Skip Links

Network World

Jon Oltsik

Log Management: The Rodney Dangerfield of IT

security

By joltsik on Wed, 07/22/09 - 1:17pm.

Log management has become an essential enterprise service yet to paraphrase Rodney Dangerfield, it gets no respect. Why? Log management is as geeky an IT service as there is as it hums along and collects, processes, and stores cryptic Syslog and Windows Log files. Insert yawn here.

Boring stuff -- yes but increasingly essential. Correlation and analysis of log events helps users detect security events and suspicious behavior. Analysis and reporting on log data is the heart of regulatory compliance. Logs also provide a view into the entire IT infrastructure. Analysis here can help CIOs tune their IT infrastructure and plan for the future.

Let's face it, log management is a foundational technology these days. Users who understand this and build an enterprise-class log management infrastructure will be better prepared for future security, IT, and business challenges.

Log management will eventually evolve into something much bigger. I envision an IT data warehouse in the future that collects log data but also network flows, CMDB records, asset information, vulnerability scans, SNMP events, etc. Users will load this into the IT equivalent of a Teradata warehouse and run all types of queries and reports.

As far as vendors go, I see good things from ArcSight, HP, LogLogic, LogRhythm, and Q1 Labs. Any one of these guys could emerge as the market leader for this future IT data warehouse vision.

About Networking Nuggets and Security Snippets
Jon Oltsik is a principal analyst at Enterprise Strategy Group responsible for the networking and security services at ESG. Prior to joining ESG, Jon was the founder and principal of Hype-Free Consulting. Mr. Oltsik previously served as VP of Marketing & Strategy at GiantLoop Network where he managed all marketing activities and defined the company’s strategic vision. Jon was also a Senior Analyst at Forrester Research where he covered a wide range of infrastructure and IT topics. In this role, he was frequently quoted in business journals, including the Wall Street Journal, Business Week, and the New York Times, and was also the recipient of a prestigious "best research" award for his breakthrough report, "The Internet Computing Voyage."
 

Most Discussed Posts