Scott Mace

Almost 20 years of experience with computer technology, from the heyday of BBS’s to the days of Google Fiber, Scott has been involved in manufacturing, hospitality industry, legal, and multimedia companies, managing security and infrastructure.
April 11, 2017 | Scott Mace

Tips and Tricks for Using USM / OSSIM from an AlienVault Engineer

Topic #1: Customizing SIEM View and Custom Report Modules One of THE most powerful features of the AlienVault USM SIEM view is the ability to create custom views and save those as re-usable views and as report modules. HOW TO First, you need to navigate to the SIEM view, “Analysis-->SIEM”, and select your search criteria, be it…

July 20, 2016 | Scott Mace

Firewall Egress Blocking and Monitoring

Firewalls. We all have them. We all know we use them to keep unwanted stuff out of our networks. One thing we sometimes don’t think about is to whom our systems inside the network are talking. Why should we be concerned with what connections are being made from within our networks to the outside world? Data exfiltration, (malware…

May 16, 2016 | Scott Mace

File Integrity Monitoring with Microsoft Group Policy and AlienVault USM

AlienVault provides basic file integrity monitoring out of the box with our HIDS agent. Sometimes a more robust and detailed audit trail is required, and with a little configuration up front, AlienVault USM can provide rich monitoring and reporting capability for your sensitive files. These instructions assume you have a working AlienVault USM setup and the HIDS agent deployed to…

