Hi [[ session.user.profile.firstName ]]

Hunting Rogue Elements: Fighting the Insider Threat

Customer data falling into the hands of cybercriminals. It’s the stuff of nightmares for any organisation. Today the insider threat has the potential to pose a bigger risk to cybersecurity than external hackers.

In this webinar, LogRhythm experts will take you through a real use case in which data worth millions of pounds was stolen. And they will explain how the incident could have been stopped with the right response and mitigation approach.

Join the webinar to:

• Learn how cybercrime has evolved so much that insider threats now rival external threats
• See a live display of activity generated by an insider threat
• Discover cybersecurity innovations that can detect and respond to insider threats in real time

Join us to get a better understanding of the insider threat – and how to combat rogue elements in your organisation.
Recorded Dec 6 2018 42 mins
Your place is confirmed,
we'll send you email reminders
Presented by
Kevin Eley, LogRhythm & Jonathan Zulberg, LogRhythm
Presentation preview: Hunting Rogue Elements: Fighting the Insider Threat

Network with like-minded attendees

  • [[ session.user.profile.displayName ]]
    Add a photo
    • [[ session.user.profile.displayName ]]
    • [[ session.user.profile.jobTitle ]]
    • [[ session.user.profile.companyName ]]
    • [[ userProfileTemplateHelper.getLocation(session.user.profile) ]]
  • [[ card.displayName ]]
    • [[ card.displayName ]]
    • [[ card.jobTitle ]]
    • [[ card.companyName ]]
    • [[ userProfileTemplateHelper.getLocation(card) ]]
  • Channel
  • Channel profile
  • Live demo - MITRE ATT&CK with LogRhythm Jun 17 2020 2:00 pm UTC 30 mins
    Dan Crossley, Manager, Enterprise Sales Engineering, LogRhythm
    This product demo follows the MITRE MITRE ATT&CK session earlier today. Join us for a technical demonstration that will show you how the LogRhythm platform can help you align to the MITRE ATT&CK framework.
  • MITRE ATT&CK 2020: An update in SIEM alignment Jun 17 2020 1:00 pm UTC 30 mins
    Andrew Hollister, Director of LogRhythm Labs EMEA
    Andrew will provide an overview of how security professionals and the businesses that employ them can benefit from integrating the MITRE ATT&CK framework into their SIEM. He will also expand on how feeding data from a wide set of technologies including endpoint detection and response (EDR), antivirus/anti-malware, intrusion detection/prevention systems (IDS/IPS), and other products can help businesses get the most out of their SOCs.
  • Live demo - Threat hunting with LogRhythm Jun 17 2020 11:00 am UTC 45 mins
    Jake Anthony, Enterprise Sales Engineer, LogRhythm
    Threat hunting refers to the process of proactively searching for advanced threats that may have eluded security systems. In other words, going after the ones that slipped through the net.

    In the session, you will learn some practical threat hunting tips and tricks using the LogRhythm NextGen SIEM Platform.
  • Logging & threat detection in the cloud: AWS, GCP, Microsoft Azure & Office 365 Jun 17 2020 9:00 am UTC 45 mins
    Dan Crossley, SE CISSP, & Jake Anthony, SE, LogRhythm
    The momentum behind the growth of cloud services is unstoppable, as businesses seek software, applications, and infrastructure that are more flexible and cost-effective. According
    to analysts, nearly half of all application spend is now invested in cloud services, and this cloud-first trend is only going in one direction.

    In this technical webinar LogRhythm’s Daniel Crossley and Jake Anthony will outline logging and threat detection strategies within cloud environments, including Amazon Web Services (AWS), Google Cloud Platform (GCP), Microsoft Azure and Office 365.

    The session will cover:
    • Logging: An overview of cloud logging mechanisms
    • Log ingestion: Log collection from cloud environments
    • Analytics: Threat detection use cases for cloud environments

    The aim of this session is to give you a better understanding of logging and threat detection in cloud environments
  • Maximising the productivity of your SOC with UEBA and SOAR Jun 16 2020 3:15 pm UTC 45 mins
    Ed Carolan, Manager, Enterprise Sales Engineering
    If your team is struggling with resource constraints, you’re probably facing longer-than-ideal response times. This puts your organisation at risk. In this webinar Ed Carolan, Manager, Enterprise Sales Engineering, will outline how you can maximise the benefits of time optimisation and reduce the burden on your team with SOAR and UEBA.

