tools

tools


Please find the details regarding your queries 


Threat Hunting:

 we are looking for a platform/Splunk setup where we can perform Data-driven hunting(correlating logs(Proxy, EP, DNS) from various sources), TTP Driven Hunting (based of hashes, and IOC's), anomaly detection with Behavior Graph/Workflow (example Sqrrl).

Once we have such a use case ready, we are looking to leverages all of the above mention approaches together to hunt for threats.


 

Threat Intelligence Platform/Threat Aggregation platform

Threat Intelligence Platform (TIP) is an emerging technology di that helps organizations aggregate, correlate, and analyze threat data from multiple sources in real time to support defensive actions.

eq: Threat Connect.


Red team service offering: It is an outsourced activity wherein a scope is defined and the vendor tries to exploit/compromise the assets without affecting the productivity.


Report Page