Logo

Getting started with ATT&CK - Shared screen with speaker view
Matt White
21:26
Matt White - Chipola College, Marianna, FL
Daniel Shawver
21:35
Daniel Shawver - Richmond Virginia
Dustin Kirkpatrick
21:59
Dustin Kirkpatrick | REN-ISAC
Rob Stalder
22:01
Rob Stalder - CIO @ Coahoma Community College in Clarksdale, MS
Shane Albright
22:21
Shane Albright, Principal Security Engineer, REN-ISAC (Indiana University)
_Technical Support, Jason Martin
22:29
If you have any technical difficulties, please send a private chat to “Panelists.”To open captioning in a separate, adjustable browser, please click on the arrow next to the “cc” button at the bottom of your window and select “View Full Transcript.”
Kimberley Dray (UVic)
22:29
Kimberley Dray - University of Victoria (BC, Canada)
_Technical Support, Jason Martin
22:38
Recordings and resources from this session will be available on the on the EDUCAUSE event archive page:https://events.educause.edu/webinar/2021/getting-started-with-attck
EDUCAUSE Producer, Jamie Farrell (she, her, hers)
24:01
___________________________
EDUCAUSE Producer, Jamie Farrell (she, her, hers)
24:02
Number of dedicated security staff at your institution?
Frank Barton
24:11
0.5
Richard H. Maxwell
24:17
2, myself and an analyst
April Frost, PPCC
24:32
3
Peter
24:33
0 dedicated.
Ben Pratt
24:39
3 (1 CISO and 2 IT Sec Staff)
Daniel Shawver
24:47
13 Mix of Operations and Rick.
Daniel Shawver
24:57
Risk*
_Technical Support, Jason Martin
25:12
As a reminder, be sure to select “Panelists and Attendees” in the chat dropdown to engage with everyone.
Rob Stalder
33:38
0.25 security staff
Brad Coston
37:14
We have a single digit number in CISO and Privacy. A similar number in the medical school. Most departments & colleges have someone with security in their JD next to "other duties as assigned."
Brian Kelly (EDUCAUSE)
40:56
https://www.misp-project.org/galaxy.html
April Frost, PPCC
41:17
Thanks Brian!
Rick
41:17
Did anyone else just lose sound? Could be just me.
Frank Barton
41:30
Rick: I've still got audio
Rick
41:37
ty
EDUCAUSE Producer, Jamie Farrell (she, her, hers)
41:52
@Rick - I’ll reach out via a pm
Rick
42:36
I'm back. Sound now. Local tech problem :)
EDUCAUSE Producer, Jamie Farrell (she, her, hers)
43:27
@Rick - Great!
Brian Kelly (EDUCAUSE)
46:34
https://medium.com/@sqrrldata/the-hunting-loop-10c7d451dec8
Nick Tripp (Duke University)
52:54
Re: Tools - If you haven’t already started with a SIEM/log centralization process I recommend taking a look at Graylog. - https://www.graylog.org/products/open-source
Rick
56:58
I was just reading about Pacu for exploiting AWS (a CLI tool): https://rhinosecuritylabs.com/aws/pacu-open-source-aws-exploitation-framework/
Rick
57:14
It's open source.
Adam Pennington (MITRE ATT&CK)
57:50
https://github.com/redcanaryco/atomic-red-team
Jose Moreno
57:53
thx great insights.
Adam Pennington (MITRE ATT&CK)
58:20
https://github.com/SigmaHQ/sigma
Adam Pennington (MITRE ATT&CK)
01:00:49
ATT&CK’s Slack if anyone wants to join. https://join.slack.com/t/mitreattack/shared_invite/zt-ny1a3yon-XkT_OS1IF~ZYrESq8Xtqjg
Brian Kelly (EDUCAUSE)
01:00:57
There is a session coming up at CPPC21 - https://events.educause.edu/special-topic-events/cybersecurity-and-privacy-professionals-conference/2021/agenda/mitre-attck-outsmart-cyberattackers-when-you-know-their-tricks
Adam Pennington (MITRE ATT&CK)
01:02:21
Our CAR analytics repo that I also mentioned https://car.mitre.org/
Technical Support, Jason Martin
01:02:37
We appreciate your feedback! As we near the end of the session, please take note of our brief session evaluation and fill it out before leaving the online room today: https://survey.alchemer.com/s3/6215398/web2106
Rick
01:04:09
I guess one difficulty would be identifying long term threats vs. random vulnerability scan / sprays.
Jose Moreno
01:04:17
Thank you all, great webcast.
George Osterholt
01:06:13
This has been a great session and discussion. Thank you.
Technical Support, Jason Martin
01:06:23
Thank you for your participation! Before leaving, please don’t forget to fill out our evaluation: https://survey.alchemer.com/s3/6215398/web2106
Nick Tripp (Duke University)
01:06:25
Thanks all for joining!
James Kevin Moran
01:06:26
Thanks for the panel.
Rick
01:06:28
Thank you Adam.
Technical Support, Jason Martin
01:06:35
Recordings and resources from this session will be available on the on the EDUCAUSE event archive page:https://events.educause.edu/webinar/2021/getting-started-with-attck
Indraneel Joshi (UToronto/CanSSOC)
01:06:38
Thank you all for joining!
Technical Support, Jason Martin
01:06:45
Our next EDUCAUSE Webinar entitled, “Digital Learning as a Tool for Social Justice” will be held on June 17 at 1pm ET. https://events.educause.edu/webinar/2021/digital-learning-as-a-tool-for-social-justice
Ben Pratt
01:06:54
Thanks everyone. And, what do you mean south? I'm in central MN which is north of Toronto. :)