The first step in creating a log management process is the creation of a policy. The policy should define the objectives the organization wants to meet by managing log information. Supporting standards and guidelines are necessary to ensure policy compliance. According to Kent and Souppaya, the following issues should be addressed:
- Log generation
- Log information transmission
- Log storage
- Log analysis
- Log disposal
When deciding how and when to generate logs, security managers should carefully select the information required. Data contained in the logs should match those needed to hit management objectives as defined in the policy. Building a table to list and define log data elements
Leave a Reply
You must be logged in to post a comment.