Thanks for a Great Incident Detection Summit

December 12th, 2009 admin

We had a great SANS WhatWorks in Incident Detection Summit 2009 this week! About 100 people attended. I’d like to thank those who joined the event as attendees; those who participated as keynotes (great work Ron Gula and Tony Sager), guest moderators (Rocky DeStefano, Mike Cloppert, and Stephen Windsor), speakers, and panelists; Debbie Grewe and Carol Calhoun from SANS for their excellent logistics and planning, along with our facilitators, sound crew, and staff; our sponsors, Allen Corp., McAfee, NetWitness, and Splunk; and also Alan Paller for creating the two-day “WhatWorks” format. I appreciate the …


Originally posted on TAOSecurity

 
  Related Posts
Tentative Speaker List for SANS Incident Detection Summit
Tentative Speaker List for SANS Incident Detection Summit
Thanks to everyone who attended the Bejtlich and Bradley Webcast for SANS yesterday. We recorded that Webcast (audio is now available ) to start a discussion concerning professional incident detection. I’m pleased to publish the following tentative speaker list for the SANS WhatWorks in Incident Detection Summit 2009 on 9-10 Dec in Washington,... 
Favorite Speaker Quotes from SANS Incident Detection Summit
Favorite Speaker Quotes from SANS Incident Detection Summit
Taking another look at my notes, I found a bunch of quotes from speakers that I thought you might like to hear. “If you think you’re not using a MSSP, you already are. It’s called anti-virus.” Can anyone claim that, from the CIRTs and MSSPs panel? Seth Hall said “Bro is a programming language with a -i switch to sniff... 
Wednesday is Last Day for Discounted SANS Registration
Wednesday is Last Day for Discounted SANS Registration
In my off time I’m still busy organizing the SANS WhatWorks in Incident Detection Summit 2009 , taking place in Washington, DC on 9-10 Dec 09. The agenda page should be updated soon to feature all of the speakers and panel participants. Wednesday is the last day to register at the discounted rate . I wrote the following to provide more information... 
APT Presentation from July 2008
APT Presentation from July 2008
Some of you may remember me mentioning the 2008 SANS WhatWorks in Incident Response and Forensic Solutions Summit organized by Rob Lee. I provided the keynote and really enjoyed listening to the presentations, which Rob has graciously made available at http://files.sans.org/summit/forensics08/ . One of the presentations, by Mandiant consultant... 
Notes from Tony Sager Keynote at SANS
Notes from Tony Sager Keynote at SANS
I took a few notes at the SANS Incident Detection Summit keynote by Tony Sager last week. I thought you might like to see what I recorded. All of the speakers made many interesting comments, but it was really only during the start of the second day, when Tony spoke, when I had time to write down some insights. If you’re not familiar with... 
Reintroducing The Alan and Mitchell Podcast
Well, we’re back at it again. Alan and I are doing the podcast again and we are enjoying it even more.  During this episode, Alan and I talk about: Is the CISO role really just a consulting gig? Microsoft Security Essentials free malware software Microsoft Forefront 2010 for Exchange and Alan’s leaving StillSecure The podcast is full... 
Review of Intelligence, 4th Ed Posted
Review of Intelligence, 4th Ed Posted
Amazon.com just posted my five star review of Intelligence: From Secrets to Policy, 4th Ed by Mark Lowenthall . From the review : I was an Air Force military intelligence officer in the late 1990s. I’ve been working in computer security since then. I read Intelligence, 4th Ed (I4E) to determine if I could recommend this book to those who... 
The Great PCI Security Debate of 2010: Part 2
The Great PCI Security Debate of 2010:  Part 2
This is part 2 of a conversation that CSO Online Senior Editor Bill Brenner agreed to record with Martin, sparked by a few comments Joshua Corman made likening PCI to ‘No Child Left Behind”.  Read More →
China Blocks Wired.com With ‘Great Firewall’
China Blocks Wired.com With ‘Great Firewall’
Chinese authorities have begun blocking Chinese internet users from reading Wired.com, according to a report from the Examiner . Internet users from Beijing to Shanghai found the site inaccessible starting Friday, reports Glenn Loveland , the Examiner ’s Beijing correspondent. The block adds Wired.com to a long list of sites that are or... 
Offshoring Incident Response
Offshoring Incident Response
A blog reader emailed the following question. We recently had a CISO change, and in the process of doing an initial ops review and looking at organizational structure, one of the questions the new CISO has is about the viability of offshoring incident response… I would be very interested in your views on this matter, and would appreciate... 
  Related Tweets from Twitter
mosesrenegade (mosesrenegade)  : RT @oneraindrop: Build Visibility In - my notes on a great OWASP podcast w @taosecurity & @manicode http://bit.ly/cgJ9rG..
Updated : 2010-03-12T02:15:57Z   |  Reply  |  View Tweet
manicode (Jim Manico)  : RT @oneraindrop: Build Visibility In - my notes on a great OWASP podcast w @taosecurity & @manicode http://bit.ly/cgJ9rG..
Updated : 2010-03-12T01:34:41Z   |  Reply  |  View Tweet
webtonull (Erlend Oftedal)  : just finished listening to #OWASP Podcast #61 - an interview with @taosecurity (Richard Bejtlich) . Recommended..
Updated : 2010-03-11T20:56:12Z   |  Reply  |  View Tweet
secureslinger (secureslinger)  : TaoSecurity: Einstein 3 Coming to a Private Network Near You? http://ow.ly/1hako #computer #security #news http://ow.ly/1hakK..
Updated : 2010-03-11T18:24:43Z   |  Reply  |  View Tweet
secureslinger (secureslinger)  : TaoSecurity: Traffic Talk 10 Posted http://ow.ly/1haib #computer #security #news http://ow.ly/1haiC..
Updated : 2010-03-11T18:24:11Z   |  Reply  |  View Tweet
  Related News from Digg
No comments yet.

Spam Protection by WP-SpamFree

TOP