April 23, 2023, 9:34 a.m. | /u/No-Conference-3212

For [Blue|Purple] Teams in Cyber Defence www.reddit.com

Hey blue teamers. >!need your input.!<


**(Context TLDR)**
We're acting as a third-party extension to a team of five InfoSec folks that need help aligning their current security posture with the CISOs Q3-Q4 milestones.

**Org Context:**
\- 1,500 FTEs
\- hybrid work
\- Devs and cloud ops work 90% remote in AWS/Azure
\- 80% Windows, 20% MacOS/Linux workstations
\- Others work hybrid, leverage infrastructure VPN, app gateways, common infra security


**A key milestone initiative:**
\- transition from reactive detection and …

anomaly detection app aws azure blue blueteamsec budget cisos cloud constraints context current defensive detection detection and response extension hey hybrid hybrid work infosec infra infrastructure initiative input key linux macos milestone org party policy posture response security security posture siem signature soar team third third-party threat transition vpn windows work workflows working workstations

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Cyber Security Architect - SR

@ ERCOT | Taylor, TX

SOC Analyst

@ Wix | Tel Aviv, Israel

Associate Director, SIEM & Detection Engineering(remote)

@ Humana | Remote US

Senior DevSecOps Architect

@ Computacenter | Birmingham, GB, B37 7YS