shhh be very quiet, i’m hunting threats · shhh be very quiet, i’m hunting threats . javvad...

23
Shhh be very quiet, I’m hunting threats Javvad Malik Senior Analyst, 451 Research

Upload: others

Post on 08-Aug-2020

24 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Shhh be very quiet, I’m hunting threats

Javvad Malik Senior Analyst, 451 Research

Page 2: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

A global syndicated research, data, advisory, certification, and professional services firm providing thought leadership and direct business value to the emergent digital infrastructure industry.

Page 3: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research
Page 4: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Escalating threat landscape

Page 5: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Firefighting

Page 6: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Lack of resources

Page 7: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Backup external resources

Page 8: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research
Page 9: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

0 5 9 14 18

Types of shelfware (End user only)

IDS

IPS

Vulnerability scanners / management

GRC

FIM

SIEM

IDAM / SSO / Priv mgmt

User awareness

AV

Forensics

Web filtering

WAF

Page 10: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research
Page 11: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

What is a threat?

Page 12: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research
Page 13: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Not quite

Page 14: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Get to the choppah?

Page 15: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research
Page 16: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Techniques

Page 17: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Process black / whitelisting

Page 18: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Threat intel / IOC’s

Page 19: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Isolation

Page 20: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Behavioral anomaly detection

aka ‘maths’

Page 21: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

The future

Page 22: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research
Page 23: Shhh be very quiet, I’m hunting threats · Shhh be very quiet, I’m hunting threats . Javvad Malik . Senior Analyst, 451 Research

Thank you

Javvad Malik Senior Analyst, 451 Research [email protected] @J4vv4D