With the release of TLS 1.3 and the continued rise of external and internal encrypted traffic use, security teams are faced with the dilemma of finding threats within traffic streams that are increasingly obscured. Though many organizations decrypt and inspect traffic due to both security and regulatory concerns, there are many that are effectively blind to threats that are communicating via encrypted channels. However, the news is not all grim; join (ISC)² and Gigamon as we dive into discovery methodologies that can be used to detect threats within encrypted traffic without the need for decryption.
You’ll learn:
- Threat detection methodologies
- Encryption-agnostic detection techniques
- Detailed breakdown of what encrypted traffic can reveal
- Best practices