    Understand how you can:
    • Leverage UEBA and SOAR to increase automation within the SOC
    • Enable team collaboration and workflow automation
    • Arm your analysts to be more effective in their work
    • Increase the ROI from your SIEM
  • Cybersecurity: A CISO’s perspective Jun 16 2020 2:00 pm UTC 60 mins
    Moderater: Martin Smith MBE, (SASIG); James Carder, CISO LogRhythm; Craig Goodwin, CTRO Fujitsu; Michael Strong, CISO GCI
    Join our QA panel session to gain insight into how James Carder, LogRhythm CISO and our guest speakers build and maintain a cybersecurity culture at their organisations, how they manage board-level reporting, exec-level relationships, and how they achieve their goals as a security leader, while appealing to the board’s mission and the core mission of their business.
    Moderated by Martin Smith MBE, Chairman & Founder, The Security Awareness Special Interest Group (SASIG)

    You’ll hear:
    - Key metrics you can use to show the value of you security operations/program
    - Actionable tips to get board-level support for your security program
    - How to use a security maturity model to map your risk reduction over time
    - How to achieve and present cost predictability
  • Getting value from your NextGen SIEM project Jun 16 2020 11:00 am UTC 45 mins
    Andy Habibi-Parker, Director of Professional Services (EMEA) & Adam Thompson, LogRhythm
    In this webinar Andrew Habibi-Parker, Director of Professional Services for EMEA & APJ and Adam Thompson, Principal Professional Services Consultant will walk you through how a good deployment methodology can pave the way to SIEM success.

    Adam & Andrew will outline:
    - Five tips to ensure your SIEM project is a success
    - The LogRhythm value-focused methodology
    - What to expect from a Professional Services engagement
    - What you can do to prepare for a new SIEM project
  • How to map your risk reduction over time, and achieve cost predictability Jun 16 2020 9:00 am UTC 30 mins
    Jonathan Zulberg, VP Field Engineering, UK, EMEA & APJ, LogRhythm
    As a cybersecurity professional, your success rides on your ability to not only protect your organisation from damaging cyberattacks but demonstrate the meaningful business impact and value of your security program to your company’s board.

    In this webinar, LogRhythm’s Jonathan Zulberg, will introduce the LogRhythm Security Operations Maturity Model (SOMM), which was developed to help cybersecurity professionals assess their organisation’s current level of security maturity and plan for making improvements over time.

    You will also hear about the critical measures of security operations effectiveness and an outline of how to use the SOMM to prove the value of your security program to the board.
  • Insider threat: How a NextGen SOC can mitigate this risk (UAE webinar) Jun 10 2020 7:00 am UTC 60 mins
    Ashok Chokalingam & Mohan Raj
    To avoid a data breach, your organisation must detect and respond quickly to anomalous activity. The Verizon Data Breach Investigations Report, 2017 states that user-based threats are on the rise:

    •69% of organisations report incidents of attempted data theft — by internal threats.
    •81% of breaches involve stolen or weak credentials.
    •91% of firms report inadequate insider threat detection programs.

    User and entity behaviour analytics (UEBA) can help you monitor for known threats and behavioural changes in user data, providing critical visibility to uncover user-based threats that might otherwise go undetected.

    In this webinar, Mohan Raj and Ashok Chokalingam from our iMETA team at LogRhythm, will outline the various types of insider threats, the risk they pose to an organisation, the various contributors that may lead to this threat and how to identify and mitigate the risks.

