Book DescriptionMaster the CS-MARS system from Cisco with the only book available on this comprehensive security system
Master the benefits of using the CS-MARS system from Cisco from real-world case studies
Learn to sort out false positive alarms and validate true security incidents that need immediate action
Mitigate attacks by automating investigation of incidents
Manage and maintain information security compliance in line with the most recent governmental regulations
Security Monitoring with CS-MARS will help you plan a MARS (Security Monitoring, Analysis, and Response System) deployment and learn the installation tasks and day-to-day tasks a network security professional can expect to face.
Additionally, the book will teach you how to use the advanced features of the product, such as the custom parser and hierarchical deployment models.
Security Monitoring with CS-MARS uses a series of real-world case studies to lead you through all steps of these very important tasks, including:
Proper deployment design and sizing
Basic installation and troubleshooting of the appliances
Forensic analysis of security incidents
Integration of MARS with Cisco Security Manager software
Integration of MARS with Cisco Distributed Threat Mitigation
Integration of third-party vulnerability assessment tools
While security products have gained capabilities and sophistication, security monitoring has not kept pace. Usually, a company finds they need to deploy a different monitoring tool for each specific product. This results in increased staffing costs, but doesn't address the overall need to make sense from the data accumulated from various logging sources. CS-MARS addresses this need, and this book helps those network professionals using it get the most from the system.