We’re an information security practitioner-focused company dedicated to providing impactful, high quality training and education. Founded by @chrissanders88.

Joined January 2015
263 Photos and videos
Detection Engineering with Sigma will teach you how to write and tune Sigma rules to find evil in logs using real-world examples that take you through the detection engineering process. networkdefense.co/courses/si…
1
68
Learn the process of conducting security investigations regardless of the toolset. networkdefense.co/courses/in…
67
Practical Threat Hunting is a structured system to ensure you’re never at a loss for what to hunt for, where to find it, and how to see it amongst the noise. networkdefense.co/courses/hu…
80
Ever wondered how attackers leverage WMI for persistence? In our latest Analyst Skills Vault lesson, Dan Marr demonstrates the technique and how to detect and investigate it.
1
3
9
958
You can learn more about our Analyst Skills Vault and sign up here: networkdefense.co/skillsvaul…. We have monthly and annual subscription options and add new videos every month.
69
Learn to use YARA to detect malware, triage compromised systems, and perform threat intelligence research. networkdefense.co/courses/ya…
3
203
Learn the process of conducting security investigations regardless of the toolset. networkdefense.co/courses/in…
1
122
New Skills Vault Lesson!: Dan Marr shows how attackers use ICMP tunneling for covert data transmission and how you can detect and investigate it.
1
2
7
273
You can learn more about our Analyst Skills Vault and sign up here: networkdefense.co/skillsvaul…. We have monthly and annual subscription options and add new videos every month.
77
Learning Splunk from documentation is one thing. Using it like a real security analyst is another. Our Splunk for Security Analysts course focuses on the practical skills analysts actually use in investigations.
1
1
5
247
You’ll work with real security datasets, not toy examples. Learn how to: • Onboard data • Extract meaningful fields • Search and pivot through events • Conduct real investigations networkdefense.co/courses/sp…
73
Applied Network Defense retweeted
This one is worth the price of admission just for the Windows process genealogy overview alone. Must-have knowledge for DF, SOC, and IR.
In our latest lesson, @DunhamSec demonstrates tools and techniques for identifying process tree anomalies, with a bonus overview of typical Windows process genealogy!
10
41
5,548
Learn the process of conducting security investigations regardless of the toolset. networkdefense.co/courses/in…
3
195
In our latest lesson, @DunhamSec demonstrates tools and techniques for identifying process tree anomalies, with a bonus overview of typical Windows process genealogy!
4
18
6,024
Learn the process of conducting security investigations regardless of the toolset. networkdefense.co/courses/in…
2
144
ICYMI 👇 Dan Marr breaks down how to detect malware communication using JA4 fingerprints with Wireshark, Suricata, and Zeek in our latest Skills Vault lesson.
1
1
5
937
You can learn more about our Analyst Skills Vault and sign up here: networkdefense.co/skillsvaul…. We have monthly and annual subscription options and add new videos every month.
157
Learn to wield the full power of regex for searching in your SIEM, building detection rules, and more. networkdefense.co/courses/re…
3
8
1,193
In our latest Skills Vault lesson, Dan Marr shows you how to use JA4 fingerprints to detect malware communication while leveraging tools like Wireshark, Suricata, and Zeek.
1
3
162
You can learn more about our Analyst Skills Vault and sign up here: networkdefense.co/skillsvaul…. We have monthly and annual subscription options and add new videos every month.
107