Detection Engineering Dispatch

Detection Dispatch Episode 53: A New Way to UBA feat. Snowflake’s Insider Threat Team


Listen Later

Join Snowflake’s Insider Threat team for a direct discussion on separating everyday behavioral drift from true malicious intent. We examine role changes, privilege creep, and off-hour access, showing how context—identity, project timelines, and data lineage—sharpens detection and reduces noise. The conversation ends with a clear-eyed look at the trade-off between missing an insider and overwhelming analysts with false alerts, offering practical guidance for any modern UBA program.

About Detection Engineering Dispatch
Detection Engineering Dispatch is a series featuring open discussions and live case studies with security operations teams at leading companies on what it takes to build a great detection engineering program.

...more
View all episodesView all episodes
Download on the App Store

Detection Engineering DispatchBy Anvilogic