SANS - SEC564 Red Team Exercises and Adversary Emulation
"softddl.org"
1-12-2020, 18:16
-
Share on social networks:
-
Download for free: SANS -
-
Jorge Orchilles | Duration: 4h+ | Video: H264 1280x720 | Audio: AAC 32 kHz mono | 512 MB | Language: English
In SEC564, you will learn how to plan and execute an end-to-end adversary emulation, including how to plan and build a red team program, leverage threat intelligence to map against adversary tactic, techniques, and procedures (TTPs), emulate those TTPs, report and analyze the results of red team exercises, and ultimately improve the overall security posture of the organization.
You will do all of this in a course-long exercise, in which we perform an adversary emulation against a target organization modeled on an enterprise environment. This environment includes Active Directory, email, web, and file servers, as well as endpoints running the latest operating systems. We will start by consuming cyber threat intelligence to identify and document an adversary that has the intent, opportunity, and capability to attack the target organization. You will discover the TTPs used by the adversary while creating an adversary emulation plan leveraging MITRE ATT&CK (Adversary Tactics, Techniques, and Common Knowledge).




The minimum comment length is 50 characters. comments are moderated