Company
Date Published
Author
Dave Armlin
Word count
376
Language
English
Hacker News points
None

Summary

At the Black Hat USA 2022 security conference, Amazon AWS and Splunk partnered with other vendors to create the Open Cybersecurity Schema Framework (OCSF), a collaborative effort aiming to simplify data ingestion from various security products for enterprises to better protect against threats. `This initiative acknowledges the challenge of dealing with diverse security product data, providing a vendor-agnostic taxonomy to empower security teams to respond quickly and effectively. `The OCSF schema uses JSON and encourages open collaboration to make systems and data more secure. `ChaosSearch is excited about this project's evolution and its potential to improve operational and security data lakes for monitoring and alerting on security, application, Kubernetes, infrastructure logs, CloudWatch, CloudTrail, VPC FLow Logs, Splunk, Cloudflare, Fastly, Signal Sciences, Okta, Auth0, etc. `The OCSF project can be found at https://github.com/ocsf/.