Just starting with Live Discover and I was wondering what you do on a daily (or weekly basis) to search for threats?
This thread was automatically locked due to age.
Hi ErikB
You can find the Live discover queries used or can post your queries on this Live discover and response query forum, that should help.
Shweta
I appreciate the answer, but it is not what I was looking for. I am a System Administrator that does Sophos on the side, I cant afford to spend 4 hours per day on Live Discover. So my question was directed to other System Administrator that also would like to secure there networks but also need 7 hours per day on other activities.
What are they looking for, what queries (suggested by Shweta) are you using? What are the quick wins to have a better secured network?
I appreciate the answer, but it is not what I was looking for. I am a System Administrator that does Sophos on the side, I cant afford to spend 4 hours per day on Live Discover. So my question was directed to other System Administrator that also would like to secure there networks but also need 7 hours per day on other activities.
What are they looking for, what queries (suggested by Shweta) are you using? What are the quick wins to have a better secured network?