No views
Red Teaming and Security Operations Center: synergy for a higher level of cyber security Penetration testing of IT systems and responding to security threats are activities performed by diametrically opposed teams: attack and defense. Both testing and detection have become a trend in Slovenia in recent years, as proactive management contributes to a higher level of cyber security in the organization. Considering the ever-improving technical protection of IT systems, the greatest risk of hacking is represented by these "0-day" vulnerabilities, for which there are no security fixes (yet), and attackers already know about them and are trying to exploit them. It is precisely in this area that the added value of testing and the ability to detect and respond are most pronounced. When conducting penetration tests and exercises with Red Teaming attacks, both the attackers and the defense expand their knowledge and indirectly strengthen the organization's defensive wall. In the combined lecture of experts for penetration testing from the company Carbonsec doo and experts from the Security Operations Center of the company NIL doo, we will present the treatment of "0-day" vulnerabilities by pentesters and by the response center on a real example in a demo environment. Lecturers: Matevž Mesojednik, head of SOC, NIL, Grega Prešeren, Carbonsec and Andrej Gornik, Carbonsec) The lecture was recorded at the NT conference 2022 (September 2022). To learn more, visit https://nil.com/