Your aim w/ a solid #SOC metrics program is operational control. When you see something happening in your data (e.g. work time is up for suspicious logins) you know what levers to pull to bring resolution to a given problem.
"If we do this, *that* will happen."
That's the aim.
In case you were wondering if all that security awareness training was working, listen to @BradSmi talk about how @Microsoft got hung up on, trying to notify customers of the Solarwinds breach.
youtu.be/IPozXgMqMag?t=7312
Time for some virtualization cyber hygiene, patch your VMware infrastructure and for god sake don't make it internet accessible, VPNs are your friend! There is POC code available, its race between your patch and you being targeted #CVE-2021-21972
ow.ly/wHTy50DJTZG
Writing up a few takeaways from the Senate hearing on #Solarwinds but I wanted to give a shout-out to Kevin Mandia at @FireEye. I felt his testimony reflected a goal of improving security & communications in the US & as a vendor, the 1st to disclose is terribly hard, thank you.
As excited as we are for Adobe Flash to go away, if you or users in you environment are Google Alerts users like I am, be careful of those news indexs being used to spread malware ow.ly/Llvg50DHRbP
The good folks at @redcanary are giving you the chance to be proactive if you have Macs in your environment, their great technical breakdown here: redcanary.com/blog/clipping-…
As sick as we all get about hearing about phishing & BEC, the game continues, the use of Chrome extensions to exfil data & the tried and true manipulating URLs to bypass detection seems like a painful one-two punch
@ZDNetow.ly/fnpE50DGROk
GreatHorn: ow.ly/xUc750DGROl
Listening to @limbagoa on @thecyberwire continues to make me wonder how we encourage people to include basic technological understanding in their voting criteria. If software is eating the world, tech policy is just as important as fiscal policy castbox.fm/vb/342115224
Catching up on @SmashinSecurity podcast about @Apple's new privacy policy for developers and wondering why Apple can't audit apps versus putting the hope on self reporting on developers? ow.ly/vqIM50CZPMN
Supporting humanitarian scientific research is important to me. That's why I donated 2 months of my computer's processing time to @WCGrid last month. Join me! autotweet.worldcommunitygrid…
Today's the last day to enter for a chance to win an all-expenses-paid trip to #RSAC 2020! If you're an analyst or entry-mid level #cybersecurity pro looking to level-up your skills, this #raffle is for you! #SinkOrSwimlanebit.ly/34PaY1D