
Misconceptions of Threat Intelligence
mnemonic security podcast
10/05/20
•33m
About
Comments
Transcript
Featured In
How do we go from data to information, and from information to intelligence in the cyber world?
Who better to try to explain this than the former Director of the national communications and security agency in the Netherlands, Job Kuijpers, and his colleague and trusted advisor for Threat Intelligence, Piet Kerkhofs. After more than 15 years in the Dutch government's cyber program the two of them founded the cyber security company EYE, and in their conversation with Robby they share from their vast and hands-on experience working with threat intelligence.
In this episode, you’ll hear about the most common misconceptions about threat intelligence that they’ve come across, and how much and what should be automated in threat intelligence – and what shouldn’t.
They also discuss what’s required by an organisation buying/receiving threat intelligence, and how to evaluate if your organisation actually needs threat intelligence tools for its security work.
Technical level: 2/5
Host: Robby Peralta
Previous Episode

OODA Loops with Open Source
September 21, 2020
•36m
This time, Robby has invited his most recent online friendship and the uncrowned king of open source, Simon Simonsen, to the podcast. Simon also happens to have a lot of experience developing and utilising security architecture defense strategies, or as he calls it; utilising your home court advantage.
Simon has over a decade of experience in security and is working as a Senior Information Security Officer at the Danish energy trading house Danske Commodities (DC).
In his discussion with Robby, he explains his mostly open source approach to protecting his home court by using OODA Loops (Observe, Orient, Decide and Act) and by knowing that as long as you know your network better than any adversary, you should come out winning. He also shares his approach to making sure you do know your network better, as well as his journey with OODA Loops.
Hunting ELK: https://github.com/Cyb3rWard0g/HELK
The Open Source Security Events Metadata (OSSEM): https://github.com/OTRF/OSSEM
Security Onion: https://securityonion.net/
Sentinel ATT&CK: https://github.com/BlueTeamLabs/sentinel-attack
Technical level: 4/5
Host: Robby Peralta
Next Episode

Forensic Readiness | OT miniseries
October 12, 2020
•34m
Forensic Readiness | OT miniseries
We’re continuing our Operational Technology (OT) miniseries where we look into the security challenges in the OT space.
This time around, Robby’s invited a fellow security podcaster and former head of forensics at Volvo, Rikard Bodforss.
Rikard has been working with security in the Industrial Control Systems (ICS) and OT space for a long time, both from the private sector and as IT and Security Manager in the City of Gothenburg’s water and waste department. In his conversation with Robby he shares from his experience in the field, and explains what exactly forensic readiness is, and why it’s important. He also shares what he believes are some generic truths and recommendations for organizations that operate in ICS and OT environments.
Stay tuned for more episodes in our OT miniseries coming soon.
Technical level: 2/5
Host: Robby Peralta
Producer: Paul Jæger
If you like this episode you’ll love
Promoted




