{"id":9438,"date":"2021-03-24T14:12:44","date_gmt":"2021-03-24T13:12:44","guid":{"rendered":"http:\/\/nfirjun2026.local\/siem-and-soc\/"},"modified":"2024-06-24T14:15:11","modified_gmt":"2024-06-24T12:15:11","slug":"siem-and-soc","status":"publish","type":"post","link":"https:\/\/www.cyber-security-online.nl\/en\/siem-and-soc\/","title":{"rendered":"SIEM and SOC"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"9438\" class=\"elementor elementor-9438 elementor-4773\" data-elementor-post-type=\"post\">\n\t\t\t\t<div class=\"elementor-element elementor-element-6353461 e-flex e-con-boxed e-con e-parent\" data-id=\"6353461\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-d698d45 elementor-widget elementor-widget-text-editor\" data-id=\"d698d45\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>Does your organization have <a href=\"https:\/\/www.cyber-security-online.nl\/securitymonitoring\/\">an IT landscape whose security status you want to<\/a> map? Do you always want to be able to respond as adequately as possible to detected security alerts and threats? Then NFIR offers you a scalable, manageable and affordable solution with its Security Information and Event Management (SIEM) and Security Operation Centre (SOC) implementation. We offer our SIEM as a fully automated solution, where you no longer have to interpret data yourself. The output are reports on which your IT department can take action. Find out on this page how we completely unburden you and what results you will achieve when implementing our SIEM and SOC solution.<\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-69e465b e-con-full e-flex e-con e-parent\" data-id=\"69e465b\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t<div class=\"elementor-element elementor-element-f800fd7 e-con-full e-flex e-con e-child\" data-id=\"f800fd7\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-0e90359 e-con-full e-flex e-con e-child\" data-id=\"0e90359\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-c72bc89 e-con-full e-flex e-con e-child\" data-id=\"c72bc89\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-80b3b69 e-con-full e-flex e-con e-child\" data-id=\"80b3b69\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-dbc282b e-con-full e-flex e-con e-child\" data-id=\"dbc282b\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-8768b1d e-flex e-con-boxed e-con e-parent\" data-id=\"8768b1d\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-e94ddce e-con-full e-flex e-con e-child\" data-id=\"e94ddce\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-1af94e3 elementor-widget elementor-widget-heading\" data-id=\"1af94e3\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">In 5 steps to a resilient online environment<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-b9241ba elementor-widget elementor-widget-text-editor\" data-id=\"b9241ba\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>Currently you already have several devices in your network that store information. Often the existing dashboards of firewalls, for example, are far too complicated to interpret or your employee does not have time for it. Therefore, have the security monitoring specialists of NFIR automatically process this log data on the basis of use cases that we jointly determine. In addition to rule-based processing of log information, NFIR also works with machine learning to detect patterns that may indicate suspicious traffic. By monitoring network activities in this way, you are quickly informed of suspicious activities and can take appropriate action. For a secure and orderly approach, we work with a step-by-step plan.<\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-c960573 elementor-widget elementor-widget-menu-anchor\" data-id=\"c960573\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"menu-anchor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-menu-anchor\" id=\"1usecase\"><\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-2419e4a elementor-widget elementor-widget-heading\" data-id=\"2419e4a\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">1. Identify use cases.  <\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-fc2c5a2 elementor-widget elementor-widget-text-editor\" data-id=\"fc2c5a2\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div>\n<p><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">As a starting point of the <\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">use<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" xml:lang=\"NL-NL\" data-contrast=\"none\">-case development we assume to curb the risk of information being compromised by criminals for monetary gain through extortion. Consider the growing phenomenon of &#8216;<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" xml:lang=\"NL-NL\" data-contrast=\"none\">ransomware<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" xml:lang=\"NL-NL\" data-contrast=\"none\">&#8216; as well as to the ex-filtration of classified information. Criminals bypass detection measures that indicate the building of such an attack. This requires an understanding of how to detect these constructive activities; these activities are captured in the cyber  <\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">security market<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\"> also linked to the &#8216;Cyber Security <\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">Kill<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" xml:lang=\"NL-NL\" data-contrast=\"none\">  