SecOps Automation and Orchestration

No ratings

Presented at BSidesLisbon 2018 by

How SecOps Automation and Orchestration tackle today's cybersecurity challenges.A company, regardless of its size and market power, may go out of business or lose a lot of value because of a security incident on its information system. The number of vulnerabilities and the interest of cyber-attackers is only increasing. With the advent of the monetization of botnet cyber attacks or the installation of crypto-miners for example, the threats are going more varied and intensified, but less targeted. The vast majority of companies are digital and increasingly exposed on the Internet. The level of cyber exposure is also higher. The "Cyber" risk has become vital.Today, everything has changed and tomorrow everything will change even faster. Where manual analysis was sufficient, paradigms of risk assessment are moving towards more automation. But we need intelligent automation. This automation strategy also tends to address the drastic lack of competent cyber security resources and retention of talents. The automation of recurrent, time-consuming and low-value-added tasks will allow teams to focus on more complex and therefore more motivating topics. Bonus:Usage of open-source products will be highlighted and returns of experience will be shared:- SAST and DAST automation (processes and tools) in a CI/CD pipeline- Quick introduction to PatrOwl, a free, open-source and scalable Security Operations Orchestration platform