This page lists publications on performing effective system monitoring.
Best practices for event logging and threat detection
This publication defines a baseline for event logging best practices to mitigate cyberthreats.
Implementing SIEM and SOAR platforms
SIEM and SOAR platforms can greatly benefit your organisation by collecting, centralising, and analysing important data, detecting cyber security events and incidents and prompting timely intervention.
Windows event logging and forwarding
This publication has been developed as a guide to the setup and configuration of Microsoft Windows event logging and forwarding.