Left of Boom

No ratings

Presented at TechnoSecurity&DigitalForensics 2019 by

The term “Left of Boom” was made popular in 2007 in reference to the U.S. military combating improvised explosive devices (IEDs) used by insurgents in Afghanistan and Iraq. The U.S. military spent billions of dollars developing technology and tactics to prevent and detect IEDs before detonation, with a goal of disrupting the bomb chain. This is an analog to cybersecurity as we strive to increase the incident prevention capabilities of our security tools and where we can’t prevent attacks, augment prevention with incident detection and response tools. This session will discuss the urgent need for evidence in cybersecurity regarding the effectiveness of specific systems as well as the overall security systems of systems. Are my security tools preventing, detecting, logging, correlating, and alerting? Without evidence about our security effectiveness, how can we ever empirically answer these questions and get our organizations to the “left of boom?” The presenter will also discuss why we haven’t put a big enough dent in our risk profile and we’re wasting time, money, and resources by not getting value from these security tools.