Cydea · @cydea
6 followers · 13 posts · Server infosec.exchange

We got together with security professionals a while ago to talk about security monitoring strategies.

But could they be more effective if combined with robust risk scenarios, aligned to your organisation?

cydea.com/blog/the-link-betwee

#PositiveSecurity #riskmanagement #SecurityMonitoring #riskscenarios

Last updated 1 year ago

Joe SÅ‚owik · @jfslowik
2211 followers · 631 posts · Server infosec.exchange

We're getting into "silly season" at the end of the year. With that in mind, I've thought about the things I did in 2022 that I found most interesting, helpful, or potentially impactful.

First, there's the paper on -driven I wrote and presented on at several events:
gigamon.com/content/dam/resour

Then, there was my @VirusBulletin paper on the actor responsible for the event, which I thought was neat as a deep-dive into organizational relationships that get masked in our tracking a single "adversary:"
virusbulletin.com/uploads/pdf/

On a personal front, I wrote up some prelimianry analysis on the attempted (?) incident as part of the conflict in - and there are still some items raised there for which we don't have answers several months after the incident was discovered:
pylos.co/2022/04/23/industroye

Finally, I wrote a blog for my employer diving into the idea of the in and that I think is helpful for analysts from to the
blog.gigamon.com/2022/08/05/re

I need to think this over a bit, but look for something covering the most insightful work of others, from my perspective, from the past year!

#cti #threathunting #xenotime #triton #industroyer2 #ics #ot #ukraine #falsepositive #detectionengineering #SecurityMonitoring #ir #soc

Last updated 2 years ago