Log in

mnemonic security podcast - Misconceptions of Threat Intelligence
share icon

Misconceptions of Threat Intelligence

mnemonic security podcast

10/05/20

33m

About

Comments

Transcript

Featured In

How do we go from data to information, and from information to intelligence in the cyber world?

Who better to try to explain this than the former Director of the national communications and security agency in the Netherlands, Job Kuijpers, and his colleague and trusted advisor for Threat Intelligence, Piet Kerkhofs. After more than 15 years in the Dutch government's cyber program the two of them founded the cyber security company EYE, and in their conversation with Robby they share from their vast and hands-on experience working with threat intelligence.

In this episode, you’ll hear about the most common misconceptions about threat intelligence that they’ve come across, and how much and what should be automated in threat intelligence – and what shouldn’t.

They also discuss what’s required by an organisation buying/receiving threat intelligence, and how to evaluate if your organisation actually needs threat intelligence tools for its security work.

Technical level: 2/5

Host: Robby Peralta

Send us Fan Mail

Previous Episode

undefined - OODA Loops with Open Source
OODA Loops with Open Source

September 21, 2020

36m

This time, Robby has invited his most recent online friendship and the uncrowned king of open source, Simon Simonsen, to the podcast. Simon also happens to have a lot of experience developing and utilising security architecture defense strategies, or as he calls it; utilising your home court advantage.

Simon has over a decade of experience in security and is working as a Senior Information Security Officer at the Danish energy trading house Danske Commodities (DC).

In his discussion with Robby, he explains his mostly open source approach to protecting his home court by using OODA Loops (Observe, Orient, Decide and Act) and by knowing that as long as you know your network better than any adversary, you should come out winning. He also shares his approach to making sure you do know your network better, as well as his journey with OODA Loops.
Hunting ELK: https://github.com/Cyb3rWard0g/HELK

The Open Source Security Events Metadata (OSSEM): https://github.com/OTRF/OSSEM

Security Onion: https://securityonion.net/

Sentinel ATT&CK: https://github.com/BlueTeamLabs/sentinel-attack

Technical level: 4/5

Host: Robby Peralta

Send us Fan Mail

Next Episode

Forensic Readiness | OT miniseries

We’re continuing our Operational Technology (OT) miniseries where we look into the security challenges in the OT space.

This time around, Robby’s invited a fellow security podcaster and former head of forensics at Volvo, Rikard Bodforss.

Rikard has been working with security in the Industrial Control Systems (ICS) and OT space for a long time, both from the private sector and as IT and Security Manager in the City of Gothenburg’s water and waste department. In his conversation with Robby he shares from his experience in the field, and explains what exactly forensic readiness is, and why it’s important. He also shares what he believes are some generic truths and recommendations for organizations that operate in ICS and OT environments.

Stay tuned for more episodes in our OT miniseries coming soon.

Technical level: 2/5

Host: Robby Peralta
Producer: Paul Jæger

https://mnemonic.no/podcast

Send us Fan Mail

Promoted