
21:26
Matt White - Chipola College, Marianna, FL

21:35
Daniel Shawver - Richmond Virginia

21:59
Dustin Kirkpatrick | REN-ISAC

22:01
Rob Stalder - CIO @ Coahoma Community College in Clarksdale, MS

22:21
Shane Albright, Principal Security Engineer, REN-ISAC (Indiana University)

22:29
If you have any technical difficulties, please send a private chat to “Panelists.”To open captioning in a separate, adjustable browser, please click on the arrow next to the “cc” button at the bottom of your window and select “View Full Transcript.”

22:29
Kimberley Dray - University of Victoria (BC, Canada)

22:38
Recordings and resources from this session will be available on the on the EDUCAUSE event archive page:https://events.educause.edu/webinar/2021/getting-started-with-attck

24:01
___________________________

24:02
Number of dedicated security staff at your institution?

24:11
0.5

24:17
2, myself and an analyst

24:32
3

24:33
0 dedicated.

24:39
3 (1 CISO and 2 IT Sec Staff)

24:47
13 Mix of Operations and Rick.

24:57
Risk*

25:12
As a reminder, be sure to select “Panelists and Attendees” in the chat dropdown to engage with everyone.

33:38
0.25 security staff

37:14
We have a single digit number in CISO and Privacy. A similar number in the medical school. Most departments & colleges have someone with security in their JD next to "other duties as assigned."

40:56
https://www.misp-project.org/galaxy.html

41:17
Thanks Brian!

41:17
Did anyone else just lose sound? Could be just me.

41:30
Rick: I've still got audio

41:37
ty

41:52
@Rick - I’ll reach out via a pm

42:36
I'm back. Sound now. Local tech problem :)

43:27
@Rick - Great!

46:34
https://medium.com/@sqrrldata/the-hunting-loop-10c7d451dec8

52:54
Re: Tools - If you haven’t already started with a SIEM/log centralization process I recommend taking a look at Graylog. - https://www.graylog.org/products/open-source

56:58
I was just reading about Pacu for exploiting AWS (a CLI tool): https://rhinosecuritylabs.com/aws/pacu-open-source-aws-exploitation-framework/

57:14
It's open source.

57:50
https://github.com/redcanaryco/atomic-red-team

57:53
thx great insights.

58:20
https://github.com/SigmaHQ/sigma

01:00:49
ATT&CK’s Slack if anyone wants to join. https://join.slack.com/t/mitreattack/shared_invite/zt-ny1a3yon-XkT_OS1IF~ZYrESq8Xtqjg

01:00:57
There is a session coming up at CPPC21 - https://events.educause.edu/special-topic-events/cybersecurity-and-privacy-professionals-conference/2021/agenda/mitre-attck-outsmart-cyberattackers-when-you-know-their-tricks

01:02:21
Our CAR analytics repo that I also mentioned https://car.mitre.org/

01:02:37
We appreciate your feedback! As we near the end of the session, please take note of our brief session evaluation and fill it out before leaving the online room today: https://survey.alchemer.com/s3/6215398/web2106

01:04:09
I guess one difficulty would be identifying long term threats vs. random vulnerability scan / sprays.

01:04:17
Thank you all, great webcast.

01:06:13
This has been a great session and discussion. Thank you.

01:06:23
Thank you for your participation! Before leaving, please don’t forget to fill out our evaluation: https://survey.alchemer.com/s3/6215398/web2106

01:06:25
Thanks all for joining!

01:06:26
Thanks for the panel.

01:06:28
Thank you Adam.

01:06:35
Recordings and resources from this session will be available on the on the EDUCAUSE event archive page:https://events.educause.edu/webinar/2021/getting-started-with-attck

01:06:38
Thank you all for joining!

01:06:45
Our next EDUCAUSE Webinar entitled, “Digital Learning as a Tool for Social Justice” will be held on June 17 at 1pm ET. https://events.educause.edu/webinar/2021/digital-learning-as-a-tool-for-social-justice

01:06:54
Thanks everyone. And, what do you mean south? I'm in central MN which is north of Toronto. :)