HC3 TLP White Threat Briefing – The Evolution of Cyber Hunt Processes - June 17, 2021

Agenda

  • HHS OIS Organization
  • The Early Days
  • Malspam Grouping
  • Hunting with TTPs
  • Examples of Hunting with TTPs
  • Hunting with TTPs: Frameworks (MITRE ATT&CK)
  • Hunting with TTPs: SolarWinds
  • Threat Hunting in a Federated Environment
  • Threat Feeds
  • STIX / TAXII
  • STIX / TAXII: STIX
  • STIX / TAXII: TAXII
  • Collaborations
  • Actionable Outcomes: “So What?”
  • Metrics

For help with Cybersecurity and Risk Advisory Services exclusively for AHA members, contact:

John Riggi

Senior Advisor for Cybersecurity and Risk, AHA

jriggi@aha.org

(O) +1 202 626 2272