Chain&#8217;. See below for a representation of the common steps involved in this chain that can be taken and result in a successful attack. <\/span><span lang=\"NL-NL\" style=\"font-style: inherit; font-weight: inherit;\" xml:lang=\"NL-NL\" data-contrast=\"none\">The steps in this &#8216;chain&#8217; have been worked out as an attack scenario, however, it is also possible that other paths could be used leading to a variety of scenarios. The translation to  <\/span><span lang=\"NL-NL\" style=\"font-style: inherit; font-weight: inherit;\" data-contrast=\"none\">use-<\/span><span lang=\"NL-NL\" style=\"font-style: inherit; font-weight: inherit;\" data-contrast=\"none\">cases <\/span><span lang=\"NL-NL\" style=\"font-style: inherit; font-weight: inherit;\" data-contrast=\"none\">remains<\/span><span lang=\"NL-NL\" style=\"font-style: inherit; font-weight: inherit;\" data-contrast=\"none\"> therefore a constant development that NFIR focuses on based on the constant supply of knowledge from various experiences. <\/span> <span style=\"font-style: inherit; font-weight: inherit;\"> <\/span><\/p>\n<\/div>\n<p><span lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\">As a starting point, a simplification is used with the following attack steps:<\/span> <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-473a3d3 elementor-widget elementor-widget-text-editor\" data-id=\"473a3d3\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<ol>\n<li><span lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\">Discovery of environments, vulnerabilities<\/span><\/li>\n<li><span lang=\"NL-NL\" data-contrast=\"none\">Attempts at <\/span><span lang=\"NL-NL\" data-contrast=\"none\">account abuse<\/span><span lang=\"NL-NL\" data-contrast=\"none\"> and\/or modification of rights <\/span> <\/li>\n<li><span lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\">Installing\/configuring malware<\/span><\/li>\n<li><span lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\">Communication appropriate to attacks <\/span><\/li>\n<li><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">Catch-<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">all<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">&#8216;, for analysis<\/span><span style=\"font-size: 16px;\"> <\/span><\/li>\n<\/ol>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a924ec2 elementor-widget elementor-widget-menu-anchor\" data-id=\"a924ec2\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"menu-anchor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-menu-anchor\" id=\"2-design\"><\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-46158d5 elementor-widget elementor-widget-heading\" data-id=\"46158d5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">2. Design  <\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0d8825c elementor-widget elementor-widget-text-editor\" data-id=\"0d8825c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div>\n<p><span lang=\"NL-NL\" style=\"font-size: 16px;\" xml:lang=\"NL-NL\" data-contrast=\"none\">In this step, we work out the connection of the log sources, based on a design. The log sources should be collected through the network in an integer manner. Secure configurations are therefore used when connecting.<\/span><\/p>\n<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-8804878 elementor-widget elementor-widget-menu-anchor\" data-id=\"8804878\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"menu-anchor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-menu-anchor\" id=\"3-implementation\"><\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-9b39e03 elementor-widget elementor-widget-heading\" data-id=\"9b39e03\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">3. Implementation  <\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-778218c elementor-widget elementor-widget-text-editor\" data-id=\"778218c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">After the design is established, implementation is provided including entry testing and aggregation of <\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">logging<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" xml:lang=\"NL-NL\" data-contrast=\"none\">. The result is a  <\/span><\/div>\n<div>\n<p><span lang=\"NL-NL\" data-contrast=\"none\">working environment including generating insight based on the <\/span><span lang=\"NL-NL\" data-contrast=\"none\">use-<\/span><span lang=\"NL-NL\" data-contrast=\"none\">cases.<\/span> <\/p>\n<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-945196f elementor-widget elementor-widget-menu-anchor\" data-id=\"945196f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"menu-anchor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-menu-anchor\" id=\"4-monitors\"><\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-b99a1eb elementor-widget elementor-widget-heading\" data-id=\"b99a1eb\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">4. Monitoring\/Delivery.  <\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-dea907e elementor-widget elementor-widget-text-editor\" data-id=\"dea907e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">Monitoring and tuning the <\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">use<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" xml:lang=\"NL-NL\" data-contrast=\"none\">-cases including reporting findings on a monthly basis for optimization. In this phase, the main focus is on optimizing the  <\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">use-<\/span><span lang=\"NL-NL\" style=\"font-size: 16px;\" data-contrast=\"none\">cases. <\/span> <span style=\"font-size: 16px;\"> <\/span><\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-fe2e8d3 elementor-widget elementor-widget-menu-anchor\" data-id=\"fe2e8d3\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"menu-anchor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-menu-anchor\" id=\"5-monthservice\"><\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-e3d5df8 elementor-widget elementor-widget-heading\" data-id=\"e3d5df8\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">5. Monthly service  <\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-95c5591 elementor-widget elementor-widget-text-editor\" data-id=\"95c5591\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div>\n<p><span lang=\"NL-NL\" data-contrast=\"none\">After realization of the initial <\/span><span lang=\"NL-NL\" data-contrast=\"none\">use-<\/span><span lang=\"NL-NL\" data-contrast=\"none\">cases, a monthly report is provided based on the<\/span><span lang=\"NL-NL\" data-contrast=\"none\"> based on the developments within your organization. <\/span><span lang=\"NL-NL\" data-contrast=\"none\">Various actions can follow from this report. <\/span><span lang=\"NL-NL\" data-contrast=\"none\">Think<\/span><span lang=\"NL-NL\" data-contrast=\"none\"> For example<\/span><span lang=\"NL-NL\" data-contrast=\"none\"> introducing new or adjusted logsources for further optimization or a further detailing of the use cases. <\/span><span lang=\"NL-NL\" data-contrast=\"none\">use-<\/span><span lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\">cases. These activities are included based on the entered scope and prioritized in consultation with  <\/span><span lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\">u.  <\/span><span lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\">On the NFIR side, specialist expertise is included on a monthly basis. In addition, consultations are held on the prioritization and activities required by a  <\/span><span lang=\"NL-NL\" data-contrast=\"none\">service manager<\/span><span lang=\"NL-NL\" data-contrast=\"none\">.<\/span><\/p>\n<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-2654161 e-flex e-con-boxed e-con e-parent\" data-id=\"2654161\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-1bac552 elementor-widget elementor-widget-heading\" data-id=\"1bac552\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">What results are achieved with our SIEM\/SOC solution?<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-7a707da elementor-widget elementor-widget-text-editor\" data-id=\"7a707da\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span data-contrast=\"none\">The end result includes:<\/span><span data-ccp-props=\"{\"> <\/span><\/p>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"3\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Continuous security monitoring of your service scope network, servers, laptops, PCs and firewall  <\/span><span data-ccp-props=\"{\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"3\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Immediate alert in case of suspicious or malicious traffic and after analysis act immediately with appropriate measures<\/span><span data-ccp-props=\"{\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"3\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Hackers are &#8220;spotted&#8221; immediately  <\/span><span data-ccp-props=\"{\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"3\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Malware is identified before it has been able to nest and spread in your network, to your customers or even further<\/span><span data-contrast=\"none\">.<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"3\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Monitoring for intentional or unintentional unauthorized use of your network (by your own employees, external parties or organizations allowed on the network).<\/span><span data-ccp-props=\"{\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"3\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">In the case of Data <\/span><span data-contrast=\"none\">breaches<\/span><span data-contrast=\"none\"> the relevant IP traffic is digitally recorded, so that in the event of an investigation by the personal data authority, you will always have the requested information.<\/span><span data-ccp-props=\"{\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"3\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Malicious<\/span><span data-contrast=\"none\"> actions are stopped on all <\/span><span data-contrast=\"none\">endpoints<\/span><span data-contrast=\"none\">. Monthly reporting, monthly meetings with service manager<\/span><span data-contrast=\"none\">.<\/span><span data-ccp-props=\"{\"> <\/span><\/li>\n<\/ul>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-236246d e-con-full e-flex e-con e-parent\" data-id=\"236246d\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t<div class=\"elementor-element elementor-element-36ca8c6 e-con-full e-flex e-con e-child\" data-id=\"36ca8c6\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-13396e0 elementor-cta--skin-classic elementor-animated-content elementor-bg-transform elementor-bg-transform-zoom-in elementor-widget elementor-widget-call-to-action\" data-id=\"13396e0\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"call-to-action.