Intellimation: Guidance for Integrating Automation in Your Cyber Threat Intelligence Program

  Рет қаралды 337

SANS Digital Forensics and Incident Response

SANS Digital Forensics and Incident Response

4 ай бұрын

In 1983, Prince sang "A-U-T-O-MATIC, just tell me what to do," and discussed parallels between a physical relationship and the predicted brink of destruction set to occur in 1999. While said destruction did not occur, the internet experienced unprecedented growth in the late 90s, only to be upstaged by the maturation of cybercriminals and abuse of internet services. 40 years after the release of "Automatic," cybersecurity practitioners work daily to understand and outpace cybercriminals. Armed with cyber threat intelligence (CTI), cybersecurity teams collect, process, and analyze threat actor motives and tradecraft to detect suspicious activity and disrupt adversarial objectives. However, the number of threats drastically increase as technology continues to advance and more consumers own more internet-connected devices. How can CTI teams effectively contribute to business's cybersecurity posture and external customers while ingesting voluminous threat information? How do we ensure CTI analysts are not burdened by fatigue from performing repetitive, yet vital tasks? CTI teams should take a systematic approach to automate routine workflows. This presentation will provide guidance on implementing automation in common CTI practices, like maintaining awareness of threat actor tradecraft and detecting brand impersonation threats, while providing tangible examples using threat actor Muddled Libra. After attending this talk, attendees will have an understanding of how to identify, prioritize, and implement automation opportunities in CTI programs and proactively understand the limitations of these opportunities, impacting the effectiveness of CTI for their respective organizations.
View upcoming Summits: www.sans.org/u/DuS
SANS Cyber Threat Intelligence Summit 2024
Intellimation: Guidance for Integrating Automation in Your Cyber Threat Intelligence Program
Brett Tolbert, Senior Threat Intelligence Analyst, NBCUniversal

Пікірлер
Cybersecurity is GeoPolitical: Lessons From the Fight Against Mercenary Spyware Proliferation
46:57
SANS Digital Forensics and Incident Response
Рет қаралды 826
SANS Threat Analysis Rundown (STAR)
59:41
SANS Digital Forensics and Incident Response
Рет қаралды 1,1 М.
Неприятная Встреча На Мосту - Полярная звезда #shorts
00:59
Полярная звезда - Kuzey Yıldızı
Рет қаралды 7 МЛН
Final muy increíble 😱
00:46
Juan De Dios Pantoja 2
Рет қаралды 45 МЛН
Вечный ДВИГАТЕЛЬ!⚙️ #shorts
00:27
Гараж 54
Рет қаралды 13 МЛН
ИРИНА КАЙРАТОВНА - АЙДАХАР (БЕКА) [MV]
02:51
ГОСТ ENTERTAINMENT
Рет қаралды 9 МЛН
AI is going to change education forever. Are you ready for it? | Dan Fitzpatrick
21:57
Thinking Digital Conference
Рет қаралды 15 М.
SANS Webcast: Effective (Threat) Hunting Techniques
54:01
SANS EMEA
Рет қаралды 28 М.
Thinking DFIRently From Entry to Specialty
1:37:51
SANS Digital Forensics and Incident Response
Рет қаралды 2,4 М.
Do NOT Learn Kubernetes Without Knowing These Concepts...
13:01
Travis Media
Рет қаралды 241 М.
What does AI mean to leadership | Milo Jones | TEDxIEMadrid
15:17
Creating a Threat Intelligence Program from Scratch Part 1
30:14
Where People Go When They Want to Hack You
34:40
CyberNews
Рет қаралды 1,2 МЛН
Red + Blue = Purple: Our Journey Building a Dedicated Purple Team at Meta
36:09
SANS Offensive Operations
Рет қаралды 1,9 М.
Best mobile of all time💥🗿 [Troll Face]
0:24
Special SHNTY 2.0
Рет қаралды 2,2 МЛН
Худший продукт Apple
0:53
Rozetked
Рет қаралды 135 М.
Собери ПК и Получи 10,000₽
1:00
build monsters
Рет қаралды 2,1 МЛН