Analysis for Incident Responders 2024

Presented at CactusCon 12 (2024), Feb. 17, 2024, 9:30 a.m. (120 minutes).

You have a theory about something you have found while roaming the network or conducting your own hackfest, but how do you go about proving it? This workshop will be a hands-on journey deep into the world of analysis. While analysis is a bit of an art form, there are methods that can be applied to make it less of a gut feeling and more of a scientific approach to support your hypothesis. From simple log and file analysis to diving into modern technologies like cloud and AI, we will review numerous quick methods (including some analysis wizardry with R) to gain context over the data you have gathered and apply critical thinking in an attempt to find the answers. Sometimes, the answers weren’t meant to be found, but we’ll also discuss how to make the best of any conclusion that you reach.

Presenters:

  • Kristy Westphal - Cybersecurity Leader/Mentor/Teacher
    Kristy Westphal is a versatile information technology professional with specific experience in providing advisory and management services in the area of information security and risk and is currently employed as an Independant Security Consultant. She was formerly employed as the Vice President, Security Operations at a financial services company. Specializing in leadership and program development, her specific expertise in security areas includes process analysis, risk assessments, security awareness programs, operating system security, network security, incident handling, vulnerability analysis, and policy development.

Links:

Similar Presentations: