Security Log Secrets Seminar

  • Published: Aug 04, 2004
  • Updated: Aug 04, 2004
  • Section: Site News
  • Author: Randall F. Smith
  • Printable Version
  • Adjust font size: + -
  • Rating: 3.5/5 - 6 Votes
Monterey Technology Group announces new “Security Log Secrets” seminar by Windows security expert Randy Franklin Smith. Security Log Secrets is an intensive 2 day course in which Randy shares the wealth of knowledge he has gleaned over years of research on the Windows Security log. Security Log Secrets is available now for on-site classes and scheduled as a public seminar on October 4, 5 in New York City.

 

Spartanburg, SC (PRWEB) July 24, 2004 – For the first time, Window IT professionals have an opportunity to fully leverage Window’s cryptic security log for monitoring, intrusion detection and computer forensic purposes. For more information click here. 

"The Windows security log is extremely important to monitoring all aspects of Windows security, but it's safe to say the Windows security log is also the most poorly documented area of Windows 2000 and Windows Server 2003." says Randy Franklin Smith, CEO of Monterey Technology Group and creator of the Security Log Secrets course. "For most events, Microsoft's documentation simply restates the static text of the event's description. While some information does exist, it's riddled with inaccuracies. Most importantly, there is insufficient guidance and very little background information for individual events, nor are events described in context with other events. There are no suggested courses of action."

"In addition to poor event documentation," Mr. Smith continued, "security log event IDs and codes vary from one Windows version to the next making security log knowledge even more arcane. This complicates the design of programs that monitor the security log."

Mr. Smith began researching the Windows security log in 1998 for a client project. Since then he has provided design consultation to developers of event log monitoring products and written over a dozen articles on the subject, several of which now reside on Microsoft’s Technet website. "Due to the lack of accurate documentation, I’ve reverse engineered every event ID in the security log along with the codes and other detailed fields within each event. Along the way I've developed an understanding of events in relation to each other and been able to link user and administrator level actions with patterns of events. The security log tells a lot of stories if you know how to read the tea leaves," said Mr. Smith. 

Because of constant interest from readers, Mr. Smith decided to create the Security Log Secrets course as an in-person venue for sharing the results of years of research and helping attendees implement effective monitoring and intrusion detection. Security Log Secrets is an intensive 2 day course that covers all 9 audit categories of Windows Server 2003 and illuminates the subtle, yet critical, differences between 2003, 2000 and XP security events. "One of the most challenging factors in effectively monitoring Windows is the fact that each system has its own security log containing its discrete portion of your network's overall security activity," commented Mr. Smith. Security Log Secrets provides techniques for automating the process of merging, monitoring and analyzing the many security logs in a Windows network. In addition to knowledge attendees come away with the Security Log Secrets Tool Kit CD full of scripts and free tools.

The 2 day Security Log Secrets course is provided through Monterey Technology Group, Inc. and taught exclusively by Randy Franklin Smith.  The course is available publicly or on-site.

 

About Monterey Technology Group, Inc.

Monterey Technology Group, Inc. was founded in 1997 by Randy Franklin Smith. The company provides IT security consulting for Windows Server 2003 and Active Directory technologies. Mr. Smith has been contributing technical articles to industry magazines and professionals since 1996. He is a contributing editor at Windows & .NET Magazine and the technical editor for Security Administrator where he writes the “Access Denied” column.

CONTACT INFORMATION:
Randy Franklin Smith
Monterey Technology Group, Inc.
864-587-9720
http://www.ultimatewindowssecurity.com 

Share this article

Receive all the latest articles by email!

Get all articles delivered directly to your mailbox as and when they are released on WindowSecurity.com! Choose between receiving instant updates with the Real-Time Article Update, or a monthly summary with the Monthly Article Update.



Receive all the latest articles by email!

Receive Real-Time & Monthly WindowSecurity.com article updates in your mailbox. Enter your email below!
Click for Real-Time sample & Monthly sample

Become a WindowSecurity.com member!

Discuss your security issues with thousands of other network security experts. Click here to join!

Community Area

Log in | Register

Solution Center

Readers' Choice

Which is your preferred Patch Management solution?