0
That one audit comment about my log retention changed everything for me
Last month a client's auditor told me my 30 day log retention was 'a liability, not a feature' and I laughed it off at first. Then they showed me a breach scenario where forensic data would've been gone before we even noticed the intrusion. I moved all my critical logs to a $15 a month cold storage bucket with WORM settings, and now I sleep better knowing I can actually answer 'what happened on February 3rd at 2 AM' if I ever need to. Has anyone else had to fight their boss on the cost of longer retention, or am I the only one who got roasted by an auditor for being cheap?
0 comments
Log in to join the discussion
Log In0 Comments
No comments yet
Be the first to share your thoughts on this discussion.