Steve Cooper
blueteamsteve.bsky.social
Steve Cooper
@blueteamsteve.bsky.social
Cyber security, detection engineering, threat intelligence, SecOps and automation AI/ML. Scottish.
Should a detection engineering team be expected to have detection engineering requirements similar to a cti team?

Would it add value or friction?
November 29, 2024 at 7:50 PM
What tools are peole using for threat intelligence diagrams these days? Are there any cool AI diagramming tools out now?

I typically use draw io since it's free but I'm a lackluser designer so need al the help I can get!
November 29, 2024 at 11:53 AM
Fantastic write up. Some really interesting tradecraft and the definition of APT.

But also highlights some foundational detections all orgs should have around suspicions process locations, cred access, etc.

Even using sophisticated techniques most attackers still leave tracks!
November 22, 2024 at 8:33 PM
If you wanted to help someone go zero to hero as a detection engineer what resources would you suggest?
November 13, 2024 at 9:41 AM