March 18, 2024, 9:55 p.m. | /u/amiterminator

For [Blue|Purple] Teams in Cyber Defence www.reddit.com

I’m in the process of deploying the tool on my on premise network, a few questions:

1. The documentation doesn’t include AD managed users and only local users, it’s a bit of a security concern, we don’t want the hashes to be stored locally for such a high privilege system. Any other solutions?

2. We want to deploy the agent on-demand in case of an IR incident, what do you recommend in order to do that?
What Im working on: …

blueteamsec deployment documentation don hashes high local locally managed network on premise premise privilege process questions security solutions system tool velociraptor

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Security Officer Hospital Laguna Beach

@ Allied Universal | Laguna Beach, CA, United States

Sr. Cloud DevSecOps Engineer

@ Oracle | NOIDA, UTTAR PRADESH, India

Cloud Operations Security Engineer

@ Elekta | Crawley - Cornerstone

Cybersecurity – Senior Information System Security Manager (ISSM)

@ Boeing | USA - Seal Beach, CA

Engineering -- Tech Risk -- Security Architecture -- VP -- Dallas

@ Goldman Sachs | Dallas, Texas, United States