Nov. 3, 2023, 5:10 p.m. | /u/Medical-Mountain5509

For [Blue|Purple] Teams in Cyber Defence www.reddit.com

I have been using kape, encase, EDR etc all the standard forensic/IR tools available to carry out DFIR. I was thinking of deploying velociraptor along with timesketch and the new tool Dissect by Fox-IT on a cloud environment so its more scalable and easier to deploy on clients environment. Has anyone setup similar and able offer any insight on how to go about doing this/show a network diagram on how they done in their own place. Ideally on Azure environment …

blueteamsec clients cloud cloud environment deploy deployment dfir dissect easier edr enterprise environment etc forensic fox fox-it kape offer standard thinking tool tools velociraptor

Azure DevSecOps Cloud Engineer II

@ Prudent Technology | McLean, VA, USA

Security Engineer III - Python, AWS

@ JPMorgan Chase & Co. | Bengaluru, Karnataka, India

SOC Analyst (Threat Hunter)

@ NCS | Singapore, Singapore

Managed Services Information Security Manager

@ NTT DATA | Sydney, Australia

Senior Security Engineer (Remote)

@ Mattermost | United Kingdom

Penetration Tester (Part Time & Remote)

@ TestPros | United States - Remote