Analyst's View: Breaking Down Nation State Attacks with Network Flow Analysis

 View Only

Analyst's View: Breaking Down Nation State Attacks with Network Flow Analysis 

Sun May 24, 2020 06:27 AM


This isn't your typical tech session. In this second session of the Analyst's View series, you'll see a first-hand demonstration of response to real-world threats by an experienced QRadar expert and former Security Analyst.

Max Lewis, Federal Cybersecurity Engineer from IBM Security, depicts a scenario that utilizes the power of IBM Security QRadar and QRadar Network Insights (QNI). This investigation is demonstrated from the viewpoint of a security analyst, incorporating response tactics learned in the field. 

Join Max on this webinar to learn:

• How threat actors like APT-33 (Muddy Water) are using malicious files in emails to gain access

• How QNI can be used to analyze packets within network flows

• The steps an analyst takes to mitigate risk and analyze the full scope of the attack

• How using advanced network telemetry improves the effectiveness of your SOC's AI tools




#QRadar

Statistics

0 Favorited
15 Views
0 Files
0 Shares
0 Downloads