Breaking Free from "SIEM" or "Doing Nothing": A Third Option Realized with "Cribl"
In recent years, with the increase in cyberattacks and incidents, companies of all sizes are strongly required to comply with various security guidelines. From the perspective of ISMS, audit compliance, and accountability in the event of an incident, many companies are considering and promoting the development of a system to properly acquire and store logs and investigate them as needed. On the other hand, many companies may have challenges in introducing a log analysis platform, such as "the cost of introducing a large-scale analysis platform is high," "even if logs are stored in storage, they cannot be searched when needed," and "we are unsure whether to maintain the analysis platform in the long term." The product we will introduce today, "Cribl," is a solution that realizes log collection, supplementation, and search in one place. In this video, we will introduce the approach to realizing log storage and investigation with realistic costs and operations, and the design points of a log platform that also looks ahead to further expansion of log utilization in the future. Please watch this video as an opportunity to clarify "where to start."