Great article and yes multiple layers defence is what we are reffering as "defense in depth" at every level there has to be some redundancies in place. The activity baseline can be done in the SIEM software or linked with a GRC software triggering any abnormal activity.
Great article and yes multiple layers defence is what we are reffering as "defense in depth" at every level there has to be some redundancies in place. The activity baseline can be done in the SIEM software or linked with a GRC software triggering any abnormal activity.