Cross-border Hunting of Sophisticated Threat Actors in Enterprise Networks – Challenges and Success Factors.
What used to be single device, event driven cyber forensic investigations has rapidly evolved to sustained global hunting operations across large networks with tens or hundreds of thousands of endpoints. Adversary hunting activities across the World is relatively simple when one organization operates under unified laws, regulations, policies and processes. However, global corporate enterprises operate with a variety of very distinct environments, subject to local regulations and distinct business unit priorities, policies, processes and business practices. In this digital landscape, investigating and recovering from a significant compromise can pose unexpected additional challenges. Join Mark as he dissects such an incident, exploring real world experiences towards the eradication of unwelcome guests.
About the speaker
Mark Barwinski
Read more …