Log Management
Attain traceability in your networks with Log Management
More and more organisations realise the importance of being able to trace activity and traffic in their networks and IT systems. When a security incident has occurred, logs from different network devices can be utilised in order to find out who did what and when they did it. This information is then used to identify the attacker as well as preventing such attacks from reoccurring.
Many companies find the job of gathering log data and interpreting it difficult, if not downright impossible. Relevant logs (if they even exist) are scattered over a large number of systems and network devices and they require both resources and experience to correctly interpret.
Centralised Log Management
A prerequisite for satisfactory log management is that logging is enabled in all relevant networks and IT systems and that they are collected to a centralised system which normalises and correlates the logs for easy access and interpretation. The system must also provide search functionality.
Sentors offers Log Management in three layers
In order for the log management to be as effective as possible, deep knowledge of network structure and deployment is required. Sentor's experts have many years of experience from enabling, collecting, analysing and monitoring logs from our client's networks.
Depending on the client requirements, we can deliver Log Management in the following three layers:
- Implementation: Sentor implements equipment and systems for centralised log management in the client's network, and the client manages and operates the system in-house. Sentor assists in developing a logging policy to make sure all relevant logs are collected.
- Management: In addition to implementing the centralised log system, Sentor also manages the system. The client gets regular reports on suspected incidents as well as network and system activity.
- Monitoring 24/7: In addition to the above, the log management system will be connected to Sentor's MSS provisioning platform. We also help define alert levels for suspicious activity. When the system detects such behaviour, an alert is sent to the Sentor SOC, where our operators are ready to take action 24/7.
How secure do you need to be?
Let's discuss your need for log management and what level of service would suit your company. Call us at +46 8 545 333 00 or e-mail info@sentormss.com.
To try out what powers some of our log management services for free click here.


IDS/IPS 24/7
Log Management




