Part 2: QRadar Features and Deployment
Once the QRadar environment is built, it is time to understand the features it offers per your business requirements. Attaining this understanding is imperative before implementing the features. Ingesting data (events and flows), making sense of data (DSM editor), analyzing data, and then correlating it are all fundamental features of QRadar.
This part has the following chapters:
- Chapter 4, Integrating Logs and Flows in QRadar
- Chapter 5, Leaving No Data Behind
- Chapter 6, QRadar Searches
- Chapter 7, QRadar Rules and Offenses