05/08/2020
Free training with O'Reilly:
Defensive cybersecurity fundamentals
Utilizing the kill chain
May 11, 2020 10:00am PT / 1:00pm ET
Everyone talks about the intrusion kill chain (sometimes called the “cyber kill chain”)—a model for actionable intelligence in which defenders align enterprise defensive capabilities to the specific processes an adversary might undertake to target that enterprise. However, much of what’s discussed publicly is misinformation and scare tactics. Join expert Amanda Berlin to learn the most effective steps you can take to protect your organization from the vast majority of threats with defensive mitigation and monitoring. Through use cases such as ransomware, data exfiltration, and lateral movement, you’ll see how to improve the standard of defense at each level, then discover step-by-step what you can accurately cover using the kill chain by working through use cases that outline the specifics of attacks. You'll also gain hands-on experience through tabletop exercises and drills to strengthen your understanding. Much of what’s covered will be hands-on walk-throughs in a Microsoft Windows environment. Windows domains are the most popular target for attackers as they’re frequently the most insecurely configured.
Amanda Berlin is cohost of the Brakeing Down Security podcast and author of the blue team best practices handbook, Defensive Security Handbook. Join her to discover the most effective steps you can take to protect your organization from the vast majority of threats—and what you can accurately cover using the cyber kill chain.
Amanda Berlin explores the most effective steps you can take to protect your organization from the vast majority of threats with defensive mitigation and monitoring.