Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Enterprise Intrusion Analysis, Part One
Stephen Barish

We all remember the early days of intrusion-detection systems — IDS was supposed to be the silver bullet that ensured the security of our enterprises against every conceivable attack. It was the same premise that the firewall industry and the giant antivirus conglomerates were built around: Buy our product and your worries are over.

Comments Mode:
Enterprise Intrusion Analysis, Part One 2009-04-22
DW (2 replies)
Re: Enterprise Intrusion Analysis, Part One 2009-04-23
Ichinin
ok, and what exactly makes you a good analyst with a CISSP? Is a 4-5 day CISSP bootcamp course better than having worked as a network tech with IDS systems and auditing logs? At the course, do you get to learn to fine tune your analytical skills? Or do you learn to weed out false positives? Anything PRACTICAL at all?

I'm sorry, but certifications are still a load of crap like they always have been. It is the smalles common standard a student has to achieve.

Companies are better of hiring someone with Autism with a nack for IDS systems - or randomly hiring someone named "Roesch" or "Ranum" as a family name.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/infocus/1904/1308#1308
Enterprise Intrusion Analysis, Part One 2009-06-28
Anonymous (1 replies)







 

Privacy Statement
Copyright 2009, SecurityFocus