Feb. 20, 2024, 1:29 a.m. | SANS Digital Forensics and Incident Response

SANS Digital Forensics and Incident Response www.youtube.com

"Indicators" or "Indicators of Compromise" (IOCs) form the common currency of threat intelligence communication and, at times, application. Yet further examination of the concept of "the indicator" reveals significant fuzziness around what the term actually means in definition or subsequent use. Some might feel this is mere nit-picking, but confusion and conflation surrounding the use of the word "indicator" has effectively set back the threat intelligence discipline and led to suboptimal outcomes in using intelligence concepts.

In this session, we …

application communication compromise concept currency definition indicators indicators of compromise intelligence iocs ontology picking threat threat intelligence

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Open-Source Intelligence (OSINT) Policy Analyst (TS/SCI)

@ WWC Global | Reston, Virginia, United States

Security Architect (DevSecOps)

@ EUROPEAN DYNAMICS | Brussels, Brussels, Belgium

Infrastructure Security Architect

@ Ørsted | Kuala Lumpur, MY

Contract Penetration Tester

@ Evolve Security | United States - Remote

Senior Penetration Tester

@ DigitalOcean | Canada