Find White Papers
Home
About Us
List Your Papers
    
> ArcSight > Extracting Value from Enterprise Log Data

Extracting Value from Enterprise Log Data

White Paper Published By: ArcSight

This whitepaper will outline the drivers for log management as well as their underlying challenges and drive towards a common set of requirements for evaluation of log management tools.



Tags : 
log management, logs, siem, arcsight logger, event logs, security, compliance, regulatory audits

ArcSight
Published:  Mar 04, 2009
Type:  White Paper
Length:  9 pages

Whitepaper
TArcSight Logger
Extracting Value from Enterprise Log Data
Research 002-103108-02
ArcSight, Inc. Corporate Headquarters: 1-888-415-ARST 5 Results Way, Cupertino, CA 95014, USA EMEA Headquarters: +44 870 351 6510 www.arcsight.com info@arcsight.com Asia Pac Headquarters: 852 2166 8302Whitepaper: ArcSight Logger - Extracting Value from Enterprise Log Data
Executive Overview Consumers of Log DataCompliance, forensics, security and IT operations teams Across the enterprise, there are a growing number of have long recognized the value that log data can deliver. An constituents that can benefit from log data.effective log management solution can help organizations in several ways: . Audit and Compliance Groups recognize the value of log data in monitoring adherence to compliance controls and in simplifying, automating and . Contain the growing cost of regulatory audits through streamlining costly compliance initiatives. Manual automation efforts and homegrown log infrastructure may . Reduce expenditure on point security and compliance provide a patch solution for initial audits, but do little tools through comprehensive monitoring across all to deliver long-term cost reductions in the face of users and systems extended regulatory data retention and stringent audit reporting requirements. There is a clear need . Cut data center costs through consolidation of siloed for a comprehensive log management solution that homegrown log infrastructure can provide efficient collection and low-cost, long-. Improve efficiency of forensics investigations with term storage of audit-quality log data from regulated high-performance log analysis sources, ranging from networking equipment and . Increase troubleshooting turnaround times and security devices to databases and homegrown adherence to SLA's applications. . Security Teams can leverage rapid access to log Despite these tangible benefits, organizations continue data for security threat detection, investigation follow to struggle with even the basic steps of log management through and development of remediation plans. To such as collection and analysis. This whitepaper will facilitate those benefits, log management solutions need to support analysis of log data over extended outline the drivers for log management as well as their periods of time, as well as isolating events based on underlying challenges and drive towards a common set common attributes such as source type, user name, of requirements for evaluation of log management tools. IP address, etc.The paper also provides an overview of the ArcSight log management solution and concludes with several examples . IT Operations and Helpdesk Teams responsible that illustrate how enterprises can leverage an effective log for networks, security or applications are working management solution to automate security monitoring and more closely together or even merging, and they can certainly benefit from a consolidated view of regulatory compliance, conduct forensics more efficiently operational activity across the enterprise. To meet and improve operational standards. operational objectives around availability and SLAs,
CIO Compliance We need to improve Regulatory retention and adherence to our SLAs reporting requirements are very costly
Forensics CSO We're spending countless I need better visibility hours following up on into security threatsincidents
Figure 1: Consumers of Log Data
ArcSight 1Whitepaper: ArcSight Logger - Extracting Value from Enterprise Log Data
the complexity of consolidating log information across Log Collection Challengesdisparate and functionally-oriented event sources Log collection is a problem for several reasons, but the must be addressed. An efficient and scalable log management infrastructure solves this problem by scope of collection is perhaps the biggest one. Especially supporting high-volume log collection across all as a result of compliance, organizations have to collect network sources with the added flexibility of simplified logs from numerous devices and device types all the analysis and contextual data for improved operations. way from security / network devices up through operating systems, databases, as well as applications and web logs. . Executives (CIOs, CFOs and CEOs) can benefit Simply keeping up with the growing log volumes can be a from dashboards and reports... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search