
Sign up to save your podcasts
Or
Join Snowflake’s Insider Threat team for a direct discussion on separating everyday behavioral drift from true malicious intent. We examine role changes, privilege creep, and off-hour access, showing how context—identity, project timelines, and data lineage—sharpens detection and reduces noise. The conversation ends with a clear-eyed look at the trade-off between missing an insider and overwhelming analysts with false alerts, offering practical guidance for any modern UBA program.
About Detection Engineering Dispatch
Detection Engineering Dispatch is a series featuring open discussions and live case studies with security operations teams at leading companies on what it takes to build a great detection engineering program.
Join Snowflake’s Insider Threat team for a direct discussion on separating everyday behavioral drift from true malicious intent. We examine role changes, privilege creep, and off-hour access, showing how context—identity, project timelines, and data lineage—sharpens detection and reduces noise. The conversation ends with a clear-eyed look at the trade-off between missing an insider and overwhelming analysts with false alerts, offering practical guidance for any modern UBA program.
About Detection Engineering Dispatch
Detection Engineering Dispatch is a series featuring open discussions and live case studies with security operations teams at leading companies on what it takes to build a great detection engineering program.