in an exchange with @Encom and @corsairmo the other day, i compared #infosec to a secret society, in terms of the disconnect between the barriers to entry, million of open #cybersecurity positions and frustrated candidates struggling to break in. I thought that thought was worth exploring further
Entry into secret societies is through introduction by an existing adept, vouching for the prospective initiate. Once you manage that first introduction and your first job, you've completed your initiation and are part of the group.
Regardless of your certs, the more senior the adept making the introduction, the higher the initiate's entry level. Tough luck if you don't know any, though.
#infosec #cybersecurity #cloudsecrity
Hunting - Office 365 Unified Audit Log
"This is a key data source in any cloud investigation because it contains a record of all the activity that has occurred in Office 365 and Azure Active Directory."
"If we use this resource correctly, it can help us build a full story of a threat actor’s activity in Office 365."
https://techcommunity.microsoft.com/t5/microsoft-security-experts-blog/good-ual-hunting/ba-p/3718421
#hunting #advancedhunting #office365 #microsoft365 #sentinel #microsoftsentinel #casb #xdr #Azure #microsoft #microsoftsecurity #audit #ual #AzureActiveDirectory #Exchange #OneDrive #DefenderforCloudApps #siem #soar #cloud #cloudsecrity #data #kql
#hunting #advancedhunting #office365 #microsoft365 #sentinel #MicrosoftSentinel #casb #xdr #azure #microsoft #microsoftsecurity #audit #UAL #azureactivedirectory #exchange #onedrive #defenderforcloudapps #siem #soar #cloud #cloudsecrity #data #KQL