{"id":57436,"date":"2023-02-07T10:30:00","date_gmt":"2023-02-07T08:30:00","guid":{"rendered":"https:\/\/www.cocus.com\/?p=57436"},"modified":"2024-06-04T16:46:37","modified_gmt":"2024-06-04T14:46:37","slug":"siem-systems","status":"publish","type":"post","link":"https:\/\/www.cocus.com\/en\/siem-systems\/","title":{"rendered":"SIEM systems in detail: The most important building blocks of security"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"57436\" class=\"elementor elementor-57436 elementor-57098\" data-elementor-post-type=\"post\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-64f56580 elementor-section-full_width elementor-section-height-default elementor-section-height-default lottie-bg-no\" data-id=\"64f56580\" data-element_type=\"section\" data-e-type=\"section\" data-settings=\"{&quot;enable_lottie_background&quot;:&quot;no&quot;}\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-2226542f lottie-bg-no\" data-id=\"2226542f\" data-element_type=\"column\" data-e-type=\"column\" data-settings=\"{&quot;enable_lottie_background&quot;:&quot;no&quot;}\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-26c26fe elementor-widget elementor-widget-text-editor\" data-id=\"26c26fe\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>SIEM was yesterday, now comes TDIR?! A new four-letter acronym is circulating in the SOC (Security Operations Center) world: Threat Detection Investigation Response (TDIR). In this blog post, we explain what it&#8217;s all about and how it relates to SIEM, SOAR and other SOC systems.  <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-1d8961b elementor-section-full_width elementor-section-height-default elementor-section-height-default lottie-bg-no\" data-id=\"1d8961b\" data-element_type=\"section\" data-e-type=\"section\" data-settings=\"{&quot;enable_lottie_background&quot;:&quot;no&quot;}\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-c89cfa8 lottie-bg-no\" data-id=\"c89cfa8\" data-element_type=\"column\" data-e-type=\"column\" data-settings=\"{&quot;enable_lottie_background&quot;:&quot;no&quot;}\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-2df6438 elementor-widget elementor-widget-heading\" data-id=\"2df6438\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h4 class=\"elementor-heading-title elementor-size-default\">Traditional vs. Modern SIEM systems<\/h4>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-07b2930 elementor-widget elementor-widget-text-editor\" data-id=\"07b2930\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>A traditional security information and event management (SIEM) system typically consists of the following components:<\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-7d86b49 elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"7d86b49\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<svg aria-hidden=\"true\" class=\"e-font-icon-svg e-fas-circle\" viewBox=\"0 0 512 512\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M256 8C119 8 8 119 8 256s111 248 248 248 248-111 248-248S393 8 256 8z\"><\/path><\/svg>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Data collectors and data stores<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-4a68827 elementor-widget elementor-widget-text-editor\" data-id=\"4a68827\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>Data collectors are agents or software installed on network devices, servers and other enterprise systems to collect log data. Following data collection, log data is normalized, meaning it is standardized in format to facilitate data analysis and correlation. Storage of the normalized log data then usually takes place using relational databases such as MySQL or Oracle.  <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-706a52f elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"706a52f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<svg aria-hidden=\"true\" class=\"e-font-icon-svg e-fas-circle\" viewBox=\"0 0 512 512\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M256 8C119 8 8 119 8 256s111 248 248 248 248-111 248-248S393 8 256 8z\"><\/path><\/svg>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Correlation and analysis<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-8d31aa4 elementor-widget elementor-widget-text-editor\" data-id=\"8d31aa4\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>The next step is to identify the security events and anomalies by analyzing and correlating the data. However, this is usually a simple rule-based correlation, which can lead to a high number of false positives and false negatives. <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-cae33c1 elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"cae33c1\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<svg aria-hidden=\"true\" class=\"e-font-icon-svg e-fas-circle\" viewBox=\"0 0 512 512\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M256 8C119 8 8 119 8 256s111 248 248 248 248-111 248-248S393 8 256 8z\"><\/path><\/svg>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">Messages and Reports<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-7c36822 elementor-widget elementor-widget-text-editor\" data-id=\"7c36822\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>In case of a positive result, notification and reporting follows. Often, traditional SIEM systems have limited alerting and reporting capabilities, which can hinder security teams&#8217; ability to quickly identify and respond to incidents. <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-6cc3a9a elementor-icon-list--layout-traditional elementor-list-item-link-full_width elementor-widget elementor-widget-icon-list\" data-id=\"6cc3a9a\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"icon-list.