I began working with a franchise business earlier this year and they just asked me for help with the requirements the corporation is giving them for the network.
Obtaining a router with IPS seems easy enough, just purchase one with anti-virus built-in with a subscription. This is a small business, very little internet usage, they actually are getting by with just a 3mbps dsl line! I'm searching the web and Cisco's ISA550w seems like a nice cheap router that can do that.
But the second requirement is SIEM tools, having the router send logs to a 24x7x365 staffed network operations center, I'm not familiar with! The manuals on Cisco's ISA routers say you can log the IPS events to a remote device, I'm assuming this will be sufficient? But then that still leaves me without a place to send them, do I find a company that provides these monitoring services for me? I will keep searching google for more information, most companies I'm finding their websites basically say "we provide solutions" without much detail into exactly what they provide.
I get the feeling these services are geared towards the large corporations who have lots of money to spend on IT, not necessarily the small business with very little spending money.
Thanks, any help is greatly appreciated.
Obtaining a router with IPS seems easy enough, just purchase one with anti-virus built-in with a subscription. This is a small business, very little internet usage, they actually are getting by with just a 3mbps dsl line! I'm searching the web and Cisco's ISA550w seems like a nice cheap router that can do that.
But the second requirement is SIEM tools, having the router send logs to a 24x7x365 staffed network operations center, I'm not familiar with! The manuals on Cisco's ISA routers say you can log the IPS events to a remote device, I'm assuming this will be sufficient? But then that still leaves me without a place to send them, do I find a company that provides these monitoring services for me? I will keep searching google for more information, most companies I'm finding their websites basically say "we provide solutions" without much detail into exactly what they provide.
I get the feeling these services are geared towards the large corporations who have lots of money to spend on IT, not necessarily the small business with very little spending money.
Thanks, any help is greatly appreciated.