In this session, Matt Gracie demonstrates detection engineering in Security Onion by using the Detections tool to write, deploy, and test a new Sigma rule.
If you have words of encouragement for the Security Onion team, please comment below. Don't forget to like and subscribe!
If you have questions or problems, please start a new discussion at https://securityonion.net/discuss.
For more training, please see https://securityonion.com/training.
For enterprise features, check out Security Onion Pro at https://securityonion.com/pro.
For hardware appliances, please see https://securityonion.com/hardware.