Network Security Operations at Techno Security 2008
- Class: Network Security Operations
- Venue: Techno Security 2008 class
- Location: Myrtle Beach Marriott Resort at Grande Dunes; 8400 Costa Verde Drive, Myrtle Beach, SC 29572
- Date: Saturday 31 May 2008
- Fee: $995 per student; cost includes free conference pass to Techno Security 2008!
- Course Outline:
- Network Security Monitoring
- NSM theory
- Building and deploying NSM sensors
- Accessing wired traffic
- Full content tools
- Additional data analysis tools
- Session data tools
- Statistical data tools
- Sguil
- Case studies, personal war stories, and attendee participation
- Network Incident Response
- Simple steps to take now that make incident response easier later
- Characteristics of intruders, such as their motivation, skill levels, and
techniques
- Common ways intruders are detected, and reasons they are often initially
missed
- Improved ways to detect intruders based on network security monitoring
principles
- First response actions and related best practices
- Secure communications among IR team members, and consequences of negligence
- Approaches to remediation when facing a high-end attacker
- Short, medium, and long-term verification of the remediation plan to keep the
intruder out
- Network Forensics
- Collecting network traffic as evidence
- Protecting and preserving traffic from tampering, either by careless
helpers or the intruder himself
- Analyzing network evidence using a variety of open source tools, based
on network security monitoring (NSM) principles
- Presenting findings to lay persons, such as management, juries, or judges
- Defending the conclusions reached during an investigation, even in the
face of adversarial defense attorneys or skeptical business leaders
- Registration: Download and complete the registration form (.pdf) and return to TaoSecurity using one of three methods:
- Fax to 703.637.1249
- Email to training [at] taosecurity [dot] com
- Mail to TaoSecurity, 9532 Liberia Ave Suite 141, Manassas VA 20110
- Questions: Please email training [at] taosecurity [dot] com.