

EP190 Unraveling the Security Data Fabric: Need, Benefits, and Futures
9 snips Sep 16, 2024
Josh Liburdi, a Staff Security Engineer at Brex, dives deep into the concept of security data fabric and its transformative impact on security data management. He explains how this innovative technology shifts organizations from outdated syslog methods to modern data pipelines, improving log quality for threat detection. Josh discusses the importance of vendor selection and balancing costs with security needs, alongside the potential future of decoupled Security Information Management systems and the integration of open-source solutions.
AI Snips
Chapters
Transcript
Episode notes
Security Data Fabric Definition
- Security data fabric is a platform built on top of security data pipelines.
- Pipelines move data while the fabric adds features like enrichment and normalization.
Modern vs. Classic Data Needs
- Modern security data needs differ from the syslog era due to the addition of a fabric/pipeline component.
- This component sits between data sources and destinations, raising questions about its value.
Focus on Data Quality
- Focus on improving log quality for better threat hunting and incident response.
- High-quality normalized data significantly improves detection quality and rule writing.