Overview
Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Learn to detect and respond to security breaches before significant damage occurs in this 50-minute conference talk from HouSecCon 6 (2015). Explore the importance of visibility in cybersecurity, discover effective tools for breach detection, and understand the concept of symbiotic security. Delve into topics such as flow data analysis, pattern query language, and malware domain lists. Examine real-world examples of data exfiltration, port scans, and outbound connections. Gain insights into handling false positives, leveraging collective intelligence frameworks, and implementing real-time decision-making processes. Acquire practical knowledge on taking action and utilizing security analytics to enhance your organization's cybersecurity posture.
Syllabus
Intro
The problem
Visibility
The Solution
Choosing Your Tools
Tools
Tools can be greedy
Symbiotic security
The question
Flow Data
HD Moore
Pattern Query Language
Malware Domain List
Results
Symbiotic Example
Darknet Analytics
Data Exfiltration
Port Scans
Outbound Connections
False Positives
Poll
Walter
VirusTotal
McAfee Alerts
McAfee Timeline
Custom Integration
Collective Intelligence Framework
RealTime Decision Making
Taking Action
Security Analytics
LastCon
Questions