Skip to main content
Page header background image

Other Events

CISOExecnet Breakfast Roundtable: Security Operations – How to Get Our “_DRs” In Order

CISO Executive Network


Date: Tuesday, April 30, 2024
Time:
8:00 a.m. - 12:00 p.m. ET
Location: Virtual
Contact:
Bill Sieglein, CISO Executive Network, bill@cisoexecnet.com


Security Operations is labor intensive, especially around responding to suspicious events in your environment, and can suck away valuable time from your limited resources. What is the right security operations model and tooling to gain both efficiency and effectiveness?

Come give us your insights and hear how your peers are dealing with these issues.

Over the past few years the number of “_DRs” has grown. We started with Endpoint Detection & Response and then we moved to Network Detection & Response and onto Managed Detection & Response and now we see eXtended Detection & Response. What’s next? How many _DRs can we name? The bottom line is we have to get better at Security Operations in order to keep up with the constantly evolving threats and deal with our resource shortage. What solutions are members finding to get more efficient and effective at SecOps? What is the right SecOps model?

Security Controls Covered: SIEM, SOAR, XDR, EDR, NDR, MDR, MSSP, IR Playbooks, Threat Management, Threat Intel

Topics likely to be part of this discussion include:

  • SecOps models – in-sourced, out-sourced, hybrid
  • Response automation
  • Playbook development
  • Tabletop exercises- from tech to exec tabletops
  • Finding and retaining SecOps resources
  • Best practices for greater visibility
  • Single or fewer panes of glass
  • Defense to offense for security operations
  • The Do’s and Don’ts of the “DRs”
  • Secops tools rationalization
  • Remote workforce device/app monitoring
  • Purple teaming- the best of Red and Blue teaming
  • Is the SIEM still viable or do we need the better SIEM?

Services