Overview
Explore a comprehensive 6-step ICS threat hunting model applied to real-world scenarios in this 1-hour 10-minute webinar. Gain insights from Dragos and SANS Institute experts as they delve into environment vs threat hunting, threat intelligence, and effective tools and techniques. Learn about different types of threat hunting, utilizing various intel feeds, and the importance of baselines and coverage. Discover how to initiate conversations around threat hunting, apply the threat hunting model, and understand the trend hunting approach. Engage with a lightning round of questions and explore the crucial aspects of people, process, and technology in industrial cybersecurity.
Syllabus
Introduction
Two Types of Threat Hunting
Environment vs Threat Hunting
Threat Intel
Questions
Favorite Threat Intel Feed
Using Open Source Reporting
Dragos Intel Feed
Commercial Intel Feed
Technical Reports
Activity Groups
Baselines
Coverage
Start the Conversation
Tools Techniques Approach
Purpose
Threat Hunting Model Applied
Trend Hunting Model Applied
Trend Hunting Approach
Lightning Round Question
People Process and Technology
Taught by
Dragos: ICS Cybersecurity