InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

Beyond the Buzzwords: A Quick Dive into Endpoint Detection & Response Forensics

Presented by

Keyonna Brown - Cybersecurity Solutions Engineer (Cisco)

About this talk

Detecting and responding to threats is a core function of cybersecurity, but it's more complex than it sounds. While buzzwords like Extended Detection & Response (XDR), Endpoint Detection & Response (EDR), and Network Detection & Response (NDR) are often discussed, understanding how to apply them to enrich investigations is key. Every environment has unique variables and goals, but they all share one common element: endpoints. Securing these devices, whether they're on-site or remote, starts with fundamental visibility. This session will show you how EDR serves as the cornerstone for all detection and response methodologies. We'll start with an overview of various frameworks, focusing on both the endpoint and the network. Then, we'll dive into a real-world forensic investigation of a Remote Access Trojan (RAT) called SharpRhino. Using the MITRE ATT&CK® Framework, we'll demonstrate best practices for detection and response, including a look at the tactics, techniques, and procedures used in this exploit, along with recommended mitigations. WiCyS is proud to provide members the opportunity to earn CPE/CEU credits for attending WiCyS Webinars live. To earn CPE/CEU credits with the following providers, you must meet the minimum requirements: - GIAC/(ISC)2: attend for a minimum of 45 minutes or the entirety of the webinar - CompTIA: attend for a minimum of 60 minutes or the entirety of the webinar (webinar topic must relate to the certificate being renewed) Attendees who meet the requirements can log into BrightTALK to print out their attendance certificates to submit for CPE/CEU credits.
WiCyS - Women in CyberSecurity

WiCyS - Women in CyberSecurity

51708 subscribers234 talks
WiCyS is part of the cybersecurity workforce solution.
Women in CyberSecurity (WiCyS) is a community where the recruitment, retention and advancement of women in cybersecurity doesn’t just happen—it's actively supported and celebrated. Join our channel to connect with industry leaders, gain valuable insights and elevate your career through our network of industry professionals and technical mentors dedicated to building a robust cybersecurity workforce.
Related topics