Intellimation: Guidance for Integrating Automation in Your Cyber Threat Intelligence Program

  Рет қаралды 337

SANS Digital Forensics and Incident Response

SANS Digital Forensics and Incident Response

4 ай бұрын

In 1983, Prince sang "A-U-T-O-MATIC, just tell me what to do," and discussed parallels between a physical relationship and the predicted brink of destruction set to occur in 1999. While said destruction did not occur, the internet experienced unprecedented growth in the late 90s, only to be upstaged by the maturation of cybercriminals and abuse of internet services. 40 years after the release of "Automatic," cybersecurity practitioners work daily to understand and outpace cybercriminals. Armed with cyber threat intelligence (CTI), cybersecurity teams collect, process, and analyze threat actor motives and tradecraft to detect suspicious activity and disrupt adversarial objectives. However, the number of threats drastically increase as technology continues to advance and more consumers own more internet-connected devices. How can CTI teams effectively contribute to business's cybersecurity posture and external customers while ingesting voluminous threat information? How do we ensure CTI analysts are not burdened by fatigue from performing repetitive, yet vital tasks? CTI teams should take a systematic approach to automate routine workflows. This presentation will provide guidance on implementing automation in common CTI practices, like maintaining awareness of threat actor tradecraft and detecting brand impersonation threats, while providing tangible examples using threat actor Muddled Libra. After attending this talk, attendees will have an understanding of how to identify, prioritize, and implement automation opportunities in CTI programs and proactively understand the limitations of these opportunities, impacting the effectiveness of CTI for their respective organizations.
View upcoming Summits: www.sans.org/u/DuS
SANS Cyber Threat Intelligence Summit 2024
Intellimation: Guidance for Integrating Automation in Your Cyber Threat Intelligence Program
Brett Tolbert, Senior Threat Intelligence Analyst, NBCUniversal

Пікірлер
SANS Threat Analysis Rundown (STAR)
59:41
SANS Digital Forensics and Incident Response
Рет қаралды 1,1 М.
Cybersecurity is GeoPolitical: Lessons From the Fight Against Mercenary Spyware Proliferation
46:57
SANS Digital Forensics and Incident Response
Рет қаралды 826
I CAN’T BELIEVE I LOST 😱
00:46
Topper Guild
Рет қаралды 86 МЛН
THEY made a RAINBOW M&M 🤩😳 LeoNata family #shorts
00:49
LeoNata Family
Рет қаралды 12 МЛН
OMG😳 #tiktok #shorts #potapova_blog
00:58
Potapova_blog
Рет қаралды 4,2 МЛН
OMG🤪 #tiktok #shorts #potapova_blog
00:50
Potapova_blog
Рет қаралды 18 МЛН
Creating a Threat Intelligence Program from Scratch Part 1
30:14
Thinking DFIRently From Entry to Specialty
1:37:51
SANS Digital Forensics and Incident Response
Рет қаралды 2,4 М.
SANS Webcast: Effective (Threat) Hunting Techniques
54:01
SANS EMEA
Рет қаралды 28 М.
What does AI mean to leadership | Milo Jones | TEDxIEMadrid
15:17
AI is going to change education forever. Are you ready for it? | Dan Fitzpatrick
21:57
Thinking Digital Conference
Рет қаралды 15 М.
VulnerabilityGPT: Cybersecurity in the Age of LLM and AI
1:18:28
SANS Offensive Operations
Рет қаралды 19 М.
Red + Blue = Purple: Our Journey Building a Dedicated Purple Team at Meta
36:09
SANS Offensive Operations
Рет қаралды 1,9 М.
The Complete Guide to Building AI Agents for Beginners
28:43
Как слушать музыку с помощью чека?
0:36
Ультрабюджетная игровая мышь? 💀
1:00
Blue Mobile 📲 Best For Long Audio Call 📞 💙
0:41
Tech Official
Рет қаралды 1 МЛН
ПОКУПКА ТЕЛЕФОНА С АВИТО?🤭
1:00
Корнеич
Рет қаралды 3,5 МЛН