Create Event
cancel
Showing results for 
Search instead for 
Did you mean: 

No Suits, No Ties - MDR and Incident Response - Going Equipped to Compromise (APAC)

Published on ‎2024-08-20 03:07 AM by Admin | Updated on ‎2024-08-21 10:36 AM

Join our exciting "No Suites, No Ties" webinar for Americas, on September 10th, at 15:00 ACT!

As cyber threats continue to evolve and grow in sophistication, organizations face increasing challenges in defending their digital assets. NO SUITS, NO TIES aims to shed light on how MDR and Incident Response Analysts play a pivotal role in proactively identifying and responding to these threats when they are least expected. 

Join the Check Point Infinity Global Services MDR and Incident Response Teams behind the curtain and uncover the pivotal role that our analysts play in day-to-day Security Operations, to hear firsthand accounts from our best analysts and responders.

This time we will talk about the tools that should be on your SOC and IR Teams radar when reviewing alerts, hunting, and responding.

The CPIRT responds to thousands of incidents across a year, a continuing trend that has been observed across this year and throughout the years is how ‘potentially unwanted applications’ and ‘utility’ programs are used in the compromise of an environment and the subversion of existing security controls.
A primary concern and consideration for SOC and IR Analysts is that while these applications have legitimate uses when used for good, they also have the ability to ‘kill’ or disrupt security software, provide access, or aid in discovering high-priority or vulnerable targets in a network.


This session will use examples from real cases where ‘utilities’ were and are being used in compromise incidents.

The session will cover:

  • The type of tools being used and how they are leveraged
  • How to interpret detection events when these tools are deployed
  • How much time you might have to respond once the first event is seen
  • What visibility may be lost when ‘killer’ or ‘disruption’ tools are used
  • What response and containment activities to focus on where these tools have been observed

Register here



Will you be attending?

No one has RSVP'd 'Yes' yet

Add to Calendar
Starts:
Mon, Sep 9, 2024 10:00 PM PDT
Ends:
Mon, Sep 9, 2024 11:00 PM PDT
Labels (2)
0 Kudos
0 Comments