SEC504: Hacker Tools, Techniques, and Incident Handling

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usConnect, learn, and share with other cybersecurity professionals
Engage, challenge, and network with fellow CISOs in this exclusive community of security leaders
Become a member for instant access to our free resources.
Sign UpMission-focused cybersecurity training for government, defense, and education
Explore industry-specific programming and customized training solutions
Sponsor a SANS event or research paper
We're here to help.
Contact UsKevin Kennedy is senior vice president of products at Vectra. With more than 27 years in technology product management, more than half of those years in security, Kevin has seen it all. From Threat Intel, Encryption and Secure Web Gateways to Content, Email, Firewall, and Network security to today leading the Threat Detection and Response product vision and strategy for Vectra. Not afraid to challenge the status quo, but respectful of the challenges security teams face, Kevin approaches product with a healthy dose of empathy - staying true to the problem to be solved - and effectively balancing innovation and practicality. Prior to Vectra, Kevin launched his career in threat intel at IronPort. He continued to hone his security product management skills with stints at Juniper, Cisco, and Agari Data. Kevin bleeds maize and blue graduating from the University of Michigan with a BSE in computer engineering.
Explore content featuring this instructor’s insights and expertise.
Over the past few years, ransomware has become one of the defining cyber threats for organizations of all sizes. Organizations have changed their response processes, insurance policies, and staffing requirements based on this pervasive threat. Ransomware operators have made it clear that no industry or organization is safe, as they look to exploit any weakness in Internet-facing devices and services to get in and wreak havoc.
Today’s security operations (SecOps) teams are tasked with protecting progressively sophisticated, fast-paced cyberattacks. Detecting, investigating and stopping advanced hybrid cyber-attacks at scale and speed is becoming increasingly unsustainable with the complexity of people, process and technology SecOps teams have at their disposal. A perfect storm of an ever-expanding attack surface, highly evasive and emerging attacker methods, and increasing SOC analyst workloads is resulting in a vicious spiral of more for SOC teams.In this “Ask the Expert” Webinar, we will explore an independent global study of 2,000 SecOps analysts, and dive headfirst into the spiral of more that SOC analysts face. Join Matt Bromiley of SANS and the author of the State of Threat Detection research Mark Wojtasiak from Vectra AI. We promise it won’t be a regurgitation of stats from the report (you can read it for yourself). Instead, let’s talk about the “why” the spiral of more exists and how we break it before more SOC analysts hit their own breaking point and quit.