IBM Support

QRadar Open Mic Webcast #3: Windows Event Collection Overview - 26 August 2014 [Includes link to replay; presentation is attached]

Webcasts


Abstract

The IBM Security QRadar Support Team and QRadar development discussed Windows Event Collection. After a presentation, attendees got an opportunity to ask the panel of experts questions.

Content

This Open Mic session was the third webcast provided by IBM Security QRadar Technical Support. Our goal is to provide insight on how QRadar works and to teach on-going sessions that help both users and administrators understand, maintain, troubleshoot, and resolve issues with their QRadar Security Intelligence system.

During this open mic, we discussed Windows event collection, architecture, best practices, permissions, event collection configurations, WinCollect, WMI, common issues, and more.

Throughout the event, attendees commented and asked questions in the IBM SmartCloud Meeting Web chat and then were able to dial in and speak with the panelists. This was an interactive, educational, lively session.


  • Topic: Windows Event Collection Overview
  • Date: Tuesday, August 26, 2014
  • Time: 11:00 AM EDT (15:00 UTC/GMT, UTC-4 hours) for 60 minutes

Follow us on Twitter @AskIBMSecurity.


Youtube video

https://www.youtube.com/watch?v=KjWBB9mAnfk

A Youtube video has been uploaded to the IBM Security Support channel. Several slides were added to the Youtube video to provide additional information and answers to questions asked over the phone. The attached PDF also includes the new slides.


Presentation

QRadarOpenMic#3.pdfQRadarOpenMic#3.pdf


How to ask questions

After our first open mic webcast, a number of users and administrators asked if they could send us questions in advance of the next open mic session.  We have set aside a post in the QRadar Customer Forum for you to ask questions about Windows event collection that you want addressed in the open mic webcast.

http://bit.ly/QRadar_OpenMic3

[{"Product":{"code":"SSBQAC","label":"IBM Security QRadar SIEM"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Component":"General Information","Platform":[{"code":"PF016","label":"Linux"},{"code":"PF033","label":"Windows"}],"Version":"7.0;7.1;7.2","Edition":"","Line of Business":{"code":"LOB24","label":"Security Software"}}]

Document Information

Modified date:
10 May 2019

UID

swg27042932