Feb. 19, 2024, 6:18 p.m. | /u/error_therror

cybersecurity www.reddit.com

I'm pretty new in my job as a threat hunter. Whenever we see Hands On Keyboard activity, we escalate it to an IR. As a new guy in my job, something I'm still having trouble doing is determining whether the activity is HOK or just a high alert.

What sort of activity does realtime HOK look like, as opposed to something that happened historically? Any tips on this?

alert cybersecurity doing hands on high high alert hunter job keyboard sort threat

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Sr. Staff Firmware Engineer – Networking & Firewall

@ Axiado | Bengaluru, India

Compliance Architect / Product Security Sr. Engineer/Expert (f/m/d)

@ SAP | Walldorf, DE, 69190

SAP Security Administrator

@ FARO Technologies | EMEA-Portugal