PLAY PODCASTS
BlueHat Oct 23 Day 1 Keynote: John Lambert
Season 1 · Episode 14

BlueHat Oct 23 Day 1 Keynote: John Lambert

<p>In this week’s special episode, we bring you the BlueHat Oct 23, day 1 keynote delivered by John Lambert, Microsoft Corporate Vice President and Security Fellow. In his BlueHat Oct day 1 keynote, John discusses the importance of incidents in the security field, strategies for finding security incidents, and the importance of looking beyond traditional defense measures to discover attackers and traces outside of one's network. John introduces the idea of "hunting until closure," which involves systematically investigating various attacker actions to learn more about their activities. He also mentions the concept of "time travel breach detection," which uses historical logs to trace and identify previous attacker actions. </p><p> </p><p> </p><p><strong>In This Episode You Will Learn</strong>:    </p><p> </p><ul><li>The importance of security incidents in shaping the cybersecurity field </li><li>Why logs and telemetry data in cybersecurity are essential when tracking attacker actions </li><li>How valuable mutual respect is in the security community </li></ul><p> </p><p><strong>Some Questions We Ask:</strong>    </p><p> </p><ul><li>How do escalating conflicts within teams affect productivity? </li><li>What role did trust and collaboration play in responding to the SolarWinds incident? </li><li>Why must the security community work together to protect customers? </li></ul><p> </p><p><strong>Resources:</strong>  </p><p><a href="https://www.linkedin.com/in/johnjlambert/" rel="noopener noreferrer" target="_blank">View John Lambert on LinkedIn</a>  </p><p><a href="https://www.linkedin.com/in/wendyzenone/" rel="noopener noreferrer" target="_blank">View Wendy Zenone on LinkedIn</a> </p><p><a href="https://www.linkedin.com/in/nicfill/" rel="noopener noreferrer" target="_blank">View Nic Fillingham on LinkedIn</a> </p><br><p><strong>Related Microsoft Podcasts:             </strong>    </p><ul><li><a href="https://afternooncybertea.com/" rel="noopener noreferrer" target="_blank">Afternoon Cyber Tea with Ann Johnson</a> </li><li><a href="https://thecyberwire.com/podcasts/uncovering-hidden-risks" rel="noopener noreferrer" target="_blank">Uncovering Hidden Risks</a>    </li><li><a href="https://securityunlockedpodcast.com/" rel="noopener noreferrer" target="_blank">Security Unlocked</a>     </li><li><a href="https://securityunlockedcisoseries.com/" rel="noopener noreferrer" target="_blank">Security Unlocked: CISO Series with Bret Arsenault</a> </li><li><a href="https://shows.acast.com/secure-the-job-breaking-into-security" rel="noopener noreferrer" target="_blank">Secure the Job: Breaking into Security</a> </li></ul><p>   </p><br><p>Discover and follow other Microsoft podcasts at<a href="https://news.microsoft.com/podcasts/" rel="noopener noreferrer" target="_blank"> microsoft.com/podcasts</a>  </p><p><br></p><br /><hr><p style='color:grey; font-size:0.75em;'> Hosted on Acast. See <a style='color:grey;' target='_blank' rel='noopener noreferrer' href='https://acast.com/privacy'>acast.com/privacy</a> for more information.</p>

The BlueHat Podcast · Microsoft

October 18, 202349m 27s

Audio is streamed directly from the publisher (traffic.megaphone.fm) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

In this week’s special episode, we bring you the BlueHat Oct 23, day 1 keynote delivered by John Lambert, Microsoft Corporate Vice President and Security Fellow. In his BlueHat Oct day 1 keynote, John discusses the importance of incidents in the security field, strategies for finding security incidents, and the importance of looking beyond traditional defense measures to discover attackers and traces outside of one's network. John introduces the idea of "hunting until closure," which involves systematically investigating various attacker actions to learn more about their activities. He also mentions the concept of "time travel breach detection," which uses historical logs to trace and identify previous attacker actions. 

 

 

In This Episode You Will Learn:    

 

  • The importance of security incidents in shaping the cybersecurity field 
  • Why logs and telemetry data in cybersecurity are essential when tracking attacker actions 
  • How valuable mutual respect is in the security community 

 

Some Questions We Ask:    

 

  • How do escalating conflicts within teams affect productivity? 
  • What role did trust and collaboration play in responding to the SolarWinds incident? 
  • Why must the security community work together to protect customers? 

 

Resources:  

View John Lambert on LinkedIn  

View Wendy Zenone on LinkedIn 

View Nic Fillingham on LinkedIn 


Related Microsoft Podcasts:                 

   


Discover and follow other Microsoft podcasts at microsoft.com/podcasts  



Hosted on Acast. See acast.com/privacy for more information.