Strategy 11: Turn up the Volume by Expanding SOC Functionality
This final chapter of the book is no simple closer! "Turn Up the Volume by Expanding SOC Functionality" covers testing that your SOC is functioning as intended through activities such as Threat Hunting, Red and Purple Teaming, Adversary Emulation, Breach and Attack Simulation, tabletop exercises and more. There's even a discussion of cyber deception types and tactics, and how it can be used to further frustrate attackers. Join John, Kathryn, Ingrid, and Carson in this final chapter episode for some not to be missed tips!
This special season of the Blueprint Podcast is taking a deep dive into MITRE’s 11 Strategies of a World-Class Cyber Security Operations Center. Each episode John will break down a chapter of the book with the book’s authors Kathryn Knerler, Ingrid Parker, and Carson Zimmerman.
If you missed the previous episode on Strategy 10: Measure Performance to Improve Performance: https://youtu.be/0bxmeBFVZ4A
For more episodes, visit https://www.sans.org/u/1qz3
To learn more about the 11 Strategies of a World-Class Security Operations Center, visit here: https://www.mitre.org/news-insights/publication/11-strategies-world-class-cybersecurity-operations-center