Starting the week off by getting woken up early by a dog that needs to go out is never a good start to the week.
Seth Goldhammer
@socalledseth.com
20+ years in cybersecurity • currently @grayloginc • in Boulder, CO • Lets talk music, movies, Warriors, Raiders, CU Buffs
Graylog is recognized as an Aspiring vendor in the 2026 Gartner®️ SIEM Voice of the Customer report, with an 86% willingness to recommend (based on 52 reviews as of Jan 2026). Access the report. Link: graylog.org/post/graylog...
Graylog Recognized by Users in the 2026 Gartner®️ SIEM VOC
Graylog recognized as an Aspiring vendor in the 2026 Gartner®️ SIEM Voice of the Customer report, with an 86% willingness to recommend (based on 52 reviews as of Jan 2026). Access the report.
graylog.org
I’m not saying that I’ve been to #GartnerRiskandSecurityManagenent more than a few times, but my WiFi automatically connects
That What’s New in Graylog 7.1 webinar is tomorrow. Join Jeff and me as we answer any of your questions live https://graylog.org/post/whats-new-in-graylog-7-1-webinar/
Graylog 7.1 just shipped Auto-investigations from asset risk thresholds. One-click Slice-By triage. Anomaly detection plugged directly into your alert workflow. May the 4th be with your alert queue. See what's new: graylog.org/post/may-the... #graylog #SIEM #MayThe4th
No idea what happens next year, but Raiders are killing it this off season #Raidernation
a black and white logo for the raiders football team
ALT: a black and white logo for the raiders football team
media.tenor.com
I somehow lose every 50/50 with wordl Wordle 1,768 3/6* 🟩🟩⬛⬛🟩 🟩🟩⬛🟩🟩 🟩🟩🟩🟩🟩
Noncontroversial take but growing up in the 80s in suburbia with no cell phones, plenty of other kids, parks and streets to roam and explore unsupervised, may have been the optimal time to grow up.
Sorry #Dubnation. We had a great game in LA but with Curry not able to get it going been a rough Fri. Too many injuries, let’s have a great season next year.
Seems we are bit beyond the inmates are running the asylum at this point
Every time there is a 50/50 I choose wrong Wordle 1,749 3/6* 🟩🟨🟨⬛🟩 🟩🟩🟩⬛🟩 🟩🟩🟩🟩🟩
I seriously never get this 50/50 balls Wordle 1,721 6/6* ⬛🟨⬛⬛⬛ ⬛⬛🟨🟨🟨 ⬛🟩🟩🟩🟩 ⬛🟩🟩🟩🟩 ⬛🟩🟩🟩🟩 🟩🟩🟩🟩🟩
Post a pic you took, no context, to bring some zen to the feed
The kid in me wouldn’t believe that Flava Flav would end up with more grace and diplomacy than our President
Not sure why I found this as challenging as it was Wordle 1,698 5/6* ⬛🟨⬛⬛🟨 ⬛🟩🟨⬛⬛ ⬛🟩⬛⬛🟩 ⬛🟩⬛⬛🟩 🟩🟩🟩🟩🟩
Security teams buy “one more tool” to reduce toil. Then investigations turn into nine tabs and a Slack thread. As @socalledseth.com puts it: AI only pays off when it reduces steps inside the analyst’s flow — not when it becomes tab #10. Read the blog: graylog.org/post/the-hum...
The Human-AI Alliance in Security Operations
AI in security operations reduces context switching in SOC investigations, supports analyst judgment, and keeps workflows fast, and human-led.
graylog.org
Not sure why they keep interrupting the AI ads with some type of sport game
Basketball just won’t be the same when #30 retires. #Dubnation
Gyms fill in January, empty in February. Security AI mirrors it: fast launches, big promises—then analysts validate outputs. Skip explainability, governance, and context, and AI stalls. Seth Goldhammer @socalledseth.com : graylog.org/post/why-ai-...
Why AI Transformations in Security Fail Like New Year’s Gym Resolutions
Why enterprise AI in security is shifting from fast adoption to explainable, governed systems that SOC teams can trust, audit, and operate safely.
graylog.org
Tupac had it right. “Momma told me there would be days like this, but I’m pissed, because it stays like this”
Whats worse, waking up early for an early morning meeting, or waking up for an early morning meeting to see it was cancelled?
New washer and dryer arrive Thurs and sort of sad that I am excited by it
There’s a lot of unwarranted AI hype and appropriate backlash, so I was pleasantly surprised when I successfully tested if LLM + MCP with Graylog could accurately identify appropriate threat detections and required log sources based on threat actor tactics specific to industry and geography.
Is your #finserv institution as safe as it could be from #ransomware & other #cyberthreats? Groups like #FIN7, #LazarusGroup & #Carbanak often target #banks with attacks like SWIFT compromises. 🏦 But have no fear, #Graylog + Model Context Protocol are here to help! 🦸 💪 graylog.org/post/how-to-...
Curry is amazing but relying on him to score 50 is not sustainable.
Had a dream that I came to take an exam unprepared so I had to take the test using my phone. Typing answers on the phone (about Red Rocks) was taking forever and full of typos, and was growing more concerned I wouldn’t be able to finish the test. I haven’t been a student in over 20 years. WTH?