Threat detection at scale using osquery and osctrl
Webinar
3h
Wednesday 21 July 15:45 - Wednesday 21 July 18:45
CATEGORY
Operaciones CSIRTs
LANGUAGE
Castellano
- Speaker: Javier Marcos de Prado
- Topic: Digital Forensics and Incident Response (DFIR).
- Content of the workshop:
- Introduction to the need to deploy detection infrastructure, in both corporate and production environments, using practical examples.
- List of the steps necessary for the automation and deployment of osquery as an agent within a distributed and scalable network.
- Showcase of the centralised server or TLS endpoint (osctrl), and the configuration and use of its different components for threat detection, incident response and fleet management.