Strategy 11: Turn up the Volume by Expanding SOC Functionality

Subscribers:
23,600
Published on ● Video Link: https://www.youtube.com/watch?v=VkR0CSRiueM



Category:
Show
Duration: 1:26:23
268 views
9


This final chapter of the book is no simple closer! "Turn Up the Volume by Expanding SOC Functionality" covers testing that your SOC is functioning as intended through activities such as Threat Hunting, Red and Purple Teaming, Adversary Emulation, Breach and Attack Simulation, tabletop exercises and more. There's even a discussion of cyber deception types and tactics, and how it can be used to further frustrate attackers. Join John, Kathryn, Ingrid, and Carson in this final chapter episode for some not to be missed tips!

This special season of the Blueprint Podcast is taking a deep dive into MITRE’s 11 Strategies of a World-Class Cyber Security Operations Center. Each episode John will break down a chapter of the book with the book’s authors Kathryn Knerler, Ingrid Parker, and Carson Zimmerman.

If you missed the previous episode on Strategy 10: Measure Performance to Improve Performance: https://youtu.be/0bxmeBFVZ4A

For more episodes, visit https://www.sans.org/u/1qz3

To learn more about the 11 Strategies of a World-Class Security Operations Center, visit here: https://www.mitre.org/news-insights/publication/11-strategies-world-class-cybersecurity-operations-center




Other Videos By SANS Cyber Defense


2023-07-28Bridging the Gap: Improving Rules Effectiveness by Integrating Detection and Response
2023-07-28Blueprint Live - 11 Strategies of a World-Class Cybersecurity Operations Center
2023-07-28Cloudy with a Chance of Breaches: OSINTAdventures in Tracing Exposed Credentials
2023-07-28Hunting OneNote Malware: A Practical Guide for Blue Teams
2023-07-28BlueHound: Blue Teams of the World Unite!
2023-07-28The Cyber Pilfer Chain: detecting and disrupting post-exploitation data theft
2023-07-28Keynote | How to Save Your SOC from Stagnation
2023-07-28Keynote | Leave Only Footprints: When Prevention Fails
2023-07-28Blurple Teaming: Open Source Continuous Security Testing in the SOC
2023-07-18Strategies of a World-Class SOC | Host: John Hubbard | July 18, 2023
2023-07-17Strategy 11: Turn up the Volume by Expanding SOC Functionality
2023-07-14Threat Hunting via DeepBlueCLI v3
2023-07-10Strategy 10: Measure Performance to Improve Performance | SANS Blueprint Podcast
2023-07-03Strategy 9: Communicate Clearly, Collaborate Often, Share Generously | SANS Blueprint Podcast
2023-06-26Strategy 8: Leverage Tools and Support Analyst Workflow | SANS Blueprint Podcast
2023-06-19Strategy 7: Select and Collect the Right Data | SANS Blueprint Podcast
2023-06-15Blueprint Live at the SANS Blue Team Summit 2023 [SPECIAL EPISODE]
2023-06-14Strategy 6: Illuminate Adversaries with Cyber Threat Intelligence | SANS Blueprint Podcast
2023-06-13The Dark Knight of OSINT, Matt Edmondson | Host: Rob Lee | June 13, 2023
2023-06-05Strategy 5: Prioritize Incident Response | SANS Blueprint Podcast
2023-05-31Join us for the SANS Blue Team Summit 2023 - June 12-13!



Tags:
security operations center
security operations center (soc)
soc functions
soc manager
soc manager training
soc training
blueprint podcast
soc functionality
threat hunting
red teaming
purple teaming
adversary emulation
breach simulation
attack simulation
cyber deception types
cyber deception tactics
soc podcast
cyber deception techniques
kathryn knerler
ingrid parker
carson zimmerman