SEC504: Hacker Tools, Techniques, and Incident Handling

Unlock industry insights and hands-on learning with upcoming SANS webcasts and workshops. View archived webcasts here.
Public Cloud Environments can make things, well, rather public. While there are ways to prevent this, and the cloud providers have made strides, retroactive changes are not a thing. As such, we still find very poorly configured environments today.
Confused by all the hype with AI? Not sure what the difference is between a LLM, GenAI or Deep Learning? Do you want to make the most of this exciting new technology but not sure where to start or the issues involved? Learn the fundamentals of Artificial Intelligence, Generative AI and Prompt Engineering and how exponentially increase your impact.
Achilles Systems, a fictitious IT service provider to human resources teams in medium and large businesses, has fallen victim to an attack in which sensitive customer data and, potentially, customer networks, have been compromised.
Join us for the inaugural year of SANS Emerging Technologies Track! Are you interested in learning more about new cutting-edge technology in the cybersecurity industry? This is the place for you!Learn from the best and brightest in the industry as selected organizations review their latest tools and solutions that will better equip you for your battle with the bad guys and assist you as your team works hard to keep networks safe from intrusions. This one day track will feature a comprehensive collection of use cases, demos, and solutions for everyday cyber professionals looking to take their arsenal of tools and solutions to the next level. Don't miss this track on April 17, register now!
Join this webcast to explore SANS and GIAC's latest industry-leading training and certifications to help cyber-practitioners, and the organizations they protect, keep pace with dynamic market conditions. Cut through the noise with this comprehensive showcase and discover the skills you and your teams will need to navigate the evolving landscape of cybersecurity.
Today, most security professionals are actively architecting and implementing cloud security controls across SaaS, PaaS, and IaaS environments. We’ve learned that what once worked on-premises may not work quite the same in the cloud, and a wide range of new and innovative security platforms and services have emerged and evolved in recent years to address critical cloud security use cases and categories, including: Cloud security monitoring and incident managementCloud workload and data protectionCloud security posture management (CSPM) and SaaS security posture management (SSPM)Cloud identity and access managementMachine learning and AI in cloud environmentsCloud Native Application Protection Platforms (CNAPP)Zero trust network access (ZTNA) and SASE/SSECloud security automation In the Cloud track at Cyber Solutions Fest 2024, leading solution providers and practitioners will highlight the newest techniques and technologies that organizations of all types and sizes are leveraging to better secure and manage their cloud services and environments. Talks and panels will cover all the topics mentioned, and more!Forum Highlights: Discover how industry leading technologies and techniques can your ability to better secure you cloud environments Learn from industry leaders as they dive into cutting-edge use case studies and specific examplesInteract with the SANS chair Dave Shackleford, speakers and peers in the interactive Slack workspace by posting questions and discussing the forum topic
Is it really over when you are hacked? Or is it only over when our adversary has secured their impact and actions on objective? Perimeters are bound to be broken, but our game-over" scenarios should still be defended. We need to not only protect our inside, but carefully define what exactly are we defending? What has the highest impact on our organization, and from there on carefully architect our defenses to ensure we can always survive, even if we get hacked. We have learned that the perimeter has changed. We have a blend of inside and outside, often caused by a range of Software as a Service, Cloud Services, remote workers and more. So how do we stay secure? Come attend this forum to learn tactics, techniques and procedures we can employ to help us stay strong and secure. Forum Highlights: Discover how industry leading technologies and techniques can assist you with internal security policies in the workplace Learn from industry leaders as they dive into cutting-edge use case studies and specific examples, while highlighting how the tactics, techniques & procedures can provide the right information to help deter an insider threat Interact with SANS chair Chris Dale, speakers and peers in the interactive Slack workspace by posting questions and discussing the forum topic
In its fifth year, SANS Cyber Solutions Fest aims to brings together an ensemble of security professionals, solution providers, gurus and experts ready to share knowledge about the latest developments and innovative technologies in the cybersecurity industry.Join the Attack Surface & Vulnerability Management Track to hear from chairperson Matt Bromiley and a host of leading cyber security experts as they walk through specific use cases and challenges with the goal of helping you understand why your attack surface is critical for identifying and mitigating potential vulnerabilities in your digital presence and protecting systems from adversaries.As part of this forum, we'll look at technologies and techniques to help you proactively fortify your defenses and profile your attack surface before the adversaries take advantage of it.Forum Highlights: Discover how industry leading technologies and techniques can assist you with fortifying your existing attack surface and vulnerability management policies in the workplace Learn from industry leaders as they dive into cutting-edge use case studies and specific examples, while highlighting how the integration of technologies can provide unprecedented insights and advantages Interact with SANS chair Matt Bromiley, speakers and peers in the interactive Slack workspace by posting questions and discussing the forum topic
The idea of DevSecOps, the term the industry had initially decided on for the work between the Application and Operations teams, was coined 15 years ago. To give perspective, the iPhone 3GS came out that year. If we think of what we had to work with in 2009, we now know in hindsight that we have better options, solutions, software, and patterns. We have an iPhone 15; we no longer have BlackBerry OS or Nokia. Windows 8.1? I hope not.Here are a few questions we will be reviewing during this solutions track:- How has DevSecOps and Application Security changed since then?- Where do we fit in?- Should we be more or less hopeful?We think we are in a much better place and in this forum, we will show you how it’s become better. Join the 5th annual DevSecOps & Application Security Track to listen to a curated list of talks to help stimulate thought and actionable solutions for you to implement in your organization.Forum Highlights: Discover how industry leading technologies and techniques can your ability to better secure you development and application environments Learn from industry leaders as they dive into cutting-edge use case studies and specific examplesInteract with the SANS chair Moses Frost, speakers and peers in the interactive Slack workspace by posting questions and discussing the forum topic
Come and learn from ENISA, the European Union's Agency for Cybersecurity), about the NIS2, the EU's cybersecurity legislation, which will come into force this year across all the EU's critical sectors. This seminar will help you get ready for the NIS2 incident reporting and security measures requirements, what NIS2 will mean for organizations doing business in the European Union, and what skills you may need to implement the NIS2
In this presentation certified instructor Jean-Francois Maes is going to speak about what cloud vendors don't want you to know: your attack surface when you use cloud resources. He will cover various services and, more importantly, the risk associated to using with using theses services in your organization.
The internet doesn't sit still. In this constantly changing environment, those using AI can gain a tremendous advantage in efficiency in every phase of the intelligence cycle. In this talk we'll cover how OSINT practitioners can benefit from recent developments in the AI space and what changes are coming to the SANS SEC587 Advanced OSINT Course.