Overview
Learn how to effectively map cloud security incidents to MITRE ATT&CK® techniques in this 20-minute conference talk from fwd:cloudsec. Explore the process of creating technique mappings through real-world examples of Scattered Spider and APT29 incidents, guided by MITRE ATT&CK's Cloud Lead and cybersecurity engineer Casey Knerr. Discover practical tips, common pitfalls, and best practices for analyzing data and chaining techniques together to create meaningful, actionable insights for defenders. Gain valuable knowledge about bringing together Cyber Threat Intelligence (CTI), detection, and other stakeholders to better understand and track cloud security threats. Perfect for security professionals looking to enhance their understanding of cloud TTPs and improve their incident mapping skills within the MITRE ATT&CK framework.
Syllabus
I'm Doing My Part! By Mapping Cloud Incidents to ATT&CK Techniques - Casey Knerr
Taught by
fwd:cloudsec