\\xa0David Spark\\xa0(@dspark), producer of CISO Series, co-host Steve Zalewski, deputy CISO, Levis, and our guest Naomi Buckwalter (@ineedmorecyber), director of information security and IT at Beam Technologies .

Thanks to our podcast sponsor, TrustMAPP

TrustMAPP

Does your board want to see yet more heat maps? No, they do not. They want to see that security investments align with business goals, and that their costs are objectively justified. TrustMAPP\\u2019s data visualization helps you communicate with your board in a way they can understand \\u2013 and approve.

In this episode

  • So, what is the sweet spot for retaining log files? 90 days? 1 year?
  • Should you categorize according to business criticality?
  • How do you separate the "junk" from the valuable data?

\\xa0

\\xa0

'