Just starting with Live Discover and I was wondering what you do on a daily (or weekly basis) to search for threats?
This thread was automatically locked due to age.
I appreciate the answer, but it is not what I was looking for. I am a System Administrator that does Sophos on the side, I cant afford to spend 4 hours per day on Live Discover. So my question was directed to other System Administrator that also would like to secure there networks but also need 7 hours per day on other activities.
What are they looking for, what queries (suggested by Shweta) are you using? What are the quick wins to have a better secured network?