Do you actually know if you have been breached? Do you know your critical assets, what you can't see? Monitoring and logging is a simple construct, however most companies see it as a tick-box exercise. This presentation looks into the following, eyes on the ground approach. - answers the why, how , what - looks in to basics around asset management, critical data, users, end points, networks, etc - key missed areas, like policy, people, and physical. - summaries an approach based on a risk based approach. this will cover examples and be lighted hearted and funny at times. - questions - end