    Join this webinar if you are based in the UAE or you have a specific interest in this topic.
  • Customer testimonial: Security Manager Recorded: May 22 2020 11 mins
    Kevin Merolla, Security Manager, Manufacturing
    We bought LogRhythm simply because it is awesome, it is fast and less expensive than Splunk
  • Customer testimonial: Information Security Manager Recorded: May 22 2020 5 mins
    Steve Bonek, TRIMDEX Holdings, LLC
    We find the single pane of glass and the ability to see everything that's going on in the environment a valuable feature
  • Customer testimonial: Security Analyst Recorded: May 22 2020 3 mins
    Tim Sueck, Security Analyst, Financial Industry
    LogRhythm improves our organisation by giving us insight into user activity and potential security threats
  • Five practical use cases to enhance threat detection and response Recorded: May 7 2020 44 mins
    Jake Anthony, Systems Engineer and Simon Hamilton, Client Manager, LogRhythm
    Without rapid and accurate threat detection, your mean time to detect and respond to damaging cyberattacks is compromised, allowing attackers time to steal your organisation’s sensitive data. From collecting security and log data to utilising machine analytics, your team can effectively reduce the time it takes to discover threats on your network.

    In our webinar Jake Anthony and Simon Hamilton from LogRhythm will outline five practical use cases to enhance threat detection and response with your existing tools.

    These include:

    • Integrating endpoint detection for improved threat hunting capabilities
    • Combining logical and physical authentication to spot anomalous access
    • Automating detection and response to Phishing attacks
    • Detecting possible indicators of bit-coin mining
    • Improving incident response times through audio and visual alerting

    Join this webinar: if you are a SOC manager, security analyst, security architect and you are responsible for managing your organisations cybersecurity.
  • Practical advice from SANS 2020 Women in Cybersecurity Survey Recorded: May 5 2020 59 mins
    Heather Mahalik of SANS, sponsored by LogRhythm
    Women are rising through the cybersecurity ranks to become recognised leaders, experts and mentors. The 2020 SANS Women in Cybersecurity Survey drew on the shared experiences of successful women in cybersecurity to provide practical advice on becoming leaders in their organisations.

    Join this webinar to learn why opportunities for women in security have never been better, including survey data points such as:

    - More than 70% of respondents feel respected by their teammates
    - 64% report that they are sought out for their opinions on cybersecurity issues
    - 37% are advancing rapidly, moving into a senior position within one to four years

    In this webinar, we'll discuss gender bias, the effects of mentorship and practical advice on how to get ahead.
  • How to get started with a secure remote workforce Recorded: Apr 30 2020 47 mins
    James Carder, Andrew Hollister, and Brian Emond (LogRhythm)
    In light of COVID-19, we’ve seen businesses across industries implement remote work policies. This brings about new security concerns, many of which either weren’t considered or prioritised beforehand.

    During this webinar LogRhythm experts including James Carder, CSO and VP of LogRhythm Labs, will review best practices for securing a remote workforce and what to expect when your employees make this kind of shift, whether it needs to happen now or in the future. Specific topics include:

    - Getting started with log collection for remote systems
    - Priority use cases you should employ, such as monitoring VPN access and collaboration tool security
    - The types and levels of activity you should expect to see on your network, depending on your industry

    We will also discuss the impacts we’ve seen from the rush to support remote work due to COVID-19. These reveal lessons that others can implement now or work into a future plan to support a rise in remote workers.
  • Achieving a high-performing SOC Recorded: Apr 21 2020 60 mins
    Kev Eley, Client Director, LogRhythm and Dan Crossley, SE CISSP, LogRhythm
    As cyberattacks continue to make headlines worldwide, organisations that neglect the importance of fusing a pervasive security culture containing effective SecOps processes with skilled team players committed to do their very best are making a catastrophic error in judgement.

    A proliferation of security technologies alone – even if they are correctly configured – will never stop cyberattacks or protect an organisation from a possible data breach, unless the correct playbooks are implemented and consistently operated by a skilled, motivated team with full backing of the board of directors.

    Achieving a high-performing cybersecurity team requires recruiting and retaining talent, developing the right strategy and fostering a culture of success. All while managing critical relationships with the board and other fickle stakeholders.

    In this webinar, LogRhythm's Dan Crossley and Kevin Eley are joined by guest industry speakers Michael Brown and Andy Johnson as they discuss the key attributes of a successful SOC.
  • How LogRhythm implemented the WFH change Recorded: Apr 14 2020 59 mins
    Rex Young, LogRhythm CIO; Zack Rowland, LogRhythm Strategic Integration Engineer
    As a result of recent events and the COVID-19 pandemic, most organisations are implementing work-at-home policies. Yet company-wide remote environments present unique challenges for IT and cybersecurity professionals.

