Skip to content

Hide Navigation Hide TOC

Function: Log and sensor management (d9acc29a-7c55-5645-8604-40303717d2ab)

Sensors and log sources need operational management throughout their lifecycle. They must be deployed, onboarded, and decommissioned. Outages, data quality/scope, and configuration issues must be identified and resolved. Sensors that have some form of configuration such as pattern definitions need their configuration maintained in order to remain effective. Sensors may also include external detection services or Open Source Intelligence (OSINT) sources, if they form the basis for detection use cases.

Cluster A Galaxy A Cluster B Galaxy B Level
Function: Log and sensor management (d9acc29a-7c55-5645-8604-40303717d2ab) FIRST CSIRT Services Framework Service: Monitoring and detection (0c165743-b9fa-528b-95df-2fce12ca302c) FIRST CSIRT Services Framework 1