Intelligent Response: Merging Threat Intelligence, MDR, and Incident Response for Maximum Impact

No ratings

Presented at CactusCon 13 by

As organizations transition to fully remote operations, traditional incident response (IR) methodologies struggle to keep up with new complexities and challenges. This talk will explore how we transformed our IR practice by embracing cloud-native tools like Velociraptor and SentinelOne to build a modern, scalable response framework. We'll dive into the integration of Threat Intelligence (TI) to establish a seamless, two-way feedback loop between IR and TI teams, enabling real-time collaboration, proactive threat hunting, and rapid response. Learn how to create a unified strategy that turns every investigation into an opportunity for deeper intelligence gathering and strategic insights—making your cyber security team not just reactive, but truly proactive.