Mastering Cyber Intelligence
Packt Publishing Limited (Verlag)
978-1-80020-940-4 (ISBN)
Develop the analytical skills to effectively safeguard your organization by enhancing defense mechanisms, and become a proficient threat intelligence analyst to help strategic teams in making informed decisions
Key Features
Build the analytics skills and practices you need for analyzing, detecting, and preventing cyber threats
Learn how to perform intrusion analysis using the cyber threat intelligence (CTI) process
Integrate threat intelligence into your current security infrastructure for enhanced protection
Book DescriptionThe sophistication of cyber threats, such as ransomware, advanced phishing campaigns, zero-day vulnerability attacks, and advanced persistent threats (APTs), is pushing organizations and individuals to change strategies for reliable system protection. Cyber Threat Intelligence converts threat information into evidence-based intelligence that uncovers adversaries' intents, motives, and capabilities for effective defense against all kinds of threats.
This book thoroughly covers the concepts and practices required to develop and drive threat intelligence programs, detailing the tasks involved in each step of the CTI lifecycle. You'll be able to plan a threat intelligence program by understanding and collecting the requirements, setting up the team, and exploring the intelligence frameworks. You'll also learn how and from where to collect intelligence data for your program, considering your organization level. With the help of practical examples, this book will help you get to grips with threat data processing and analysis. And finally, you'll be well-versed with writing tactical, technical, and strategic intelligence reports and sharing them with the community.
By the end of this book, you'll have acquired the knowledge and skills required to drive threat intelligence operations from planning to dissemination phases, protect your organization, and help in critical defense decisions.
What you will learn
Understand the CTI lifecycle which makes the foundation of the study
Form a CTI team and position it in the security stack
Explore CTI frameworks, platforms, and their use in the program
Integrate CTI in small, medium, and large enterprises
Discover intelligence data sources and feeds
Perform threat modelling and adversary and threat analysis
Find out what Indicators of Compromise (IoCs) are and apply the pyramid of pain in threat detection
Get to grips with writing intelligence reports and sharing intelligence
Who this book is forThis book is for security professionals, researchers, and individuals who want to gain profound knowledge of cyber threat intelligence and discover techniques to prevent varying types of cyber threats. Basic knowledge of cybersecurity and network fundamentals is required to get the most out of this book.
Jean Nestor Dahj M. is a data scientist, cybersecurity researcher & analyst, and telecom professional with wide technical and scientific abilities. His skills have led him to data science, network probing, penetration testing & hacking, threat intelligence, and network analytics. He has built a wide range of skillsets through training and consultancy, including skills in cryptography, computer forensics, malware coding, and data products. Jean Nestor holds a master's degree (M-Tech) in Electrical Engineering from the University of South Africa. He is currently pursuing a PhD in the same field at the University of Johannesburg. His work history includes the likes of Huawei, Commprove technologies, Siftcon Forensic Services, Metro Teleworks, and Nanofritech Consulting. He is currently a full-stack data scientist at Rain Networks, part of a dynamic team developing data solutions. He currently lives in Pretoria and is originally from Kikwit, a small city in DR Congo
Table of Contents
Cyber Threat Intelligence Life Cycle
Requirements and Intelligent Team Implementation
Cyber Threat Intelligence Frameworks
Cyber Threat Intelligence Tradecraft and Standards
Goals Setting, procedures for CTI Strategy, and Practical Use Cases
Cyber Threat Modeling and Adversary Analysis
Threat Intelligence Data Sources
Effective Defensive Tactics and Data Protection
AI Application in Cyber Threat Analytics
Threat Modeling and Analysis: - Practical Use Cases
Usable Security: Threat Intelligence as part of the process
SIEM Solutions and Intelligence-driven SOCs
Threat Intelligence Metrics, Indicators of Compromise, and the Pyramid of Pain
Threat Intelligence Reporting and Dissemination
(N.B. Please use the Look Inside option to see further chapters)
Erscheinungsdatum | 03.05.2022 |
---|---|
Verlagsort | Birmingham |
Sprache | englisch |
Maße | 75 x 93 mm |
Themenwelt | Informatik ► Netzwerke ► Sicherheit / Firewall |
ISBN-10 | 1-80020-940-1 / 1800209401 |
ISBN-13 | 978-1-80020-940-4 / 9781800209404 |
Zustand | Neuware |
Haben Sie eine Frage zum Produkt? |
aus dem Bereich