<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress.com" -->
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd"><url><loc>https://qradarinsights.com/2019/03/15/understanding-the-uba-risk-score/</loc><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2019/03/screen-shot-2019-03-15-at-3.34.09-pm.png</image:loc><image:title>UBA Risk Score Example</image:title></image:image><lastmod>2019-12-09T14:37:58+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2018/11/27/using-syslog-ng-to-monitor-and-forward-log-files-to-qradar/</loc><lastmod>2018-12-20T13:46:26+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2018/12/20/using-rsyslog-to-monitor-and-forward-log-files-to-qradar/</loc><lastmod>2018-12-20T13:45:57+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2018/10/25/qradar-7-3-1-should-you-upgrade/</loc><lastmod>2018-10-25T12:22:19+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2017/06/22/investigating-ransomware-infections-with-qradar/</loc><lastmod>2017-06-22T14:58:03+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2017/05/23/monitoring-software-as-a-service-saas-cloud-solutions-with-qradar/</loc><lastmod>2017-05-23T11:57:17+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2017/05/02/monitoring-cloud-servers-with-qradar/</loc><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2017/05/image3.png</image:loc><image:title>QRadar Cloud 3</image:title><image:caption>Figure 3: Cloud SIEM solution or QRadar as a Service Architecture. </image:caption></image:image><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2017/05/image2.png</image:loc><image:title>QRadar Cloud 2</image:title><image:caption>Figure 2: Virtual collector in the cloud.</image:caption></image:image><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2017/05/image1.png</image:loc><image:title>QRadar Cloud 1</image:title><image:caption>Figure 1: Cloud servers sending logs directly to internal SIEM collector</image:caption></image:image><lastmod>2017-05-02T17:16:32+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2017/04/19/detecting-ransomware-with-qradar-using-behavioral-analysis/</loc><lastmod>2017-04-20T13:46:45+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/about/</loc><lastmod>2017-04-12T15:56:08+00:00</lastmod><changefreq>weekly</changefreq><priority>0.6</priority></url><url><loc>https://qradarinsights.com/2017/03/23/proactively-identifying-performance-issues-with-the-hcf-plugin/</loc><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2017/03/hcf4.png</image:loc><image:title>HCF4</image:title><image:caption>Chart extracted from the HCF report – Identifying heavy rules</image:caption></image:image><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2017/03/hcf3.png</image:loc><image:title>HCF3</image:title><image:caption>After disabling the Windows servers - Memory used: ~38GB</image:caption></image:image><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2017/03/hcf2.png</image:loc><image:title>HCF2</image:title><image:caption>Before disabling Windows test servers - Memory used ~40GB</image:caption></image:image><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2017/03/hcf1.png</image:loc><image:title>HCF1</image:title><image:caption>Report generated by the Health Check Framework (HFC) - A holistic view of your environment, note the number of tabs on the report!</image:caption></image:image><lastmod>2017-04-03T14:08:26+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2017/02/03/qradar-apps-health-check-framework/</loc><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2017/02/dashboard2.png</image:loc><image:title>dashboard2</image:title></image:image><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2017/02/dashboard1.png</image:loc><image:title>dashboard1</image:title></image:image><lastmod>2017-02-03T14:33:19+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2017/01/30/qradar-new-features-7-2-5-7-2-7/</loc><lastmod>2017-01-30T14:52:39+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2013/12/05/storage-sizing/</loc><lastmod>2016-12-05T19:19:10+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/09/08/third-party-check-engine-under-the-right-click-menu/</loc><lastmod>2014-09-08T14:37:00+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/08/06/installing-a-device-adapter-on-the-qradar-risk-manager/</loc><lastmod>2014-09-29T16:53:56+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/06/24/checking-if-gui-is-working-on-the-imm/</loc><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2014/06/imm-tshoot-1.jpg</image:loc><image:title>IMM Troubleshooting</image:title></image:image><lastmod>2014-06-24T19:22:17+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/05/12/qradar-and-big-data/</loc><lastmod>2014-05-13T00:07:12+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/04/03/centralized-vs-distributed-collecting/</loc><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2014/04/distributed.png</image:loc><image:title>Distributed</image:title></image:image><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2014/04/centralized.png</image:loc><image:title>Centralized</image:title></image:image><lastmod>2014-05-09T18:20:40+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/03/27/easy-way-to-copy-a-file-to-all-managed-hosts/</loc><lastmod>2014-03-28T01:02:55+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/03/18/qradar-certification-certified-deployment-professional-c2150-196/</loc><lastmod>2014-03-13T02:37:51+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/03/12/who-added-a-new-account/</loc><lastmod>2014-03-13T02:04:26+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/contact/</loc><lastmod>2014-03-05T02:55:19+00:00</lastmod><changefreq>weekly</changefreq><priority>0.6</priority></url><url><loc>https://qradarinsights.com/2014/02/28/changing-firewall-rules/</loc><lastmod>2014-02-28T20:14:48+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/02/19/running-commands-across-the-environment-part-2/</loc><lastmod>2014-02-19T21:01:35+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/02/17/changing-the-network-configuration/</loc><lastmod>2014-10-02T11:36:23+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/02/07/running-commands-across-the-environment/</loc><lastmod>2014-11-20T13:33:48+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/01/19/windows-desktops-log-collection-methods-comparison/</loc><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2014/01/windowslogscomparison.png</image:loc><image:title>WindowsLogsComparison</image:title></image:image><lastmod>2015-08-13T07:27:20+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2014/01/06/changing-the-ssl-certificate/</loc><lastmod>2014-11-22T02:08:15+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2013/12/20/quick-log-collection-troubleshooting/</loc><lastmod>2013-12-21T02:06:26+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2013/12/12/creating-a-cold-backup/</loc><lastmod>2013-12-13T15:35:43+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2013/12/05/configuring-the-log-sources/</loc><lastmod>2013-12-06T04:40:59+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2013/12/04/qradar-official-documentation/</loc><lastmod>2013-12-06T04:04:05+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2013/12/04/qradar-sizing-determining-eps/</loc><lastmod>2019-03-26T11:09:36+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2013/12/04/siem-magic-quadrant-2013/</loc><image:image><image:loc>https://qradarinsights.com/wp-content/uploads/2013/12/magic-quadrant-for-security-information-and-event-management_ibm-q1-labs-hp-arcsight-mcafee.png</image:loc><image:title>Magic-Quadrant-for-Security-Information-and-Event-Management_IBM-Q1-Labs-HP-Arcsight-McAfee</image:title></image:image><lastmod>2013-12-04T06:45:10+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com/2013/12/04/migration-from-ibm-tsiem-to-qradar/</loc><lastmod>2013-12-04T06:33:34+00:00</lastmod><changefreq>monthly</changefreq></url><url><loc>https://qradarinsights.com</loc><changefreq>daily</changefreq><priority>1.0</priority><lastmod>2019-12-09T14:37:58+00:00</lastmod></url></urlset>
