Early Threat Detection and Safeguarding Data with IBM QRadar and IBM Copy Services Manager on IBM DS8000 Early Threat Detection and Safeguarding Data with IBM QRadar and IBM Copy Services Manager on IBM DS8000

Early Threat Detection and Safeguarding Data with IBM QRadar and IBM Copy Services Manager on IBM DS8000

وصف الناشر

The focus of this blueprint is to highlight early threat detection by IBM® QRadar® and to proactively start a cyber resilience workflow in response to a cyberattack or malicious user actions.

The workflow uses IBM Copy Services Manager (CSM) as orchestration software to start IBM DS8000® Safeguarded Copy functions. The Safeguarded Copy creates an immutable copy of the data in an air-gapped form on the same DS8000 system for isolation and eventual quick recovery.

This document also explains the steps that are involved to enable and forward IBM DS8000 audit logs to IBM QRadar.

It also discusses how to use create various rules to determine a threat, and configure and start a suitable response to the detected threat in IBM QRadar.

Finally, this document explains how to register a storage system and create a Scheduled Task by using CSM.

النوع
كمبيوتر وإنترنت
تاريخ النشر
٢٠٢٢
٢١ أبريل
اللغة
EN
الإنجليزية
عدد الصفحات
٤٤
الناشر
IBM Redbooks
البائع
International Business Machines Corp
الحجم
١٫٧
‫م.ب.‬
Cyber Resiliency with IBM QRadar and IBM Spectrum Virtualize for Public Cloud on Azure with IBM Copy Services Manager for Safeguarded Copy Cyber Resiliency with IBM QRadar and IBM Spectrum Virtualize for Public Cloud on Azure with IBM Copy Services Manager for Safeguarded Copy
٢٠٢٢
Proactive Early Threat Detection and Securing SQL Database With IBM QRadar and IBM Spectrum Copy Data Management Using IBM FlashSystem Safeguarded Copy Proactive Early Threat Detection and Securing SQL Database With IBM QRadar and IBM Spectrum Copy Data Management Using IBM FlashSystem Safeguarded Copy
٢٠٢٢
Enhanced Cyber Resilience Threat Detection with IBM FlashSystem Safeguarded Copy and IBM QRadar Enhanced Cyber Resilience Threat Detection with IBM FlashSystem Safeguarded Copy and IBM QRadar
٢٠٢١
Cyber Resiliency with Splunk Enterprise and IBM FlashSystem Storage Safeguarded Copy with IBM Copy Services Manager Cyber Resiliency with Splunk Enterprise and IBM FlashSystem Storage Safeguarded Copy with IBM Copy Services Manager
٢٠٢٢
Securing Data on Threat Detection by Using IBM Spectrum Scale and IBM QRadar: An Enhanced Cyber Resiliency Solution Securing Data on Threat Detection by Using IBM Spectrum Scale and IBM QRadar: An Enhanced Cyber Resiliency Solution
٢٠٢١
A Hybrid Cloud Cyber Security Solution using IBM Spectrum Virtualize for Public Cloud on Azure and IBM Spectrum Virtualize Safeguarded Copy A Hybrid Cloud Cyber Security Solution using IBM Spectrum Virtualize for Public Cloud on Azure and IBM Spectrum Virtualize Safeguarded Copy
٢٠٢٢
IBM Storage for Red Hat OpenShift Blueprint IBM Storage for Red Hat OpenShift Blueprint
٢٠٢٠
Automate and Orchestrate Your IBM FlashSystem Hybrid Cloud with Red Hat Ansible Version 1 Release 1 Automate and Orchestrate Your IBM FlashSystem Hybrid Cloud with Red Hat Ansible Version 1 Release 1
٢٠٢٠
Multicloud Solution for Business Continuity using IBM Spectrum Virtualize for Public Cloud on AWS Version 1 Release 1 Multicloud Solution for Business Continuity using IBM Spectrum Virtualize for Public Cloud on AWS Version 1 Release 1
٢٠٢٠
Red Hat OpenShift on Public Cloud with IBM Block Storage Red Hat OpenShift on Public Cloud with IBM Block Storage
٢٠٢٠
IBM Solutions for Hybrid Cloud Networking Configuration Version 1 Release1 IBM Solutions for Hybrid Cloud Networking Configuration Version 1 Release1
٢٠١٩
IBM Storage Solutions for Splunk Enterprise IBM Storage Solutions for Splunk Enterprise
٢٠١٩