Logpoint Presentation SIEM Presentation Slides

andisusanto47 48 views 30 slides Oct 17, 2024
Slide 1
Slide 1 of 30
Slide 1
1
Slide 2
2
Slide 3
3
Slide 4
4
Slide 5
5
Slide 6
6
Slide 7
7
Slide 8
8
Slide 9
9
Slide 10
10
Slide 11
11
Slide 12
12
Slide 13
13
Slide 14
14
Slide 15
15
Slide 16
16
Slide 17
17
Slide 18
18
Slide 19
19
Slide 20
20
Slide 21
21
Slide 22
22
Slide 23
23
Slide 24
24
Slide 25
25
Slide 26
26
Slide 27
27
Slide 28
28
Slide 29
29
Slide 30
30

About This Presentation

SIEM Logpoint


Slide Content

Introduction to LogPoint 1 17 October 2024

Agenda 2 Introduction to the LogPoint Company LogPoint Products LogPoint Services Features of LogPoint SIEM

Introduction to the LogPoint Company 3 Established in 2008 HQ in Denmark Branch offices in 7 countries Approx. 180 employees. 760+ customers and 40+ partners on 4 continents We produce a SIEM and related products Provide all levels of Support Help customers with their use-cases

SIEM | at a Glance Enterprise data volumes are increasing exponentially Data in raw form is impossible to process efficiently for the majority of IT professionals SIEM translates raw data into actionable intelligence, through the deployment of normalisation and use cases. The intelligence can then be used in three main areas: Security Is the enterprise edge secure? Compliance How do I prove compliance? Operations Are we maximising efficiencies? 4

5

LogPoint | At a Glance 6 Next Gen Enterprise enabled SIEM platform Over 750+ customers European HQ with global reach Predictible License model World class 24x7 Support Center EAL3+ certified Security platform

LogPoint | Key Principles SIMPLIFY SIEM – easily give granular access of key technologies to a wider audience that have otherwise been excluded NO DATA LIMIT – by not limiting enterprises through the implementation of a data cap it enables users to get the most out of the platform PREDICTIABLE COST – our licensing is based on the number of sources and not on log rates, or volume of data 7

LogPoint | Key Principles SECURE BY DESIGN – by not limiting enterprises through the implementation of a data cap it enables users to get the most out of the platform WORLD CLASS SUPPORT – focused on granting users access to SIEM expertise quickly and efficiently and thereby maximising customer value CUSTOMER CENTRIC – focused on granting users access to SIEM expertise quickly and efficiently and thereby maximising customer value 8

9 Gartner Magic Quadrant 2018

10 LogPoint rated among one of the best SEIMS Gartner Peer Insights 2018

….. and 760+ additional customers CUSTOMERS PARTNERS ….. and 40+ more 11 LogPoint Customer

12 Technology Partners And more … LogPoint Technology Partner

2017 Open in Sweden LogPoint 3.0 launch 1st round of VC fundraising EAL3+ certified (NATO requirement) European proof -> Global expansion Series B funding LogPoint 6.0 l aunch 2009 Hiring of CTO Release of LogPoint 5.0 Shifting to a partner-centric model Open in Germany and UK 80 customers Open office in France 300+ customers Product Commercial 2016 2015 2014 2013 2012 2010 Technology paradigm shift from SQL MSSP offering launch in Europe 13 24*7 Support Open in Nepal 2008 2018 760+ customers LogPoint Evolution

14

Nepal Office 15 Development Center Product and Feature Development Full life-cycle handled from Nepal Security Analytics Business UseCases Development Security applications management Support And Solutions Assist customers globally 24/7 Certifications On all Levels Sales in Asia Everything Sales Partner Management Global Expertise

LogPoint Products 16 LogPoint (SIEM) LogPoint Agent LogPoint Director Advanced Analytics Healthcare LogPoint UEBA Plugins Security Analytics Applications

LogPoint Services 17 Support and Solutions Professional Services Security Analytics Development Plugin Development Certification trainings

LogPoint SIEM 18

LogPoint | How it works SOURCES COLLECTOR BACKEND ANALYTICS 19 Collect Normalize Enrich Routing Store Analyse

LogPoint’s Internal Dataflow 20 Devices Collect Parse Normalize Enrich Route Store Forwarded Logs Processing Policy

Normalization label Authentication, Fail, Kerberos, User host DC01.acme.local user sven.svendsen event_id 4771 source_address 10.200.162.4 event_log Security failure_code 0x18

Dashboard 22

Dashboard 23

Search 24

Search Reading the search results 25 Log Timestamp Labels Indexed Raw Log

Search 26 Different graphical representation of the same data

Alerting 27

Alerting 28

Reporting 29

Reporting 30
Tags