Gå offline med appen Player FM !
What can we do today to prevent tomorrow's breach? - Michael Mumcuoglu - ESW #352
Manage episode 405248489 series 2794639
Defenders spend a lot of time and money procuring and implementing security controls. At the heart of SecOps and the SOC are technologies like XDR, SIEM, and SOAR. How do we know these technologies are going to detect or prevent attacks?
Wait for the annual pen test? Probably not a good idea.
In this segment, we'll talk with Michael Mumcuoglu about how MITRE's ATT&CK framework can help defenders better prepare for inevitable attack TTPs they'll have knocking on their doors.
Segment Resources:
- CardinalOps Contributes to MITRE ATT&CK for Fourth Consecutive Release
- ESG Report: Operationalize MITRE ATT&CK with Detection Posture Management
- Report: Enterprise SIEMs offer inadequate threat detection
- 2023 State of SIEM Detection Risk Report
In the enterprise security news,
- Axonius raises $200M and is doing $100M ARR!
- Claroty raises $100M and is doing $100M ARR!
- Crowdstrike picks up DSPM with Flow Security
- CyCode picks up Bearer
- Are attackers like lawyers?
- How a bank failed (with no help from a cyber attack)
- the FTC cracks down on customer data collection
- Apple’s car sadly won’t be a thing any time soon
- or maybe ever.
All that and more, on this episode of Enterprise Security Weekly.
Visit https://www.securityweekly.com/esw for all the latest episodes!
Show Notes: https://securityweekly.com/esw-352
398 episoder
Manage episode 405248489 series 2794639
Defenders spend a lot of time and money procuring and implementing security controls. At the heart of SecOps and the SOC are technologies like XDR, SIEM, and SOAR. How do we know these technologies are going to detect or prevent attacks?
Wait for the annual pen test? Probably not a good idea.
In this segment, we'll talk with Michael Mumcuoglu about how MITRE's ATT&CK framework can help defenders better prepare for inevitable attack TTPs they'll have knocking on their doors.
Segment Resources:
- CardinalOps Contributes to MITRE ATT&CK for Fourth Consecutive Release
- ESG Report: Operationalize MITRE ATT&CK with Detection Posture Management
- Report: Enterprise SIEMs offer inadequate threat detection
- 2023 State of SIEM Detection Risk Report
In the enterprise security news,
- Axonius raises $200M and is doing $100M ARR!
- Claroty raises $100M and is doing $100M ARR!
- Crowdstrike picks up DSPM with Flow Security
- CyCode picks up Bearer
- Are attackers like lawyers?
- How a bank failed (with no help from a cyber attack)
- the FTC cracks down on customer data collection
- Apple’s car sadly won’t be a thing any time soon
- or maybe ever.
All that and more, on this episode of Enterprise Security Weekly.
Visit https://www.securityweekly.com/esw for all the latest episodes!
Show Notes: https://securityweekly.com/esw-352
398 episoder
Todos os episódios
×Välkommen till Player FM
Player FM scannar webben för högkvalitativa podcasts för dig att njuta av nu direkt. Den är den bästa podcast-appen och den fungerar med Android, Iphone och webben. Bli medlem för att synka prenumerationer mellan enheter.