Early Threat Detection and Safeguarding Data with IBM QRadar and IBM Copy Services Manager on IBM DS8000 Early Threat Detection and Safeguarding Data with IBM QRadar and IBM Copy Services Manager on IBM DS8000

Early Threat Detection and Safeguarding Data with IBM QRadar and IBM Copy Services Manager on IBM DS8000

Publisher Description

The focus of this blueprint is to highlight early threat detection by IBM® QRadar® and to proactively start a cyber resilience workflow in response to a cyberattack or malicious user actions.

The workflow uses IBM Copy Services Manager (CSM) as orchestration software to start IBM DS8000® Safeguarded Copy functions. The Safeguarded Copy creates an immutable copy of the data in an air-gapped form on the same DS8000 system for isolation and eventual quick recovery.

This document also explains the steps that are involved to enable and forward IBM DS8000 audit logs to IBM QRadar.

It also discusses how to use create various rules to determine a threat, and configure and start a suitable response to the detected threat in IBM QRadar.

Finally, this document explains how to register a storage system and create a Scheduled Task by using CSM.

GENRE
Computing & Internet
RELEASED
2022
21 April
LANGUAGE
EN
English
LENGTH
44
Pages
PUBLISHER
IBM Redbooks
SIZE
1.7
MB

More Books by IBM

Hybrid Multicloud Business Continuity for OpenShift Workloads with IBM Spectrum Virtualize in AWS Hybrid Multicloud Business Continuity for OpenShift Workloads with IBM Spectrum Virtualize in AWS
2020
Red Hat OpenShift on Public Cloud with IBM Block Storage Red Hat OpenShift on Public Cloud with IBM Block Storage
2020
Cyber Resiliency with IBM QRadar and IBM Spectrum Virtualize for Public Cloud on Azure with IBM Copy Services Manager for Safeguarded Copy Cyber Resiliency with IBM QRadar and IBM Spectrum Virtualize for Public Cloud on Azure with IBM Copy Services Manager for Safeguarded Copy
2022
Business Continuity Solution with Red Hat OpenShift and IBM Spectrum Virtualize for Public Cloud on Microsoft Azure Business Continuity Solution with Red Hat OpenShift and IBM Spectrum Virtualize for Public Cloud on Microsoft Azure
2022
Electronic Health Records with Epic and IBM FlashSystem 9500 Blueprint Version 2 Release 4 Electronic Health Records with Epic and IBM FlashSystem 9500 Blueprint Version 2 Release 4
2022
Securing IBM Spectrum Scale with QRadar and IBM Cloud Pak for Security Securing IBM Spectrum Scale with QRadar and IBM Cloud Pak for Security
2021