Главная
Study mode:
on
1
Intro
2
History of Attack
3
Attack Framework
4
Attack Navigator
5
Scoring
6
Weight
7
Points
8
Threat Detection Report
9
Threat Modeling
10
Matrix and KPI
11
Sigma
12
Modular
13
OS Query
14
Tread Hunting
15
Red Canary
16
Atomic Friday
17
RedTeam Automation
18
Commercial
19
Key takeaways
20
Thank you
Description:
Explore the world of Security Operations Center (SOC) and its relationship with the MITRE ATT&CK framework in this 30-minute conference talk by Mathieu Saulnier at NorthSec 2019. Delve into the history of attacks, the ATT&CK framework, and its Navigator tool. Learn about scoring methodologies, threat detection reporting, and threat modeling techniques. Discover how to leverage the ATT&CK matrix for key performance indicators and explore tools like Sigma, ModularOS Query, and Red Canary for threat hunting and red team automation. Gain valuable insights from a seasoned security professional with extensive experience in SOC implementation, detection, and mentorship across major Canadian institutions.

The SOC Counter ATT&CK

NorthSec
Add to list