Detecting Credential Theft with Practical Security Analytics and Visualizations

Presented at BSides Austin 2016, April 1, 2016, noon (60 minutes).

Attackers are increasingly targeting business processes, making security analytics an important part of a comprehensive defensive strategy. It is critical to track credential use and monitor cloud and SaaS activity to detect unauthorized actions. This talk will deep-dive into practical analytical strategies for long-term defense and demonstrate effective visualizations in which to present tactical feedback to both executives and analysts.


Presenters:

  • Martin Holste
    Martin Holste is a cofounder of the Threat Analytics Platform at FireEye, Inc. He is the author of the Enterprise Log Search and Archive and StreamDB open-source projects and has over a decade of experience in the security-incident response field in the public and private sectors. He has spoken at many conferences over the years, including UW Lockdown, B-Sides Augusta, the Security Onion conference, and SANS Cyber Innovation.

Links: