John Hubbard - What are some of the key tools covered in SEC450?
I've picked out what I believe to be the best of breed of all of the open source SOC tools. And they're actually shockingly good at this point. I remember, five or six years ago, you probably wouldn't have wanted to use the open source solutions for a lot of this stuff that we do in a SOC. But honestly, right now some of the open source that's free is maybe some of the best. And it's incredible where it has come over the years. I picked out some of those tools and put them all together so that people could see the mindset of someone who is maybe using those tools as a senior analyst or whatever.
So we have a course lab where we go through and we do a whole analysis of a situation…
--
Learn more about John Hubbard and the SANS SEC450 Blue Team Fundamentals course:
Full blog post: http://cyber-defense.sans.org/u/XoF
SEC450 course page: http://www.sans.org/u/XnC
John Hubbard’s bio: http://www.sans.org/u/XnH
Connect with John on Twitter: twitter.com/SecHubb