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-cta\">\n\t\t\t\t\t<div class=\"elementor-cta__bg-wrapper\">\n\t\t\t\t<div class=\"elementor-cta__bg elementor-bg\" style=\"background-image: url(https:\/\/www.cyber-security-online.nl\/wp-content\/uploads\/2019\/08\/Security-Monitoring_LQ-1024x348.jpg);\" role=\"img\" aria-label=\"security monitoring , security monitoring , cybermonitor , cybersecurity , safeharbour , security monitoring\"><\/div>\n\t\t\t\t<div class=\"elementor-cta__bg-overlay\"><\/div>\n\t\t\t<\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-cta__content\">\n\t\t\t\t\n\t\t\t\t\t\t\t\t\t<h2 class=\"elementor-cta__title elementor-cta__content-item elementor-content-item\">\n\t\t\t\t\t\tHave Security Monitoring implemented?\t\t\t\t\t<\/h2>\n\t\t\t\t\n\t\t\t\t\t\t\t\t\t<div class=\"elementor-cta__description elementor-cta__content-item elementor-content-item\">\n\t\t\t\t\t\t<p>Security Information and Event Management (SIEM) and Security Operation Centre (SOC) processed together in NFIR Insights, <br \/>our fully automated solution where you no longer interpret data yourself.<\/p>\n\t\t\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\t\t\t\t\t<div class=\"elementor-cta__button-wrapper elementor-cta__content-item elementor-content-item \">\n\t\t\t\t\t<a class=\"elementor-cta__button elementor-button elementor-size-md\" href=\"https:\/\/www.cyber-security-online.nl\/en\/contact\/?your-subject=Security%20monitoring\">\n\t\t\t\t\t\tGet in touch with us\t\t\t\t\t<\/a>\n\t\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a63f172 elementor-widget elementor-widget-spacer\" data-id=\"a63f172\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"spacer.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-spacer\">\n\t\t\t<div class=\"elementor-spacer-inner\"><\/div>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a0080c4 elementor-widget elementor-widget-accordion\" data-id=\"a0080c4\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"accordion.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-accordion\">\n\t\t\t\t\t\t\t<div class=\"elementor-accordion-item\">\n\t\t\t\t\t<h3 id=\"elementor-tab-title-1671\" class=\"elementor-tab-title\" data-tab=\"1\" role=\"button\" aria-controls=\"elementor-tab-content-1671\" aria-expanded=\"false\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon elementor-accordion-icon-left\" aria-hidden=\"true\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-closed\"><i class=\"fas fa-plus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-opened\"><i class=\"fas fa-minus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-accordion-title\" tabindex=\"0\">What is a SIEM (Security Information and Event Management)<\/a>\n\t\t\t\t\t<\/h3>\n\t\t\t\t\t<div id=\"elementor-tab-content-1671\" class=\"elementor-tab-content elementor-clearfix\" data-tab=\"1\" role=\"region\" aria-labelledby=\"elementor-tab-title-1671\"><p>SIEM is a real-time operating system to manage security incidents. These systems ensure that security intelligence is concentrated at one organization and each security professional can respond immediately to any incidents. <span style=\"font-style: inherit; font-weight: inherit;\">The integrated SIEM (Security Information and Event<br \/>Management) software help security professionals manage threats and incidents, ensuring a safer work environment.<\/span><span style=\"font-style: inherit; font-weight: inherit;\">SIEM is primarily used to analyze and prevent network and security incidents. Thanks to the monitoring of log files, the system offers a complete overview of everything that happens in your network.<\/span><\/p>\n<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-accordion-item\">\n\t\t\t\t\t<h3 id=\"elementor-tab-title-1672\" class=\"elementor-tab-title\" data-tab=\"2\" role=\"button\" aria-controls=\"elementor-tab-content-1672\" aria-expanded=\"false\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon elementor-accordion-icon-left\" aria-hidden=\"true\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-closed\"><i class=\"fas fa-plus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-opened\"><i class=\"fas fa-minus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-accordion-title\" tabindex=\"0\">What is a SOC (Security Operation Centre)?<\/a>\n\t\t\t\t\t<\/h3>\n\t\t\t\t\t<div id=\"elementor-tab-content-1672\" class=\"elementor-tab-content elementor-clearfix\" data-tab=\"2\" role=\"region\" aria-labelledby=\"elementor-tab-title-1672\"><p> <span class=\"TextRun SCXW166746678 BCX0\" lang=\"NL-NL\" data-contrast=\"auto\"><br \/>\n  <span class=\"NormalTextRun SCXW166746678 BCX0\"> A SOC (Security <\/span><br \/>\n<\/span><span class=\"TextRun SCXW166746678 BCX0\" lang=\"NL-NL\" data-contrast=\"auto\"><br \/>\n  <span class=\"SpellingError SCXW166746678 BCX0\">Operation<\/span><br \/>\n<\/span><span class=\"TextRun SCXW166746678 BCX0\" lang=\"NL-NL\" data-contrast=\"auto\"><br \/>\n  <span class=\"NormalTextRun SCXW166746678 BCX0\"> Centre) is a <\/span><br \/>\n<\/span><span class=\"TextRun SCXW166746678 BCX0\" lang=\"NL-NL\" data-contrast=\"auto\"><br \/>\n  <span class=\"ContextualSpellingAndGrammarError SCXW166746678 BCX0\">security center<\/span><br \/>\n<\/span><span class=\"TextRun SCXW166746678 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW166746678 BCX0\">  and collection point from all security systems in a company. This collective information is then used for analysis and to take targeted actions to prevent a security incident.  <\/span><\/span><span class=\"EOP SCXW166746678 BCX0\" data-ccp-props=\"{\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/p>\n<p><span data-contrast=\"auto\">In the event of an outside cyber attack, information and analysis about the impact, effectiveness and likelihood of recurrence are obviously important. With a SOC, you are able to promote consistency and information sharing among all parties involved.<\/span><span data-ccp-props=\"{\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/p>\n<p><span data-contrast=\"auto\">NFIR helps organizations get specialized security knowledge. We are your security partner for implementation and management of incident management systems.<\/span><span data-ccp-props=\"{\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/p><\/p>\n<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-accordion-item\">\n\t\t\t\t\t<h3 id=\"elementor-tab-title-1673\" class=\"elementor-tab-title\" data-tab=\"3\" role=\"button\" aria-controls=\"elementor-tab-content-1673\" aria-expanded=\"false\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon elementor-accordion-icon-left\" aria-hidden=\"true\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-closed\"><i class=\"fas fa-plus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-opened\"><i class=\"fas fa-minus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-accordion-title\" tabindex=\"0\">Does every organization benefit from SIEM\/SOC?<\/a>\n\t\t\t\t\t<\/h3>\n\t\t\t\t\t<div id=\"elementor-tab-content-1673\" class=\"elementor-tab-content elementor-clearfix\" data-tab=\"3\" role=\"region\" aria-labelledby=\"elementor-tab-title-1673\"><p><span class=\"TextRun SCXW30392920 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW30392920 BCX0\">NFIR\u2019s vision on security monitoring is that this service should no longer be reserved for the largest companies in the Netherlands with a lot of security knowledge. For this reason, NFIR\u2019s security monitoring service offers a very affordable and easy to interpret solution for SMEs (companies with 50 to 500 employees).<\/span><\/span><\/p>\n<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-accordion-item\">\n\t\t\t\t\t<h3 id=\"elementor-tab-title-1674\" class=\"elementor-tab-title\" data-tab=\"4\" role=\"button\" aria-controls=\"elementor-tab-content-1674\" aria-expanded=\"false\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon elementor-accordion-icon-left\" aria-hidden=\"true\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-closed\"><i class=\"fas fa-plus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-opened\"><i class=\"fas fa-minus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-accordion-title\" tabindex=\"0\">  Why is it important to have SIEM\/SOC implemented?<\/a>\n\t\t\t\t\t<\/h3>\n\t\t\t\t\t<div id=\"elementor-tab-content-1674\" class=\"elementor-tab-content elementor-clearfix\" data-tab=\"4\" role=\"region\" aria-labelledby=\"elementor-tab-title-1674\"><p><span class=\"TextRun BCX0 SCXW107557994\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun BCX0 SCXW107557994\">Under the GDPR legislation, the government requires you to take appropriate measures to protect personal information where you are responsible or processor. Protecting starts with monitoring network activities.<\/span><\/span><\/p>\n<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-accordion-item\">\n\t\t\t\t\t<h3 id=\"elementor-tab-title-1675\" class=\"elementor-tab-title\" data-tab=\"5\" role=\"button\" aria-controls=\"elementor-tab-content-1675\" aria-expanded=\"false\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon elementor-accordion-icon-left\" aria-hidden=\"true\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-closed\"><i class=\"fas fa-plus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-opened\"><i class=\"fas fa-minus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-accordion-title\" tabindex=\"0\">As a company or organization, should I interpret the output of the monitoring myself?<\/a>\n\t\t\t\t\t<\/h3>\n\t\t\t\t\t<div id=\"elementor-tab-content-1675\" class=\"elementor-tab-content elementor-clearfix\" data-tab=\"5\" role=\"region\" aria-labelledby=\"elementor-tab-title-1675\"><p><span class=\"TextRun SCXW250641410 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW250641410 BCX0\">No,  <\/span><\/span><span class=\"TextRun SCXW250641410 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW250641410 BCX0\">We offer our SIEM as a fully automated solution, where you no longer have to interpret data yourself. The outputs are notifications that your IT department can take action on  <\/span><\/span><span class=\"TextRun SCXW250641410 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"SpellingError SCXW250641410 BCX0\">take.