Securing FinanceCyberattackers and malicious insiders increasingly rely on living-off-the-land techniques. Leveraging native connectivity to move through the network reduces their risk of detection. Financial organisations have long been targets of these attacks—yet the problem remains unsolved. This is partly because there is an ever-changing inventory of credentials and connections hidden in the environment that enable lateral movement and network persistence. Automated credential harvesting and mapping tools make their job easier. Can you see what attackers can see once they’ve established a beachhead? Can you strip out excess, high-risk conditions? This session will examine lateral movement methods and how to eliminate the fuel that enables it.Learning Outcomes:Examine the problem of lateral movement in a new waySee how interrupting the human decision-making process can alleviate the need to match IoCsGain new insight on prevention for early stages of the cyber killchainConsider ways that core functions such as AD management, PAM and vulnerability management can be augmentedSee how lateral movement hygiene can also improve attack detection