Alfredo Reino
Alfredo Reino
operations (I)
Alfredo Reino
whoami
- https://areino.eu/
The problem
Source: “M-Trends 2018”
Landscape
62 Mins
“ 32 new tracked
adversaries for a total
of 232 in 2023
The goal
In summary:
• Risk reduction
• Cost reduction
Source: https://electrospaces.blogspot.com.es/2014/01/nsas-organizational-designations.html
Source: https://www.itnews.com.au/gallery/photos-csc-launches-sydney-security-operations-centre-387244
SOC mission
Security device
management (*)
Artefact analysis
Threat intelligence
Vulnerability
Vulnerability Remediation
Prioritization and
Basic capabilities
Identification Tracking
Reporting Vulnerability Context
Triggers
Extended capabilities
Analytics Threat Intelligence Intelligence
Modeling Exchange
Source: Accenture
Monitoring
and incident
response