29 min listen
EP108 How to Hunt the Cloud: Lessons and Experiences from Years of Threat Hunting
EP108 How to Hunt the Cloud: Lessons and Experiences from Years of Threat Hunting
ratings:
Length:
26 minutes
Released:
Feb 13, 2023
Format:
Podcast episode
Description
Guest: John Stoner, Principal Security Strategist @ Google Cloud Topics: Please define threat hunting for us quickly, the term has been corrupted a bit What are your favorite beginner hunts to jump start the effort at a new team? How to incorporate hunting lessons in detection? What are the differences for hunting in the cloud? Are there specific data sources you prefer to have access to when threat hunting? In the cloud? Should every organization threat hunt? What are traits you might look for in a threat hunter? Resources: “The Who, What, Where, When, Why and How of Effective Threat Hunting” Awesome Threat Detection and Hunting “My “Aha!” Moment - Methods, Tips, & Lessons Learned in Threat Hunting” video NIST Computer Security Incident Handling Guide 800-61 “Threat Hunting Is Not for Everyone” (2020) “Formulating An Intelligence-Driven Threat Hunting Methodology” video
Released:
Feb 13, 2023
Format:
Podcast episode
Titles in the series (100)
EP64 Security Operations Center: The People Side and How to Do it Right: Guest: @ Principal Security Strategist, Google Cloud Topics: What are some tenets of good SOC training? How does this depend on the SOC model (traditional L1/L2/L3, virtual, etc)? How do you make SOC training realistic? Should training be about... by Cloud Security Podcast by Google