Need help with a question Due 8/26 The security operations center (SOC) provides the foundation for a security operations program. The SOC brings

Need help with a question

Due 8/26

The security operations center (SOC) provides the foundation for a security operations program. The SOC brings together various isolated monitoring and response functions into a unified framework. The SOC is defined by the coordinated efforts of personnel, processes, and technology for identifying information security events and providing timely response and remediation.

 

Security information and event management (SIEM) is the primary tool used to support the security operations program in large enterprises. Organizations with the resources to support this type of tool can manage the SIEM as an activity within the SOC.

 

Part A: SOC Implementation Plan Presentation

Create a 12- to 14-slide, media-rich Microsoft® PowerPoint® presentation that documents the SOC implementation plan for the health care organization ’s senior leadership. The plan will also include the following requirements for implementing the SIEM portion of the SOC:

· Definition and purpose of an SOC and an SIEM (1 slide)

· Benefits of an integrated SOC and SIEM (1 slide)

· Diagram of the SOC organization illustrating each of the following 4 sections (1 slide):

· SOC Management

· Security Event & Incident Monitoring

· Event Analysis and Reporting

· Post-Incident Analysis

· Detailed information for the 4 sections listed above (8 to 10 slides); include the following for each:

· Description

· High-level functions and responsibilities

· Hardware and software required

· Resources required, including personnel for a 24/7 schedule, and security certificates required for each security position

· Recommended schedule for implementing all sections of the SOC (1 slide)

 

Note: Media-rich presentations in PowerPoint® should include such things as voiceover narration, graphics, pictures, video clips, or audio.

 

Part B: SIEM Maintenance Plan

A significant portion of SIEM is proper management of the hardware and software supporting SIEM processes and tasks.

 

Create a 3- to 4-page SIEM maintenance plan in Microsoft® Word that documents the processes for the maintenance task areas listed below. For each task or process include the following:

· Bulleted description

· Frequency in which the process must be competed

· SOC personnel required to complete the process (as defined in Part A)

 

Maintenance Task Areas:

· Process for patching operating systems for SIEM servers

· Servers are Windows Server® 2012

· Process for patching SIEM applications

· Tools that are available on the market for supporting security information and event management (SIEM) operations Process for archiving SIEM data for offline storage

· Assume 2 TBytes of data per month

· Estimate storage size required

· Estimate retention time

Share This Post

Email
WhatsApp
Facebook
Twitter
LinkedIn
Pinterest
Reddit

Order a Similar Paper and get 15% Discount on your First Order

Related Questions

 The Rest of the resources and instructions are provided in the screenshots below. You will need the Project overview to complete this

 The Rest of the resources and instructions are provided in the screenshots below. You will need the Project overview to complete this assignment. Project Overview This project includes the following tasks: Gather product information Analyze and differentiate product vulnerabilities Recommendation based on empirical data collection Objective: Product Selection Recommendation Organizations

 How Does Surescripts Integration Improve Prescription Management?  The Future of E-Prescriptions: Why Surescripts Integration is a Must-Have In

 How Does Surescripts Integration Improve Prescription Management?  The Future of E-Prescriptions: Why Surescripts Integration is a Must-Have In today’s fast-evolving healthcare landscape, seamless data exchange is essential for improving patient care and optimizing workflows. Surescripts integration solutions provide a secure and efficient way to connect pharmacies, healthcare providers, and electronic

[url= Integration Services[/url] are transforming businesses by streamlining operations, enhancing customer experiences, and enabling data-driven

[url= Integration Services[/url] are transforming businesses by streamlining operations, enhancing customer experiences, and enabling data-driven decisions. By automating repetitive tasks, AI frees up resources for more strategic activities, improving productivity. AI tools like chatbots and recommendation engines offer personalized solutions, fostering customer loyalty. AI also helps businesses analyze large datasets