Blueprint: Build the Best in Cyber Defense

Mark Orlando: Building a Stronger Blue Team


Listen Later

Click here to send us your ideas and feedback on Blueprint!

There are many technical factors that contribute to the success of a security operations team, but you need more than just tech skills for mounting a solid defense. In this episode of Blueprint we bring back previous guest Mark Orlando to talk about his BlackHat 2022 presentation with Dr. Daniel Shore (PhD in workplace psychology) . We discuss team dynamics, how the mapping of multi-team systems can improve the flow of your incident response activities, and much more.

Check out the related BlackHat talk here: https://www.youtube.com/watch?v=CtkJ84bc50g

Our Guest - Mark Orlando

Mark Orlando is a SANS Associate Instructor, co-author MGT551: Building and Leading Security Operations Centers, instructor for SEC450: Blue Team Fundamentals: Security Operations and Analysis, and the Co-Founder and CEO of Bionic Cyber. Prior to Bionic, Mark built, assessed, and managed security teams at the Pentagon, the White House, the Department of Energy, and numerous Fortune 500 clients. Mark has presented on security operations and assessment at DefCon's Blue Team Village, the Institute for Applied Network Security (IANS) Forum, BSidesDC, and the RSA Conference and has been quoted in the New York Times, the Washington Post, Forbes, and many other publications. He holds a Bachelor's Degree in Advanced Information Technology from George Mason University and served in the US Marine Corps as an Artillery Non-Commissioned Officer.


Follow Mark Orlando

Twitter: https://twitter.com/markaorlando

LinkedIn: https://www.linkedin.com/in/marko16/

Web: https://www.sans.org/profiles/mark-orlando/


Sponsor's Note:

Support for the Blueprint podcast comes from the SANS Institute.

If you like the topics covered in this podcast and would like to learn more about blue team fundamentals such as host and network data collection, threat detection, alert triage, incident management, threat intelligence, and more, check out my new course SEC450: Blue Team Fundamentals.

This course is designed to bring attendees the information that every SOC analyst and blue team member needs to know to hit the ground running, including 15 labs that get you hands on with tools for threat intel, SIEM, incident management, automation and much more, this course has everything you need to launch your blue team career.

Check out the details at sansurl.com/450  Hope to see you in class!


Follow SANS Cyber Defense: Twitter | LinkedIn | YouTube

Follow John Hubbard: Twitter | LinkedIn

Check out John's SOC Training Courses for SOC Analysts and Leaders:

  • SEC450: SOC Analyst Training - Applied Skills for Cyber Defense Operations
  • LDR551: Building and Leader Security Operations Centers

Follow and Connect with John: LinkedIn

...more
View all episodesView all episodes
Download on the App Store

Blueprint: Build the Best in Cyber DefenseBy SANS Institute

  • 4.9
  • 4.9
  • 4.9
  • 4.9
  • 4.9

4.9

131 ratings


More shows like Blueprint: Build the Best in Cyber Defense

View all
Security Now (Audio) by TWiT

Security Now (Audio)

1,986 Listeners

Risky Business by Patrick Gray

Risky Business

364 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

639 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

370 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,018 Listeners

Smashing Security by Graham Cluley

Smashing Security

318 Listeners

Click Here by Recorded Future News

Click Here

406 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

7,951 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

189 Listeners

Talkin' About [Infosec] News, Powered by Black Hills Information Security by Black Hills Information Security

Talkin' About [Infosec] News, Powered by Black Hills Information Security

92 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

77 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

129 Listeners

How to Fix the Internet by Electronic Frontier Foundation (EFF)

How to Fix the Internet

118 Listeners

Cloud Security Podcast by Google by Anton Chuvakin

Cloud Security Podcast by Google

39 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

43 Listeners