Open Internet by MindsNet
Reducing Alert Noise in Security Monitoring
The author describes a situation where despite having multiple security monitoring tools in place, a high-severity vulnerability went undetected for 23 days. The alert was generated but got lost in a large volume of other alerts. The author questions whether the issue is one of coverage or volume, and wonders if reducing alert noise at the source rather than filtering it downstream could be a solution.
Computing & Technology, Computer Science, Programming Languages