SEC504: Hacker Tools, Techniques, and Incident Handling

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usConnect, learn, and share with other cybersecurity professionals
Engage, challenge, and network with fellow CISOs in this exclusive community of security leaders
Become a member for instant access to our free resources.
Sign UpMission-focused cybersecurity training for government, defense, and education
Explore industry-specific programming and customized training solutions
Sponsor a SANS event or research paper
We're here to help.
Contact UsIn this episode, Ciaran and James are joined by Senior SANS instructor John Hubbard to discuss the ever-changing threat landscape and how SOC teams can stay ahead. John shares his expertise on spotting threats early, how to test your defenses before the real attackers show up, and why he’s on a mission to simplify cybersecurity operations for the next generation of defenders.
John Hubbard is a SOC consultant, speaker, Senior SANS instructor, and author of SANS SEC450: Blue Team Fundamentals and LDR551: Building and Leading Security Operations Centers. With a background as a SOC Manager for a large pharmaceutical company, John brings real-world experience in threat hunting, incident response, and security operations team management. He focuses on helping organizations improve their SOC teams, training the next generation of defenders, and making teams more effective and resilient against modern threats.
Breaking into Cybersecurity
Understanding SOCs
Lessons from the SolarWinds Breach
Industry Insights from Mandiant
Additional Resources
Contact:
James has spent the past 20 years of his life chasing cybercriminals around the Internet and, as a self-professed “massive geek”, has been involved in most cyber security disciplines.
Learn moreProfessor, Director of CISO Network, SANS Institute Professor Ciaran Martin, CB, joined SANS Institute in January 2023 as Director of SANS CISO Network and Summits EMEA. Respected as a world leader among public authorities for cybersecurity, he is the UK’s National Cyber Security Centre’s (NCSC) founder and former head. Ciaran's belief in the collaboration of government and industry to enhance cybersecurity makes him as an ideal lead for today’s Chief Information Security Officers (CISOs).
Learn moreJohn redefined modern SOC operations by engineering globally adopted blue team strategies and co-creating the GSOC cert. Through the Blueprint podcast and SANS leadership, he’s unified thousands of defenders around real-world detection tactics.
Learn more