《自动化您的Cisco XDR工作流:从威胁搜索到发现和确认事件再到响应!.pdf》由会员分享,可在线阅读,更多相关《自动化您的Cisco XDR工作流:从威胁搜索到发现和确认事件再到响应!.pdf(133页珍藏版)》请在三个皮匠报告上搜索。
1、#CiscoLive#CiscoLiveChristopher van der Made,Engineering Product Manager Cisco XDREmail:Twitter:ChriscoDevNetChriscoDevNetGitHub:https:/ your Cisco XDR Workflows:from Threat Hunting,to Finding and Confirming Incidents,to Responding!Christopher van der MadeHalf Dutch,Half American,living in Rotterdam
2、(NL)Studied at University of Amsterdam(NL):Major:Neuroscience,Minor:Computer ScienceMasters:Information ScienceBorn and raised in Cisco:Joined Ciscos graduate program in 2015 as Associate Systems EngineerConsulting Systems Engineer for Security in Northern Europe team from 2016-2020Developer Advocat
3、e for Security in Developer Relations team(Cisco DevNet)from 2020-2022Engineering Product Manager for Cisco XDR(and SecureX),with focus on Automation from 2022 and onwardsHobbies:coding,brewing&drinking,cooking&eating,board sports.whoami#CiscoLive 2023 Cisco and/or its affiliates.All rights reserved
4、.Cisco PublicAgendaThreat Hunting,Incident Response and AutomationThe Cisco XDR PlatformData ModelAnalytics,Correlation and PrioritizationIncident ResponseAutomation,Automation,AutomationConcrete Use Cases and DemosConclusion and Next StepsBRKSEC-31165 2023 Cisco and/or its affiliates.All rights res
5、erved.Cisco Public#CiscoLiveEnter your personal notes hereCisco Webex App Questions?Use Cisco Webex App to chat with the speaker after the sessionFind this session in the Cisco Live Mobile AppClick“Join the Discussion”Install the Webex App or go directly to the Webex spaceEnter messages/questions in
6、 the Webex spaceHowWebex spaces will be moderated by the speaker until June 9,2023.12346https:/ 2023 Cisco and/or its affiliates.All rights reserved.Cisco PublicBRKSEC-31166There are two ways to view automation:as a potential weak link that can fail,or as an enabler to streamline your security opera