Cloud Security Podcast by Google

EP39 From False Positives to Karl Popper: Rationalizing Cloud Threat Detection


Listen Later

Guest:

  • Jared Atkinson, Adversary Detection Technical Director at SpecterOps

Topics:

  • What are bad/good/great detections? Is this all about the Bianco's pyramid? Is high good and low bad?
  • How should we judge the quality of detections? Can there be a quality framework? Is that judgment going to be site specific?
  • What should we do to build more good directions? Is this all about reducing false positives?
  • Can we really measure false negatives? How can we approach this?
  • How can we test for detection goodness in the real world? What are the methods that work? It can't be just about paper ATT&CK coverage, right?
  • What are your top 3 tips for improving the detection practice at an organization?

Resources:

  • "The Pyramid of Pain" post by David Bianco
  • "On Threat Detection Uncertainty"
  • "Detection Coverage and Detection-in-Depth"
  • "Detection in Depth" by SpecterOps
  • "Philosophy of Science: Rationality Without Foundations" by Karl Popper (yes, really)
  • Red Canary "2021 Threat Detection Report"
  • "The Black Swan: The Impact of the Highly Improbable" by Nassim Nicholas Taleb
  • John Piaget's theory of cognitive development
...more
View all episodesView all episodes
Download on the App Store

Cloud Security Podcast by GoogleBy Anton Chuvakin

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

39 ratings


More shows like Cloud Security Podcast by Google

View all
WSJ Your Money Briefing by The Wall Street Journal

WSJ Your Money Briefing

1,720 Listeners

WSJ What’s News by The Wall Street Journal

WSJ What’s News

4,423 Listeners

Security Now (Audio) by TWiT

Security Now (Audio)

2,010 Listeners

Risky Business by Risky Business Media

Risky Business

372 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,028 Listeners

NVIDIA AI Podcast by NVIDIA

NVIDIA AI Podcast

346 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,078 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

177 Listeners

Practical AI by Practical AI LLC

Practical AI

211 Listeners

Cloud Security Podcast by TechRiot.io

Cloud Security Podcast

58 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

139 Listeners

Huberman Lab by Scicomm Media

Huberman Lab

29,274 Listeners

The AI Daily Brief: Artificial Intelligence News and Analysis by Nathaniel Whittemore

The AI Daily Brief: Artificial Intelligence News and Analysis

683 Listeners

HBR On Leadership by Harvard Business Review

HBR On Leadership

169 Listeners

AI Security Podcast by TechRiot.io

AI Security Podcast

9 Listeners