Тёмный

Cybersecurity SOC Analyst - Malware Detected 

MyDFIR
Подписаться 38 тыс.
Просмотров 2,7 тыс.
50% 1

Опубликовано:

 

9 сен 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 34   
@93ksj
@93ksj Месяц назад
Hey bro, would love to see you cover Cybersecurity Engineering roles/tasks, projects, etc. I’ve leveled up so much thanks to your content and I’m always happy to share it with my colleagues as well 😊
@MyDFIR
@MyDFIR Месяц назад
I’ll definitely keep that in mind! Anything specific?
@Brantley_ZA
@Brantley_ZA Месяц назад
​@@MyDFIRyou could likely start with the contrast between analyst and engineering roles, then talk about how engineers would handle similar incidents and so on...
@MyDFIR
@MyDFIR Месяц назад
Great idea, I actually have something similar that i created sometime last year SOC Analyst vs SOC Engineer | Whats the difference? ru-vid.com/video/%D0%B2%D0%B8%D0%B4%D0%B5%D0%BE-3EfiJJzeRWU.html
@user-jd5yn8sv1e
@user-jd5yn8sv1e Месяц назад
Quora snapdragon
@DayCyberwox
@DayCyberwox Месяц назад
Amazing video. You set your self apart and grow your skills by diving deep into investigations. Plus you learn a thing a two!
@MyDFIR
@MyDFIR Месяц назад
Thanks Day! Absolutely agreed, always think big picture and learn by doing!
@AnokataHD
@AnokataHD Месяц назад
Thank you for this video. I love your videos. Im an aspiring soc analyst and you inspire me. Please never stop publishing
@MyDFIR
@MyDFIR 29 дней назад
Thank you! Will do!
@BrutusMaximusAurelius
@BrutusMaximusAurelius Месяц назад
Root/cause, situational awareness and impact are pretty important in incident response. Could never work anywhere that forces me to perform bad incident response. As SOC lead I periodically review closed incidents to make sure we don’t turn into a ticket closing machine instead of doing actual investigations.
@MyDFIR
@MyDFIR Месяц назад
Love it! Reviewing closed incidents can reveal areas to improve which is always a great thing. Kudos to you for doing those checks 🙌
@joja9413
@joja9413 Месяц назад
I had exact same issue last month
@user-yz5yl8eg9j
@user-yz5yl8eg9j Месяц назад
I want to know more about documentation, how to write them and so on . Are documentation important in cyber security. Please give me an example of document
@MyDFIR
@MyDFIR Месяц назад
Yes they are important however it varies from company to company.
@alyx3135
@alyx3135 Месяц назад
Hi, Can you share your learning process? And please do more Wazuh as a SIEM thanks.
@mapletech_22
@mapletech_22 Месяц назад
Thanks. Very informative 👏 👌
@MyDFIR
@MyDFIR Месяц назад
Glad it was helpful!
@31qwoz
@31qwoz Месяц назад
Wouldnt the edr alert for the earlier activity also? Just curious
@MyDFIR
@MyDFIR Месяц назад
Yup or atleast it should, hence the disclaimer. However, more often than not, analysts would look at these as a single event and conclude based on that rather than correlating it with other activity to see the bigger picture.
@31qwoz
@31qwoz Месяц назад
@@MyDFIR ok thats what i was thinking. Great reminder and video
@khalidel6637
@khalidel6637 Месяц назад
Good job 👍
@MyDFIR
@MyDFIR Месяц назад
Thank you! Cheers!
@John-yx2is
@John-yx2is Месяц назад
Thanks. What is a good computer- specs etc for cybersecurity to run a home lab, vms, with Kali Linux etc?
@MyDFIR
@MyDFIR Месяц назад
I usually recommend at minimum 16GB RAM, intel/amd chip, 250 free disk space
@s.c342
@s.c342 Месяц назад
I liked your way of thinking and explaining. For someone who is looking at both your and Josh Makador's course, why would you say your product is better? I’m not trying to be disrespectful, I just want to know your thoughts.
@MyDFIR
@MyDFIR Месяц назад
I actually am putting out a video that will go over a bunch of courses next week! Josh’s course has an internship opportunity and is more focused on cloud secops whereas my course focuses more on investigations and I provide students with a feedback loop which I believe Josh does not provide. Essentially students have deliverables where they’ll create reports and send it to me for feedback and review. This will help students learn how to put down their findings into a report.
@s.c342
@s.c342 Месяц назад
@@MyDFIR oooo I like that! Thank you for taking the time to clarify
@MyDFIR
@MyDFIR Месяц назад
No worries! At the end, both are great courses and can’t go wrong with either or! Let me know if you have any other questions 🙌
@aliibrahim5479
@aliibrahim5479 Месяц назад
How would we search for all those events which happened beforehand , would we have to manually go through all events which happened from that user or on that host 🥲 that would be very time consuming investigation I would say
@MyDFIR
@MyDFIR Месяц назад
Not necessarily if you know how/what you’re looking for. Its definitely time consuming in the beginning but with practice & methodology, its quite quick.
@aliibrahim5479
@aliibrahim5479 Месяц назад
@@MyDFIR in my case I work for an MSSP and we use 2 different SIEM’s , splunk and sentinel so having to constantly switch between while trying to remember the correct queries takes some time in my experience
@MyDFIR
@MyDFIR Месяц назад
Yea definitely the more SIEMs that are available will be time consuming however once you know what discovery/persistence etc looks like or understand how to look at surrounding events, it’ll be “easier”
@aliibrahim5479
@aliibrahim5479 Месяц назад
@@MyDFIR does that just come with experience or can I develop these skills somewhere ?
@MyDFIR
@MyDFIR Месяц назад
Both! I would recommend being familiar with the mitre attack framework and reading vendor threat reports 💪
Далее
FREE Cybersecurity Training (SOC Analyst)
9:39
Просмотров 12 тыс.
Sigma Girl Pizza #funny #memes #comedy
00:14
Просмотров 1,6 млн
Они захватят этот мир🗿
00:48
Просмотров 579 тыс.
Where People Go When They Want to Hack You
34:40
Просмотров 1,7 млн
Hacking Windows TrustedInstaller (GOD MODE)
31:07
Просмотров 604 тыс.
The Wazuh File Integrity Monitoring (FIM) Use case
32:04
Why Cybersecurity Training is a SCAM
10:37
Просмотров 151 тыс.
The real world truth about AI Hacking
40:08
Просмотров 44 тыс.
Sigma Girl Pizza #funny #memes #comedy
00:14
Просмотров 1,6 млн