CHAPTER 13

The Importance of Proactive Threat Hunting

This chapter includes questions on the following topics:

•  The key benefits of creating a threat hunting capability

•  The threat hunting process

•  Threat hunting tactics

•  Integrating threat hunting results into other security operations

Todayܣs attackers have the upper hand due to the problematic economics of computer security. Attackers have the concrete and inexpensive task of finding a single flaw to break a system. Defenders on the other hand are required to anticipate and deny any possible flawܣa goal both difficult to measure and expensive to achieve. Only automation can upend these economics.

–DARPA

In the cybersecurity field, threat hunting is a relatively new process, ...

Get CompTIA CySA+ Cybersecurity Analyst Certification Practice Exams (Exam CS0-002), 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.