<\/span><\/span><span class=\"TextRun SCXW250641410 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"SpellingError SCXW250641410 BCX0\">U<\/span><\/span><span class=\"TextRun SCXW250641410 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW250641410 BCX0\">  receives critical notifications directly via email or text message and you can take action on them yourself. If desired, our  <\/span><\/span><a class=\"Hyperlink SCXW250641410 BCX0\" href=\"https:\/\/www.cyber-security-online.nl\/en\/contact\/\" target=\"_blank\" rel=\"noreferrer noopener\"><span class=\"TextRun Underlined SCXW250641410 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW250641410 BCX0\" data-ccp-charstyle=\"Hyperlink\">Security Monitoring<\/span><\/span><\/a><span class=\"TextRun SCXW250641410 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW250641410 BCX0\">  specialists support your organization in taking these actions. In addition, we can also relieve you of your worries when interpreting (more complex) reports. If things really go wrong, we can support you at any location with our  <\/span><\/span><a class=\"Hyperlink SCXW250641410 BCX0\" href=\"https:\/\/www.cyber-security-online.nl\/en\/incident-response-specialist-24-7-availability\/\" target=\"_blank\" rel=\"noreferrer noopener\"><br \/>\n  <span class=\"TextRun Underlined SCXW250641410 BCX0\" lang=\"NL-NL\" data-contrast=\"none\"><br \/>\n    <span class=\"NormalTextRun SCXW250641410 BCX0\" data-ccp-charstyle=\"Hyperlink\">Incident Response teams<\/span><br \/>\n  <\/span><br \/>\n<\/a><span class=\"TextRun SCXW250641410 BCX0\" lang=\"NL-NL\" data-contrast=\"none\"><br \/>\n  <span class=\"NormalTextRun SCXW250641410 BCX0\">.<\/span><br \/>\n<\/span><span class=\"EOP SCXW250641410 BCX0\" data-ccp-props=\"{\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/p>\n<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-accordion-item\">\n\t\t\t\t\t<h3 id=\"elementor-tab-title-1676\" class=\"elementor-tab-title\" data-tab=\"6\" role=\"button\" aria-controls=\"elementor-tab-content-1676\" aria-expanded=\"false\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon elementor-accordion-icon-left\" aria-hidden=\"true\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-closed\"><i class=\"fas fa-plus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-opened\"><i class=\"fas fa-minus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-accordion-title\" tabindex=\"0\">What part of the network is being monitored?  <\/a>\n\t\t\t\t\t<\/h3>\n\t\t\t\t\t<div id=\"elementor-tab-content-1676\" class=\"elementor-tab-content elementor-clearfix\" data-tab=\"6\" role=\"region\" aria-labelledby=\"elementor-tab-title-1676\"><p><span class=\"TextRun SCXW182341257 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW182341257 BCX0\">Together with you, the scope of the monitoring is determined and<\/span><\/span><span class=\"TextRun SCXW182341257 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW182341257 BCX0\"> <\/span><\/span><span class=\"TextRun SCXW182341257 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"SpellingError SCXW182341257 BCX0\">use<\/span><\/span><span class=\"TextRun SCXW182341257 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW182341257 BCX0\">  cases identified. To the of  <\/span><\/span><span class=\"TextRun SCXW182341257 BCX0\" lang=\"NL-NL\" data-contrast=\"none\"><br \/>\n  <span class=\"SpellingError SCXW182341257 BCX0\">use<\/span><br \/>\n<\/span><span class=\"TextRun SCXW182341257 BCX0\" lang=\"NL-NL\" data-contrast=\"none\"><br \/>\n  <span class=\"NormalTextRun SCXW182341257 BCX0\"> cases, log sources are connected. <\/span><br \/>\n<\/span> <span class=\"TextRun SCXW182341257 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW182341257 BCX0\"> <\/span><\/span><\/p>\n<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-accordion-item\">\n\t\t\t\t\t<h3 id=\"elementor-tab-title-1677\" class=\"elementor-tab-title\" data-tab=\"7\" role=\"button\" aria-controls=\"elementor-tab-content-1677\" aria-expanded=\"false\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon elementor-accordion-icon-left\" aria-hidden=\"true\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-closed\"><i class=\"fas fa-plus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-opened\"><i class=\"fas fa-minus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-accordion-title\" tabindex=\"0\">What results does SIEM provide?  <\/a>\n\t\t\t\t\t<\/h3>\n\t\t\t\t\t<div id=\"elementor-tab-content-1677\" class=\"elementor-tab-content elementor-clearfix\" data-tab=\"7\" role=\"region\" aria-labelledby=\"elementor-tab-title-1677\"><p><span data-contrast=\"none\">The end result includes:<\/span><span data-ccp-props=\"{\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/p>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"1\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Continuous security monitoring of your service scope network, servers, laptops, PCs and firewall  <\/span><span data-ccp-props=\"{\"134233117\":true,\"134233118\":true,\"134233279\":true,\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"1\" aria-setsize=\"-1\" data-aria-posinset=\"2\" data-aria-level=\"1\"><span data-contrast=\"none\">Immediate alert in case of suspicious or malicious traffic and after analysis act immediately with appropriate measures<\/span><span data-ccp-props=\"{\"134233117\":true,\"134233118\":true,\"134233279\":true,\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"1\" aria-setsize=\"-1\" data-aria-posinset=\"3\" data-aria-level=\"1\"><span data-contrast=\"none\">Hackers are &#8220;spotted&#8221; immediately  <\/span><span data-ccp-props=\"{\"134233117\":true,\"134233118\":true,\"134233279\":true,\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"1\" aria-setsize=\"-1\" data-aria-posinset=\"4\" data-aria-level=\"1\"><span data-contrast=\"none\">Malware is identified before it has been able to nest and spread in your network, to your customers or even further.