In today’s cyber-threat landscape, relying solely on traditional indicators of compromise (IOCs) – such as file extensions, IP addresses or known domains – is no longer sufficient. Modern, sophisticated attackers are able to modify these parameters in a fraction of a second, evading standard detection rules.
To effectively secure organisations’ infrastructure, security departments must adopt a proactive approach. Threat hunting, based on an analysis of the tactics, techniques and procedures (TTPs) used by cybercriminals, is key.
That is why Softinet, in collaboration with its partners Fortinet and Arrow, invites you to a unique, in-person technical workshop: Fortinet SecOps: Threat Hunting Workshop using MITRE ATT&CK™ TTPs.
What will you learn during the workshop?
During this intensive, full-day session, participants will take on the role of a security analyst (SOC Analyst). Your task will be to identify and neutralise previously undetected threats hidden within the simulated network of AcmeCorp.
During the exercises, we will be using the MITRE ATT&CK™ framework – a globally recognised knowledge base on adversarial behaviour, based on real-world observations.
Key technical issues:
- Analysis of attack vectors: Conducting simulations of offensive operations and assessing their impact on the IT environment.
- Real-world threat scenarios: Detection of initial access techniques, persistence techniques, privilege escalation and command-and-control (Command & Control / C2) channels.
- Fortinet SecOps integrated analytics: Working with a comprehensive ecosystem of detection and response tools – combining the capabilities of SIEM, EDR, Sandbox and Deceptor.
Important: To take part in the workshop, you do not need to have Fortinet products in your organisation. During the session, we will focus on universal threat detection methodologies, demonstrating how to proactively build your organisation’s resilience.
Why is it worth taking part?
- 100% hands-on: We work in a dedicated cloud-based lab environment (Fortinet Fast Track).
- A tried-and-tested framework: You’ll learn how to use the MITRE ATT&CK™ framework in your day-to-day work as a SOC analyst.
- Networking and sharing experiences: A meeting bringing together cybersecurity practitioners and engineers from Softinet, Fortinet and Arrow.
Registration requirements and rules
- Bring Your Own Device (BYOD): Each participant must have their own computer capable of connecting to the workshop environment.
- Small group: Due to the workshop-style nature of the event, places are limited. Places will be allocated on a first-come, first-served basis.
Join us and see what modern threat hunting looks like in practice!