Just like information overload is bad for people, "Alarm Overload" is bad for Security folks.
All security monitoring tools need to be constantly trained to reduce false positives and constantly updated to adapt to the changing threat landscape
The article provides a few examples:-
http://www.tripwire.com/state-of-security/incident-detection/target-breach-malaysian-flight-mh370-mystery-related
No comments:
Post a Comment