Disrupting Incident Response – Shrinking Detection Times From Weeks to Seconds

No ratings

Presented at CISOphoenix 2016 by

Data breach reports continue to highlight the substantial lag between incident occurrence and detection, with response mechanisms often kicking in weeks after the initial compromise. As spear phishing becomes the attack vector of choice, organizations can level the playing field by crowdsourcing attack detection to employees and helping IR teams react faster. This session makes the case for cultivating a trusted informant network. It also outlines how to supply attack intelligence in an actionable format and develop response mechanisms that minimize damage.