Dec 2021 - Present Dec 2021 - Present Associated with Research forum of city university security onion is a network security monitoring (NSM) system that provides full context and forensic visibility into the traffic monitors. Designed to make deploying complex open-source tools simple via a single package (Snort, Suricata, Sguil, Snor by, etc.) Having the ability to pivot from one tool to the next seamlessly, provides the most effective collection of network security tools available in a single package Allows the choice of IDS engines, analysts consoles, web interfaces Free (Open Source) 1. Continuous Protection 2. Features a new web interface called Security Onion Console (SOC) that includes native alert management, threat hunting, and pcap retrieval. 3. Risk Assessment and Management investigation. 4. Adds TheHive, Strelka, support for Sigma rules, Grafana/InfluxDB (independent health monitoring/alerting), Fleet (osquery management), and Playbook (detection playbook tool)....