<\/span><span data-ccp-props=\"{\"134233117\":true,\"134233118\":true,\"134233279\":true,\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"1\" aria-setsize=\"-1\" data-aria-posinset=\"5\" data-aria-level=\"1\"><span data-contrast=\"none\">Monitoring of intentional or unintentional unauthorized use of your network (by your own employees, external parties or organizations allowed on the network.<\/span><span data-ccp-props=\"{\"134233117\":true,\"134233118\":true,\"134233279\":true,\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/li>\n<\/ul>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"1\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">In the case of Data <\/span><span data-contrast=\"none\">breaches<\/span><span data-contrast=\"none\"> the relevant IP traffic is digitally recorded, so that in the event of an investigation by the personal data authority, you will always have the requested information.<\/span><span data-ccp-props=\"{\"134233117\":true,\"134233118\":true,\"134233279\":true,\"201341983\":0,\"335559739\":160,\"335559740\":259}\"> <\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"1\" aria-setsize=\"-1\" data-aria-posinset=\"2\" data-aria-level=\"1\"><span data-contrast=\"none\">Malicious<\/span><span data-contrast=\"none\"> actions are stopped on all <\/span><span data-contrast=\"none\">endpoints<\/span><span data-contrast=\"none\">. Monthly reporting, monthly<\/span><\/li>\n<\/ul>\n<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-accordion-item\">\n\t\t\t\t\t<h3 id=\"elementor-tab-title-1678\" class=\"elementor-tab-title\" data-tab=\"8\" role=\"button\" aria-controls=\"elementor-tab-content-1678\" aria-expanded=\"false\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon elementor-accordion-icon-left\" aria-hidden=\"true\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-closed\"><i class=\"fas fa-plus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-opened\"><i class=\"fas fa-minus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-accordion-title\" tabindex=\"0\">What phases does the SIEM process consist of?  <\/a>\n\t\t\t\t\t<\/h3>\n\t\t\t\t\t<div id=\"elementor-tab-content-1678\" class=\"elementor-tab-content elementor-clearfix\" data-tab=\"8\" role=\"region\" aria-labelledby=\"elementor-tab-title-1678\"><p>The SIEM process consists of 5 phases:<\/p>\n<ol>\n<li data-leveltext=\"%1.\" data-font=\"Calibri\" data-listid=\"2\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">U<\/span><span data-contrast=\"none\">se<\/span><span data-contrast=\"none\"> identify cases<\/span><\/li>\n<li data-leveltext=\"%1.\" data-font=\"Calibri\" data-listid=\"2\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Design<\/span><\/li>\n<li data-leveltext=\"%1.\" data-font=\"Calibri\" data-listid=\"2\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Implementation<\/span><\/li>\n<li data-leveltext=\"%1.\" data-font=\"Calibri\" data-listid=\"2\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Monitoring\/Delivery<\/span><span data-ccp-props=\"{\"> <\/span><\/li>\n<li data-leveltext=\"%1.\" data-font=\"Calibri\" data-listid=\"2\" aria-setsize=\"-1\" data-aria-posinset=\"1\" data-aria-level=\"1\">Monthly service<\/li>\n<\/ol>\n<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-accordion-item\">\n\t\t\t\t\t<h3 id=\"elementor-tab-title-1679\" class=\"elementor-tab-title\" data-tab=\"9\" role=\"button\" aria-controls=\"elementor-tab-content-1679\" aria-expanded=\"false\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon elementor-accordion-icon-left\" aria-hidden=\"true\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-closed\"><i class=\"fas fa-plus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t<span class=\"elementor-accordion-icon-opened\"><i class=\"fas fa-minus\"><\/i><\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-accordion-title\" tabindex=\"0\">I have a firewall installed. Is that enough?<\/a>\n\t\t\t\t\t<\/h3>\n\t\t\t\t\t<div id=\"elementor-tab-content-1679\" class=\"elementor-tab-content elementor-clearfix\" data-tab=\"9\" role=\"region\" aria-labelledby=\"elementor-tab-title-1679\"><p><span class=\"TextRun SCXW231687145 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW231687145 BCX0\">A firewall only indicates that a risk has been detected. For your organization, it is important to  <\/span><\/span><span class=\"TextRun SCXW231687145 BCX0\" lang=\"NL-NL\" xml:lang=\"NL-NL\" data-contrast=\"none\"><span class=\"NormalTextRun SCXW231687145 BCX0\">Contain the risk. In doing so, it is important to interpret the signals correctly,<\/span><\/span><span class=\"EOP SCXW231687145 BCX0\" data-ccp-props=\"{\"134233279\":true,\"201341983\":0,\"335559738\":120,\"335559739\":120,\"335559740\":276}\">  so you can take action. Firewall dashboards are often very complex and difficult to interpret. We work with clear dashboards and support you in interpreting them and indicate what action is required from you to eliminate the risk.  <\/span><\/p>\n<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-1836f29 elementor-widget elementor-widget-html\" data-id=\"1836f29\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<script type=\"application\/ld+json\">{\"@context\":\"https:\/\/schema.org\",\"@type\":\"FAQPage\",\"mainEntity\":[{\"@type\":\"Question\",\"name\":\"Wat is Security Monitoring?