Description: This talk presents a case study on taking actual security incidents, creating threat models, and using the models to create red team exercises. The resulting red team exercises are then used to evaluate our technical controls (SIEM, vulnerability management) and incident response. Quarter by quarter, driving up the security posture.
J Wolfgang Goerlich supports information security initiatives for clients in the healthcare, education, financial services, and energy verticals. As Vice President of Consulting Services for VioPoint, Wolfgang leads an information security team specializing in managed security services, regulatory compliance, and penetration testing. Wolfgang regularly advises and presents on the topics of managing security risks and securing systems throughout the development lifecycle.
Nick Jacob is the systems security engineer at a financial institute. He is also a contributor to the PoshSec, a PowerShell framework for applying security controls and performing incident response.
For More Information please visit : - http://www.irongeek.com/i.php?page=videos/bsidescleveland2014/keynote-dave-kennedy
http://bsidescle.com/
Tags:
Disclaimer: We are a infosec video aggregator and this video is linked from an external website. The original author may be different from the user re-posting/linking it here. Please do not assume the authors to be same without verifying.