Using AI to Streamline Threat Investigation: A SANS Product Review of QRadar Advisor with Watson

IBM QRadar

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
Security professionals cannot afford to consider solely host- or network-only factors; they need all their data to be more effective. SANS dug deep into IBM QRadar Advisor with Watson to see whether this tool can help security practitioners integrate multiple data sources and correlate between them with context. The review will examine its holistic approach and how QRadar Advisor with Watson handles vulnerabilities, assets and user analytics.

This webinar will be hosted Matt Bromiley, SANS Digital Forensics and Incident Response Instructor and IR instructor. Matt will look at how the tool handles visibility and puts the product through a simulated investigation. 

Matt Bromiley
Digital Forensics and Incident Response Instructor
at SANS

Matt Bromiley is a SANS digital forensics and incident response (IR) instructor, teachingFOR508 Advanced Incident Response, Threat Hunting, and Digital ForensicsandSANS FOR572 Advanced Network Forensics: Threat Hunting, Analysis, and Incident Response. He is also an IR consultant at a global IR and forensic analysis company, combining experience in digital forensics, log analytics, and incident response and management. His skills include disk, database, memory and network forensics; incident management; threat intelligence and network security monitoring. Matt has worked with organizations of all shapes and sizes, from multinational conglomerates to small, regional shops. He is passionate about learning, teaching and working on open source tools.

Event Image
When:  Oct 24, 2019 from 01:00 PM to 02:00 PM (ET)