Training
Get a free hour of SANS training

Experience SANS training through course previews.

Learn More
Learning Paths
Can't find what you are looking for?

Let us help.

Contact us
Resources
Join the SANS Community

Become a member for instant access to our free resources.

Sign Up
For Organizations
Interested in developing a training plan to fit your organization’s needs?

We're here to help.

Contact Us
Talk with an expert

A Visual Summary of SANS Blue Team Summit 2021

SANS Blue Team Summit was a free, global, virtual event for the community. Check out the graphic recordings created in real-time during the event.

Authored byAlison Kim
Alison Kim

On September 9 & 10, thousands from around the globe tuned in for the SANS Blue Team Summit. Industry’s top practitioners and leading experts from near and far shared their latest security defense research, solutions, tools, and case studies. It was a great opportunity for cybersecurity professionals and those new to the field.

We invited Ashton Rodenhiser of Mind's Eye Creative to create graphic recordings of our Summit presentations. If you missed a talk or are looking to view the SANS Blue Team Summit through a visual lens, take a look at the recordings below.

In addition to graphic recordings, PDFs of Summit presentations are available on the SANS Summit Archives page (SANS account required) and videos will be posted to YouTube over the next several months.

*If you registered for the Summit, video recordings will be available on your Summit Access page in your SANS Portal shortly after the conclusion of the event.

Keynote: Zero Trust Architecture: Applying ZTA in Today’s Environment 

Justin Henderson, Certified Instructor, SANS Institute Ismael Valenzuela, Senior Instructor, SANS Institute

Justin_Henderson_and_Ismael_Valenzuela.jpg

Modern Authentication for the Security Admin

Mark Morowczynski, Principal Program Manager, Microsoft Grace Picking, Senior Program Manager, Microsoft

Grace_Picking_and_Mark_Morowczynski.jpg

Blue-Team-as-Code: Lessons From Real-World Red Team Detection Automation Using Logs

Oleg Kolesnikov, Vice President, Securonix; Cybersecurity Instructor, Northeastern University Den Iuzvyk, Senior Security Researcher, Securonix

Den_Iuzvyk_and_Oleg_Kolesnikov.jpg

DeTT&CT(ing) Kubernetes ATT&CK(s) with Audit Logs

Magno Logan, Information Security Specialist, Trend Micro

Magno_Logan.jpg

Panel: Threats and Challenges 2021: What Cyber Defenders Need to Know – and Do

Moderator: John Hubbard, Certified Instructor, SANS Institute

Panelists: Ryan Chapman, Associate Instructor, SANS Institute Grace Picking, Senior Program Manager, Microsoft Ismael Valenzuela, Senior Instructor, SANS Institute

Panel.jpg

Measuring Detection Engineering Teams

Kyle Bailey, Staff Security Engineer, Panther Labs

Kyle_Bailey.jpg

Adversary Simulation: Measure and Close the Gaps in Your Security Posture

Don Murdoch, SANS Instructor

Don_Murdoch.jpg

Ransomware Preparation, Containment and Recovery Strategies

Anurag Khanna, Manager – Incident Response & Consulting Services, Crowdstrike Services

08_BlueTeamSummit_Anurag_Khanna.jpg

Monitoring and Incident Response in Azure AD

Thomas Detzner, Senior Program Manager, Microsoft Yochana Henderson, Identity Program Manager, Microsoft

09_BlueTeamSummit_Yochana_Henderson_and_Thomas_Detzner.jpg

Data Science for SOC: A Practical Example of Detecting Advanced Credential Attacks

Igor Kozlov, Data Scientist, Bell Canada

10_BlueTeamSummit_Igor_Kozlov.jpg

Keynote: Can we REALLY 10X the SOC?

Anton Chuvakin, Head of Solution Strategy Chronicle, Google Cloud

11_BlueTeamSummit_Anton_Chuvakin.jpg

Threat Sightings: The Power of Observation for Driving Cyber Threat Detection Improvements

Alejandro Houspanossian, Detection Engineer/Threat Hunting Specialist, McAfee 

Agustin March, Data Engineer, McAfee

12_BlueTeamSummit_Alejandro_Houspanossian_and_Agustin_March.jpg

YARA for Mere Mortals

Tony Drake, Senior Engineer, Security Intelligence, Intercontinental Exchange (ICE)

13_BlueTeamSummit_Tony_Drake.jpg

The Yellow Brick Road: Where Lions and Tigers and Bears Meet

Aaron Lancaster, Cyber Security Consultant

14_BlueTeamSummit_Aaron_Lancaster.jpg

Panel: Scaling Security Operations to Cope with Exponentially Increasing Data

Moderator: Justin Henderson, Certified Instructor, SANS Institute

Panelists: Anton Chuvakin, Head of Solution Storage Chronicles, Google Cloud 

Jon Hencinski, Director of Global Operations, Expel

15_BlueTeamSummit_Panel.jpg

A River Runs Through IT: What Whitewater Rafting Taught Me About Incident Response

Stef Rand, Incident Response Consultant, FireEye/Mandiant

16_BlueTeamSummit_Stef_Rand.jpg

Knocking on Clouds Door: Threat Hunting Powered by Azure AD Reports and Azula

Mangatas Tondang, Senior Consultant, EY Canada

17_BlueTeamSummit_Mangatas_Tondang_(1).jpg

If you’re interested in seeing other free virtual events SANS has lined up, visit the current listing.

A Visual Summary of SANS Blue Team Summit 2021