Learn EDR Internals: Research & Development From The Masters
Master AI & Data—50% Off Udacity (Code CC50)
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore a comprehensive methodology for engineering detections to identify threat actors at various stages of an attack in this 51-minute LASCON conference talk. Delve into the structure, organization, processes, technologies, and key elements that contribute to a successful detection program. Learn about validation unit tests, automation, and addressing blind spots in your security strategy. Gain insights from incident response experiences and participate in a Q&A session to enhance your understanding of effective detection engineering practices.
Syllabus
Intro
Meet Dr Schnitzel
Agenda
Context
Validation Unit Tests
Automation
My Methodology
Blind Spots
Structure
Brainstorm
Incident Response
Questions
Taught by
LASCON