How often do you perform security awareness?
monthly48%
once a year42%
once a quarter10%
100 PARTICIPANTS
982 views
Content you might like
Blacklisting IPs is not an effective use of the security team’s time.
Strongly agree9%
Agree58%
Neutral15%
Disagree14%
Strongly disagree2%
Other (please specify)
Has anyone drafted an SOW for a cloud-based SIEM with setup, migration, and maintenance? I’m working on a FedRAMP-authorized SIEM SOW, migrating from on-prem Splunk, covering data, searches, alerts, dashboards, and models. Scope includes Environment Setup: Cloud provisioning, configuration, testing. Connectors/Parsers: Custom data source integration. Content Development: Rules, use cases, threat feeds. Performance Tuning: Query/index optimization. Runbooks: Operational procedures. Also required: 24x7 support, maintenance, lifecycle and application management, role-based training, and documentation. Must comply with NIST SP 800-53, CJIS, and FedRAMP Moderate+. Goal: Secure, scalable SIEM for rapid deployment. I may be missing elements, so suggestions are welcome. Please share redacted SOWs or tips if possible.
Which of these areas are you targeting for funding increases in your 2026 cybersecurity budget? (Choose all applicable)
Threat detection & response 48%
Identity & access management 58%
Cloud security 48%
Security awareness training 30%
Other 3%
N/A