September 2021
Intermediate to advanced
336 pages
8h 29m
English
In recent years, the proliferation of endpoint protection, detection, and response technologies enabled security operations teams to gain better visibility into attacks that target endpoints. This is one reason that dwell time—the measurement of time between the start of an incident and when a security operations team detects the intrusion—has decreased from a 78-day median in 2019 to 56 days in 2020 (Source: FireEye 2020 M-Trends). Unfortunately, this trend also encouraged malicious actors to increase their use of other attack vectors, such as email, cloud applications, and identities. These additional attack vectors pressure security teams to cover more ground in these additional domains, ...
Read now
Unlock full access