The Foundations of Threat Hunting
eBook - ePub

The Foundations of Threat Hunting

  1. 246 pages
  2. English
  3. ePUB (mobile friendly)
  4. Available on iOS & Android
eBook - ePub

About this book

Build and mature a threat hunting team capable of repeatably stalking and trapping advanced adversaries in the darkest parts of an enterpriseKey Features• Learn foundational concepts for effective threat hunting teams in pursuit of cyber adversaries• Recognize processes and requirements for executing and conducting a hunt• Customize a defensive cyber framework needed to grow and mature a hunt teamBook DescriptionThreat hunting is a concept that takes traditional cyber defense and spins it onto its head. It moves the bar for network defenses beyond looking at the known threats and allows a team to pursue adversaries that are attacking in novel ways that have not previously been seen. To successfully track down and remove these advanced attackers, a solid understanding of the foundational concepts and requirements of the threat hunting framework is needed. Moreover, to confidently employ threat hunting in a business landscape, the same team will need to be able to customize that framework to fit a customer's particular use case.This book breaks down the fundamental pieces of a threat hunting team, the stages of a hunt, and the process that needs to be followed through planning, execution, and recovery. It will take you through the process of threat hunting, starting from understanding cybersecurity basics through to the in-depth requirements of building a mature hunting capability. This is provided through written instructions as well as multiple story-driven scenarios that show the correct (and incorrect) way to effectively conduct a threat hunt.By the end of this cyber threat hunting book, you'll be able to identify the processes of handicapping an immature cyber threat hunt team and systematically progress the hunting capabilities to maturity.What you will learn• Understand what is required to conduct a threat hunt• Know everything your team needs to concentrate on for a successful hunt• Discover why intelligence must be included in a threat hunt• Recognize the phases of planning in order to prioritize efforts• Balance the considerations concerning toolset selection and employment• Achieve a mature team without wasting your resourcesWho this book is forThis book is for anyone interested in learning how to organize and execute effective cyber threat hunts, establishing extra defense capabilities within their company, and wanting to mature an organization's cybersecurity posture. It will also be useful for anyone looking for a framework to help a hunt team grow and evolve.

Frequently asked questions

Yes, you can cancel anytime from the Subscription tab in your account settings on the Perlego website. Your subscription will stay active until the end of your current billing period. Learn how to cancel your subscription.
No, books cannot be downloaded as external files, such as PDFs, for use outside of Perlego. However, you can download books within the Perlego app for offline reading on mobile or tablet. Learn more here.
Perlego offers two plans: Essential and Complete
  • Essential is ideal for learners and professionals who enjoy exploring a wide range of subjects. Access the Essential Library with 800,000+ trusted titles and best-sellers across business, personal growth, and the humanities. Includes unlimited reading time and Standard Read Aloud voice.
  • Complete: Perfect for advanced learners and researchers needing full, unrestricted access. Unlock 1.4M+ books across hundreds of subjects, including academic and specialized titles. The Complete Plan also includes advanced features like Premium Read Aloud and Research Assistant.
Both plans are available with monthly, semester, or annual billing cycles.
We are an online textbook subscription service, where you can get access to an entire online library for less than the price of a single book per month. With over 1 million books across 1000+ topics, we’ve got you covered! Learn more here.
Look out for the read-aloud symbol on your next book to see if you can listen to it. The read-aloud tool reads text aloud for you, highlighting the text as it is being read. You can pause it, speed it up and slow it down. Learn more here.
Yes! You can use the Perlego app on both iOS or Android devices to read anytime, anywhere — even offline. Perfect for commutes or when you’re on the go.
Please note we cannot support devices running on iOS 13 and Android 7 or earlier. Learn more about using the app.
Yes, you can access The Foundations of Threat Hunting by Chad Maurice,Jeremy Thompson,William Copeland,Anthony Particini in PDF and/or ePUB format, as well as other popular books in Computer Science & Cyber Security. We have over one million books available in our catalogue for you to explore.

Information

Table of contents

  1. The Foundations of Threat Hunting
  2. Foreword
  3. Preface
  4. Part 1: Preparation – Why and How to Start the Hunting Process
  5. Chapter 1: An Introduction to Threat Hunting
  6. Chapter 2: Requirements and Motivations
  7. Chapter 3: Team Construct
  8. Chapter 4: Communication Breakdown
  9. Chapter 5: Methodologies
  10. Chapter 6: Threat Intelligence
  11. Chapter 7: Planning
  12. Part 2: Execution – Conducting a Hunt
  13. Chapter 8: Defending the Defenders
  14. Chapter 9: Hardware and Toolsets
  15. Chapter 10: Data Analysis
  16. Chapter 11: Documentation
  17. Part 3: Recovery – Post-Hunt Activity
  18. Chapter 12: Deliverables
  19. Chapter 13: Post-Hunt Activity and Maturing a Team
  20. Appendix
  21. Other Books You May Enjoy