Taking a Network Centric approach to Ransomware Detection and Mitigation

Presented by

George Sandford, Sr. Mgr, ThreatINSIGHT Customer Success + David Torres, ThreatINSIGHT Technical Success Manager - Gigamon

About this talk

The recent surge of ransomware attacks has shown a shift in tactics employed by threat actors looking to extort organizations. With an estimated 1 in 5 organizations likely to experience a ransomware incident, and EDR evasion tactics on the rise, a network centric approach has become essential to successful detection and response. Join this SANS Threat Hunting Solution session to explore how ransomware loitering allows security analysts to use network detection and response capabilities to discover malicious activity between initial compromise and encryption.

Related topics:

More from this channel

Upcoming talks (7)
On-demand talks (205)
Subscribers (15093)
Gigamon provides active visibility into physical and virtual network traffic, enabling stronger security and superior performance. Gigamon’s Visibility Fabric and GigaSECURE, the industry’s first Security Delivery Platform, deliver advanced intelligence so that security, network and application performance management solutions in enterprise, government and service provider networks operate more efficiently and effectively.