<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-249740660683386337.post4042795302368291958..comments</id><updated>2009-11-17T05:17:11.138-08:00</updated><title type='text'>Comments on Security Watch: More on Security Information Event Management (SIE...</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.okamalo.com/feeds/4042795302368291958/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/4042795302368291958/comments/default'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/more-on-security-information-event.html'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>2</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3064950854682804019</id><published>2009-11-17T05:17:11.138-08:00</published><updated>2009-11-17T05:17:11.138-08:00</updated><title type='text'>I guess, if you rely on vendors for everything, yo...</title><summary type='text'>I guess, if you rely on vendors for everything, you will get lost, the implementation should be done by the guys who knows exactly what is on the network, and it will build up with time. but I have to admit that I did not see many satisfied customers. &lt;br /&gt;I would say it is suitable more for a large SOC, when the money is not a big issue.</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/4042795302368291958/comments/default/3064950854682804019'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/4042795302368291958/comments/default/3064950854682804019'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/more-on-security-information-event.html?showComment=1258463831138#c3064950854682804019' title=''/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='OpenSocialUserId' value='16802593753235346407'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.okamalo.com/2009/11/more-on-security-information-event.html' ref='tag:blogger.com,1999:blog-249740660683386337.post-4042795302368291958' source='http://www.blogger.com/feeds/249740660683386337/posts/default/4042795302368291958' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8657096066636873461</id><published>2009-11-15T15:56:41.210-08:00</published><updated>2009-11-15T15:56:41.210-08:00</updated><title type='text'>I'm not a big fan of SIEM for many some reasons as...</title><summary type='text'>I&amp;#39;m not a big fan of SIEM for many some reasons as follows:&lt;br /&gt;&lt;br /&gt;1. Difficult to determine best threshold level.&lt;br /&gt;&lt;br /&gt;2. Irregular things over the time become regular.&lt;br /&gt;&lt;br /&gt;3. One-Fit-All solution always has limitations.&lt;br /&gt;&lt;br /&gt;4. Not effective in Cloud Computing (SaaS).&lt;br /&gt;&lt;br /&gt;5. Privacy regulations (Yup)in some countries.&lt;br /&gt;&lt;br /&gt;6. Very expensive.</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/4042795302368291958/comments/default/8657096066636873461'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/4042795302368291958/comments/default/8657096066636873461'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/more-on-security-information-event.html?showComment=1258329401210#c8657096066636873461' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.okamalo.com/2009/11/more-on-security-information-event.html' ref='tag:blogger.com,1999:blog-249740660683386337.post-4042795302368291958' source='http://www.blogger.com/feeds/249740660683386337/posts/default/4042795302368291958' type='text/html'/></entry></feed>