Skip to content

Commit baf924e

Browse files
Update _posts/2025-03-05-OpenSearch-as-a-SIEM-Solution.md
Co-authored-by: Nathan Bower <[email protected]> Signed-off-by: DattellConsulting <[email protected]>
1 parent c044d75 commit baf924e

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

_posts/2025-03-05-OpenSearch-as-a-SIEM-Solution.md

+1-1
Original file line numberDiff line numberDiff line change
@@ -50,7 +50,7 @@ Data normalization is important for building generalizable detection rules and d
5050
### <u>Data visualization</u>
5151
Once logs are indexed and normalized, analysts can create visualizations with OpenSearch Dashboards to enhance situational awareness. For example, users can build charts showing trends for failed logins over time or a geographic map of login locations.
5252

53-
### <u>Search.</u>
53+
### <u>Search</u>
5454
OpenSearch Dashboards supports interactive querying. A security analyst can filter the view to a specific timeframe or drill down on a particular host or user to see all related events.
5555

5656
OpenSearch’s search capabilities also enable ad-hoc log analysis and threat hunting. Analysts can run queries to hunt for subtle signs of compromise that might not trigger an alert, such as searching across all logs for a particular filename associated with malware.

0 commit comments

Comments
 (0)