LEAD Framework: Revamping Threat Intelligence
Filip Stojkovski
Runtime: 29:59
The most common obstacle for today's threat intelligence program is for it to fall into the "non-essential" bucket of security controls. Adobe has been using threat intel for many years as part of the SOC, incident response and threat hunting teams — which are some of the uses cases where it has been the most successful. However, the real obstacles are using it outside these use cases. To tackle this problem, this presenter created a "LEAD" threat intelligence framework founded on a unique maturity model that combines machine learning with automation and security orchestration. The four fundamental principles on which the LEAD framework stands are: relevant, efficient, analysis-driven and deliverable. Attend this session to learn how the LEAD framework works and what makes this approach successful.
Related Videos
Priority Intelligence Requirements: Your Key to Working Smarter with More Impact
Research & Threat Intelligence
Priority Intelligence Requirements: Your Key to Working Smarter with More Impact
Thomas Schmitt
AB-InBev
38:41
Prosecuting Cyber Espionage: Insights and Impacts from Cyber Espionage Indictments
Research & Threat Intelligence
Prosecuting Cyber Espionage: Insights and Impacts from Cyber Espionage Indictments
Matthew Dahl
CrowdStrike
27:32
REvil: A Prolific Ransomware as a Service
Research & Threat Intelligence
REvil: A Prolific Ransomware as a Service
Multiple Speakers
CrowdStrike Inc.
27:27
{Will be replaced by the modal content}