No video

Automating Incident Response Workflows with LimaCharlie

  Рет қаралды 170

LimaCharlie

LimaCharlie

Күн бұрын

As a security professional, you know that the ability to swiftly and effectively respond to threats is crucial. This live session will delve into the powerful capabilities of LimaCharlie, a SecOps Cloud Platform, for automating comprehensive Incident Response (IR) workflows. You’ll learn how to leverage LimaCharlie for a seamless and automated forensic triage acquisition, evidence processing, and forensic timeline generation.
The session will provide a detailed demonstration of automating IR tasks, emphasizing the integration of tools like Velociraptor for triage acquisition, Plaso for timeline generation, and Hayabusa for enhanced threat detection. Participants will explore how Hayabusa can be used within LimaCharlie to retroactively identify and analyze threats in event logs, significantly reducing the time from detection to response.
Key takeaways will include:
- Strategies for setting up automated IR workflows in LimaCharlie.
- Leveraging our Velociraptor extension to acquire key forensic evidence during a response.
- Leveraging our Plaso extension for processing forensic evidence and generating timelines.
- Techniques for integrating Hayabusa to extend LimaCharlie's forensic capabilities.
- Practical insights into accelerating forensic investigations and threat detection.
- A step-by-step IR playbook for recreating these techniques in your own LC orgs.
Join us to discover how automation can transform your security operations, making them more efficient and effective in the face of diverse cybersecurity challenges.

Пікірлер: 1
@AlistairEwingforensic-services
@AlistairEwingforensic-services 2 ай бұрын
It's the future, I would buy it out.
AI-powered workflow automation with Zapier co-founder Mike Knoop
10:38
Sequoia Capital
Рет қаралды 18 М.
Blue Food VS Red Food Emoji Mukbang
00:33
MOOMOO STUDIO [무무 스튜디오]
Рет қаралды 22 МЛН
wow so cute 🥰
00:20
dednahype
Рет қаралды 31 МЛН
LC101: Getting started with LimaCharlie
58:46
LimaCharlie
Рет қаралды 1,9 М.
Building SaaS on AWS - S7E2 - SaaS Networking with Amazon VPC Lattice
56:34
Wazuh Crash Course | 2 Hour+ Free Course(Must for Security Analyst)
2:05:31
Pedram Amini - Defender Fridays - June 21, 2024
30:01
LimaCharlie
Рет қаралды 40
CISSP 2024 exam changes in DETAIL!
1:40:42
Destination Certification
Рет қаралды 56 М.
What is Endpoint Detection and Response (EDR)?
5:34
IBM Technology
Рет қаралды 48 М.