    In this on-demand webinar, Rex Young, chief information officer, and Zack Rowland, strategic integrations engineer, reveal how LogRhythm rapidly migrated employees from in-office to remote work.

    They discuss the steps LogRhythm took to prepare for such an event and how they put that plan into action as remote work became necessary.

    Topics covered during this webinar include:

    - How LogRhythm prepared its IT and security operations to accommodate
    a global work-from-home event
    - How to balance business continuity with security measures
    - IT and security implications to consider when implementing a work-at-home set-up
  • 4 current phishing techniques: Real-life examples and tips for detection Recorded: Apr 8 2020 89 mins
    Randy Franklin Smith of Ultimate Windows Security | Eric Brown and Brian Coulson of LogRhythm
    Many successful attacks begin with a phishing email that a user falls for. That’s why MITRE prominently features Spearphishing (T1192) as an Initial Access technique in ATT&CK.

    In this webinar, LogRhythm and Ultimate Windows Security explore the latest phishing techniques used by attackers and how MITRE ATT&CK can help detect and remediate these threats.

    In this webinar, we’ll show you actual examples of phishing attempts executed through:
    - Legitimate file-sharing sites
    - Fake Office 365 websites
    - Spoofed executive emails
    - The baseStriker vulnerability

    Register now to learn more.
  • Dark clouds and silver linings: Countering the threat from cloud borne attacks Recorded: Mar 31 2020 28 mins
    Andrew Hollister, Director LogRhythm Labs EMEA, Kev Eley, Client Director, LogRhythm and Dan Crossley, SE CISSP, LogRhythm
    Cloud computing has delivered on its promise. By moving operations online, organisations have become more agile and have accelerated time to market for innovations. The number of organisations migrating to the cloud continues to accelerate. Gartner predicts that 28 per cent of spending in key IT segments will shift to the cloud by 2022.

    In this webinar, LogRhythm’s Andrew Hollister, Dan Crossley and Kevin Eley consider the cybersecurity implications for organisations that are seeking to embrace the cloud for doing business. And they explore the options available to organisations to ensure the risks from cloud-borne cyberattacks are adequately reduced and mitigated.

    Attend this webinar: if you are a SOC manager, security analyst, security architect and you are responsible for stopping cyberattacks to protect your organisation. Also if you have cloud-first initiatives in your business.
  • When ATT&CK is the best form of defence Recorded: Feb 4 2020 49 mins
    Kev Eley, Client Director, LogRhythm and Dan Crossley, SE CISSP, LogRhythm
    “If you know the enemy and know yourself you need not fear the results of a hundred battles” Sun Tzu. The MITRE ATT&CK knowledge base provides a mechanism to understand the tactics employed by adversaries to compromise systems and ultimately exfiltrate data.

    In this webinar, Kev Eley and Dan Crossley outline genuine attack scenarios in the context of ATT&CK and discuss effective techniques for thwarting bad actors.

    Watch this webinar: if you are a SOC manager, security analyst, security architect and you are responsible for stopping cyberattacks to protect your organisation.
Build your security operations centre on a strong foundation
We know your job isn’t easy. That’s why we combine log management, machine learning, SOAR, UEBA, and NDR to give you broad visibility across your environment so you can quickly uncover threats and minimise risk.

But a mature SOC doesn’t just stop threats. With LogRhythm, you’ll easily baseline your security operations program and track your gains — so you can easily report your successes to your board.

Hear best practices, see technology demos, listen to speaker panels on our European BrightTALK channel.

Visit our website for more information:
http://www.logrhythm.com/

Embed in website or blog

Successfully added emails: 0
Remove all
  • Title: Hunting Rogue Elements: Fighting the Insider Threat
  • Live at: Dec 6 2018 9:00 am
  • Presented by: Kevin Eley, LogRhythm & Jonathan Zulberg, LogRhythm
  • From:
Your email has been sent.
or close