Good resource on logging and retention practices – a legal perspective

A few weeks ago, I attended some CISO breakfast meetings on the east coast as part of the CISO Breakfast Network. There was a lot of discussion about best practices, challenges, war stories, etc. related to log management, SIEM, and incident handling.
One session I found to be very helpful was a presentation by Amy Mushahwar, one of the attorney’s from the law firm Reed Smith. They’ve just posted a video of her session, and I wanted to share it here as I believe it has information that you may find relevant (or at least thought-provoking). The blog post about this can be found on the Reed Smith blog, and here is a direct link to the video.

Tags: Data Breaches, event management, IT Security and Data Protection, Regulatory Compliance
Categories: Incident Detection, IT Security and Data Protection, Regulatory Compliance, Risk Management, Security Controls