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<ul class=\"elementor-icon-list-items\">\n\t\t\t\t\t\t\t<li class=\"elementor-icon-list-item\">\n\t\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-icon\">\n\t\t\t\t\t\t\t<svg aria-hidden=\"true\" class=\"e-font-icon-svg e-fas-circle\" viewBox=\"0 0 512 512\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M256 8C119 8 8 119 8 256s111 248 248 248 248-111 248-248S393 8 256 8z\"><\/path><\/svg>\t\t\t\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t\t<span class=\"elementor-icon-list-text\">User interface and integration with other security tools<\/span>\n\t\t\t\t\t\t\t\t\t<\/li>\n\t\t\t\t\t\t<\/ul>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-d05e64a elementor-widget elementor-widget-text-editor\" data-id=\"d05e64a\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>The user interface is the interface through which security teams interact with the SIEM system. Older SIEM systems often have simple and limited user interfaces and integration capabilities with other security tools. This can make sharing data and automating security incident response much more difficult.  <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0e3998c elementor-widget elementor-widget-text-editor\" data-id=\"0e3998c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>With the overall increase in problems with traditional SIEMs, modern SIEM systems are coming to the forefront <a href=\"https:\/\/www.cocus.com\/en\/threat-detection-enterprise-security-siem\/\">to detect attacks<\/a>.<\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-fd6753f elementor-widget elementor-widget-heading\" data-id=\"fd6753f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h4 class=\"elementor-heading-title elementor-size-default\">Modern SIEM systems: more intelligence, more flexibility, more data<\/h4>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-2edf344 elementor-widget elementor-widget-text-editor\" data-id=\"2edf344\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>Modern SIEMs can detect threats in real time compared to traditional SIEM systems because they can use machine learning and artificial intelligence to analyze event and log data. They can also be extended with threat intelligence and security orchestration, automation and response (SOAR) capabilities or integrated with various other security tools such as firewalls, intrusion detection systems and threat intelligence platforms, making it easier to implement a comprehensive security solution. Last but not least, modern SIEMs often have a cloud-based variant that solves data storage capacity and system availability issues.  <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-fc5032e elementor-widget elementor-widget-heading\" data-id=\"fc5032e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h4 class=\"elementor-heading-title elementor-size-default\">Increase security and efficiency with Threat Intelligence and SOAR<\/h4>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-9ff54ba elementor-widget elementor-widget-text-editor\" data-id=\"9ff54ba\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>The <a href=\"https:\/\/www.cocus.com\/en\/cyberattacks-are-becoming-more-complex-the-attack-surface-larger\/\">inflationary increase in threat types and techniques<\/a> triggers the need for companies to keep their security measures up to date and also continuously updated. To act effectively and efficiently, it pays to integrate Threat Intelligence and SOAR into SIEM solutions:<\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-039d305 elementor-widget elementor-widget-text-editor\" data-id=\"039d305\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>Threat Intelligence provides information about threat actor groups, attack techniques, as well as the tools used in cyberattacks. A modern SIEM system can use the threat intelligence feeds to enhance its correlation and analysis capabilities with detection rules. As a result, the SIEM system detects and combats threats earlier and more effectively. On the other hand, the threat intelligence solution can also use log data and security alerts provided by the SIEM to detect new threats and improve the threat intelligence feeds.   <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-4eb1d62 elementor-widget elementor-widget-text-editor\" data-id=\"4eb1d62\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>SOAR systems are solutions that help automate SOC tasks and processes. They integrate with various security tools and systems to automate repetitive, time-consuming and manual security tasks. The SOAR platform can leverage SIEM&#8217;s correlation and analytics capabilities to perform automated incident triage, find threats and respond to incidents.  <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-e19e4a4 elementor-widget elementor-widget-heading\" data-id=\"e19e4a4\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h4 class=\"elementor-heading-title elementor-size-default\">Towards Unified Security Operations - TDIR<\/h4>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-32f259d elementor-widget elementor-widget-text-editor\" data-id=\"32f259d\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>So what innovations does the &#8220;new kid on the block&#8221; &#8211; Threat Detection Investigation Response (TDIR) &#8211; deliver for SOCs? In principle, TDIR is the logical next evolutionary step of modern SIEM on the way to a unified SOC core system by integrating SIEM, SOAR and Threat Intelligence in one solution. The vision is to provide a Unified Security Operations System that consolidates existing security tools and solutions into one consistent view: One Source of Thruth and One Central Point of Control. This not only improves the information displayed to SOC analysts, but makes their jobs more efficient.   <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-852899f elementor-widget elementor-widget-heading\" data-id=\"852899f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h4 class=\"elementor-heading-title elementor-size-default\">Our Security Services<\/h4>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-17473fe elementor-widget elementor-widget-text-editor\" data-id=\"17473fe\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>The security product suite from our partner Splunk already contains the important building blocks for a TDIR: a market-leading SIEM, which includes threat intelligence, and a powerful SOAR solution. This setup will soon be complemented by a unified user interface: Splunk Mission Control. This can extend an existing implementation of Splunk Enterprise Security and SOAR, creating a Unified Security Operations solution.  <\/p>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-b75ac73 elementor-section-boxed elementor-section-height-default elementor-section-height-default lottie-bg-no\" data-id=\"b75ac73\" data-element_type=\"section\" data-e-type=\"section\" data-settings=\"{&quot;background_background&quot;:&quot;gradient&quot;,&quot;enable_lottie_background&quot;:&quot;no&quot;}\">\n\t\t\t\t\t\t\t<div class=\"elementor-background-overlay\"><\/div>\n\t\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-f6d425c lottie-bg-no\" data-id=\"f6d425c\" data-element_type=\"column\" data-e-type=\"column\" data-settings=\"{&quot;enable_lottie_background&quot;:&quot;no&quot;}\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-751f4c6 elementor-widget elementor-widget-heading\" data-id=\"751f4c6\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Would you like to find out more about the benefits of modern SIEM systems, TDIR or Splunk solutions?<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-8872e61 elementor-align-center elementor-widget elementor-widget-button\" data-id=\"8872e61\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"button.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div class=\"elementor-button-wrapper\">\n\t\t\t\t\t<a class=\"elementor-button elementor-button-link elementor-size-sm\" href=\"https:\/\/www.cocus.com\/en\/about-us\/contact\/\" element=\"blog-contact\" type=\"services\">\n\t\t\t\t\t\t<span class=\"elementor-button-content-wrapper\">\n\t\t\t\t\t\t\t\t\t<span class=\"elementor-button-text\">Contact us<\/span>\n\t\t\t\t\t<\/span>\n\t\t\t\t\t<\/a>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>SIEM was yesterday, now comes TDIR?! A new four-letter acronym is circulating in the SOC (Security Operations Center) world: Threat Detection Investigation Response (TDIR). In this blog post, we explain what it&#8217;s all about and how it relates to SIEM, SOAR and other SOC systems. Traditional vs. Modern SIEM systems A traditional security information and [&hellip;]<\/p>\n","protected":false},"author":24,"featured_media":57126,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"content-type":"","footnotes":""},"categories":[424,570],"tags":[586,426,518],"class_list":["post-57436","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security-en","category-news-en","tag-automation-en","tag-cybersecurity-en","tag-siem-en"],"_links":{"self":[{"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/posts\/57436","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/users\/24"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/comments?post=57436"}],"version-history":[{"count":0,"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/posts\/57436\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/media\/57126"}],"wp:attachment":[{"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/media?parent=57436"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/categories?post=57436"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cocus.com\/en\/wp-json\/wp\/v2\/tags?post=57436"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}