\",\"acceptedAnswer\":[{\"@type\":\"Answer\",\"text\":\"Security monitoring houdt in het monitoren van het netwerkverkeer en analyseren van logbestanden om daarmee dreigingen, kwetsbaarheden en cyberaanvallen vroegtijdig te kunnen ontdekken. NFIR biedt een volledig geautomatiseerde oplossing, zodat u zelf geen data meer behoeft te interpreteren. Via een dashboard kan u alle meldingen inzien en actie ondernemen indien nodig. \"}]},{\"@type\":\"Question\",\"name\":\"Hoe wordt het netwerkverkeer gemonitord?\",\"acceptedAnswer\":[{\"@type\":\"Answer\",\"text\":\"NFIR Insights, onze security monitoringsdienst, analyseert alle data van de aangesloten detectie bronnen en toont die verwerkte data in een gemakkelijk te interpreteren dashboard-omgeving. De security-monitoring specialisten van NFIR verwerken de ontvangen log-gegevens geautomatiseerd op basis van use-cases, die samen met de klant worden bepaald. Bij het monitoren van netwerkverkeer komt alle informatie, inclusief meldingen omtrent een verdachte activiteit, in een dashboard terecht. Zo bent u snel op de hoogte van activiteiten op uw netwerk en kunt u adequaat ingrijpen bij verdachte activiteiten. \"}]},{\"@type\":\"Question\",\"name\":\"Hoe kan security monitoring helpen bij de beveiliging van mijn netwerk?\",\"acceptedAnswer\":[{\"@type\":\"Answer\",\"text\":\"Het monitoren van uw netwerk kan helpen bij het vroegtijdig ontdekken van kwaadaardig gedrag. Als u uw netwerk wilt beschermen, kunt u het beste beginnen met het monitoren van uw netwerk. U krijgt inzicht in uw netwerk, u bent snel op de hoogte van verdachte activiteiten en u kunt adequaat ingrijpen als een verdachte situatie zich voordoet. \"}]},{\"@type\":\"Question\",\"name\":\"Op basis waarvan ontwikkelt NFIR haar monitoringsdienst?\",\"acceptedAnswer\":[{\"@type\":\"Answer\",\"text\":\"De security-monitoring specialisten van NFIR zijn elke week bezig met de ontwikkeling van het Insights platform. Zij verwerken de informatie afkomstig van apparaten in uw netwerk en analyseren deze met behulp van machinelearning en beproefde detectieregels.\"}]},{\"@type\":\"Question\",\"name\":\"Uit welke bronnen haalt NFIR de informatie voor het dashboard?\",\"acceptedAnswer\":[{\"@type\":\"Answer\",\"text\":\"Diverse detectiebronnen kunnen worden aangesloten op NFIR Insights. U kunt hierbij denken aan IDS sensoren, firewall logs, vulnerabilitiy scanners (extern\/intern), endpoint oplossingen en dergelijke. \"}]}]}<\/script>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>Does your organization have an IT landscape whose security status you want to map? Do you always want to be able to respond as adequately [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":2667,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_seopress_titles_title":"SIEM and SOC | Managed Detection and Response (MDR) | nfir - cyber security specialist","_seopress_titles_desc":"NFIR's SIEM is a fully automated solution, eliminating the need for you to interpret data yourself. The outputs are reports on which your IT department can take action. The purpose of NFIR is to reduce the risk of information being compromised by criminals for monetary gain through extortion. Consider the growing phenomenon of \"ransomware\" and the ex-filtration of classified information. These activities in the cyber security market are also known as the \"Cyber Security Kill Chain.\"","_seopress_robots_index":"","_seopress_robots_follow":"","_seopress_robots_imageindex":"","_seopress_robots_snippet":"","_seopress_robots_primary_cat":"none","_seopress_robots_breadcrumbs":"","_seopress_robots_freeze_modified_date":"","_seopress_robots_custom_modified_date":"","_seopress_robots_canonical":"","_seopress_social_fb_title":"","_seopress_social_fb_desc":"","_seopress_social_fb_img":"","_seopress_social_fb_img_attachment_id":0,"_seopress_social_fb_img_width":0,"_seopress_social_fb_img_height":0,"_seopress_social_twitter_title":"","_seopress_social_twitter_desc":"","_seopress_social_twitter_img":"","_seopress_social_twitter_img_attachment_id":0,"_seopress_social_twitter_img_width":0,"_seopress_social_twitter_img_height":0,"_seopress_redirections_value":"","_seopress_redirections_enabled":"","_seopress_redirections_enabled_regex":"","_seopress_redirections_logged_status":"both","_seopress_redirections_param":"","_seopress_redirections_type":301,"_seopress_analysis_target_kw":"","_seopress_news_disabled":"","_seopress_video_disabled":"","_seopress_video":[],"_seopress_pro_schemas_manual":[],"_seopress_pro_rich_snippets_disable_all":"","_seopress_pro_rich_snippets_disable":[],"_seopress_pro_schemas":[],"site-sidebar-layout":"default","site-content-layout":"default","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"default","adv-header-id-meta":"","stick-header-meta":"default","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[15],"tags":[],"class_list":["post-9438","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/posts\/9438","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/comments?post=9438"}],"version-history":[{"count":0,"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/posts\/9438\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/media\/2667"}],"wp:attachment":[{"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/media?parent=9438"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/categories?post=9438"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cyber-security-online.nl\/en\/wp-json\/wp\/v2\/tags?post=9438"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}