Beyond The Alert:Evolution from ReactiveAlertHandling to ProactiveThreatHunting by Htet Naing Shein
Автор: BSides Myanmar
Загружено: 2025-01-01
Просмотров: 182
"Beyond The Alert: Evolution from Reactive Alert Handling to Proactive Threat Hunting"
Modern SOC operations are shifting from reactive alert handling to proactive threat hunting. While alert handling focuses on responding to known threats, threat hunting takes a more proactive approach, seeking out hidden threats within the network before they become detectable by traditional methods.
This presentation will highlight why proactive threat hunting is essential, outlining various threat hunting types and methodologies. It will also cover the key challenges SOC analysts face, including alert fatigue and resource constraints. The steps of threat hunting will be explained from building a threat content library to hypothesis creation, TTP collection, and analysis. The session will conclude with an industry case study, showcasing how these methods are applied in the daily operations of modern SOCs, following industrial standards.
#BSidesMyanmar2024 #InformationSecurityConference
Доступные форматы для скачивания:
Скачать видео mp4
-
Информация по загрузке: