Blueprint: Build the Best in Cyber Defense

Blueprint: Build the Best in Cyber Defense

Author: SANS Institute Language: English Episodes: 64
For security professionals tasked with defending networks, the daily challenge isn't just about responding to alerts-it's about building a resilient, intelligent defense from the ground up. Blueprint: Build the Best in Cyber Defense, from the SANS Institute, serves as an ongoing conversation for that exact purpose. This isn't a news recap; it's a deep, practical resource. Each episode connects you directly with the architects of modern security operations-those blue team leaders and seasoned experts who are actively protecting critical infrastructure and global enterprises. You'll hear candid discussions dissecting real-world defensive strategies, unpacking the nuances of emerging protocols, and evaluating new tools before they hit the mainstream. The focus is relentlessly on applied knowledge: how concepts translate into action at the console. Whether it's an interview breaking down a complex incident response or a technical deep dive explaining the mechanics of a novel attack vector, this podcast provides the substantive content needed to refine your craft. Think of it as a continuous learning feed, offering the detailed explanations and practitioner insights that help you construct a more effective security posture, one informed decision at a time. Tune in to Blueprint for the kind of forward-looking, foundational knowledge that defines a career in cyber defense.
Episodes
Playbook for Security Onion [not-audio_url] [/not-audio_url]

Duration: 32:52
Driving consistency and maintaining a high standard for alert response is a problem all SOCs must face, but how? In this episode, Josh Brower describes his efforts to combine automated detection signature deployment and…
The Blue Teamer's Blueprint for Malware Triage [not-audio_url] [/not-audio_url]

Duration: 1:06:36
Even if you're not a malware analyst, any blue teamer should be able to do some initial basic malware sample triage. The good news is that this is quite easy to do using freely available tools once you know what is avail…
SOC Metrics: Measuring Success and Preventing Burnout [not-audio_url] [/not-audio_url]

Duration: 49:14
Looking for a new way to approach the difficult problem of measuring and improving your SOC? Check out this episode to hear how to use methods pioneered in the manufacturing and reliability industry to help wrap your hea…
A Machine Learning Primer for the Blue Team [not-audio_url] [/not-audio_url]

Duration: 40:11
Austin Taylor discusses the promise and reality of cyber security-centric data science, and how you can use machine learning for solving practical security problems. Twitter Handles: @HuntOperator | @SecHubb | @SANSDefen…
Empowering Security Researchers Around the World! [not-audio_url] [/not-audio_url]

Duration: 40:38
Roberto Rodriguez explains the awesome projects and initiatives he is working on to help blue teams perform advanced data collection, analysis, and threat hunting. Twitter Handles: @Cyb3rWard0g | @SecHubb | @SANSDefense…
Locking Down and Monitoring Cloud Infrastructure [not-audio_url] [/not-audio_url]

Duration: 41:18
Cloud expert Kyle Dickinson discusses common cloud infrastructure attacks, and how you can detect and prevent them before they happen to your organization. Twitter Handles: @KyleHaxWhy | @SecHubb | @SANSDefense All Bluep…
Passwordless - Can it Be Done? [not-audio_url] [/not-audio_url]

Duration: 40:41
Mark and Libby share the new technologies in use at Microsoft to dramatically decrease the need for the use of passwords in the enterprise. Twitter Handles: @markmorow | @TruBluDevil | @SecHubb | @SANSDefense All Bluepri…
Training Yourself in a Quarantined World [not-audio_url] [/not-audio_url]

Duration: 34:27
Dave and Ryan speak with John about resources for training yourself, and the challenges of setting up a large-scale cyber lab to simulate an advanced attack for their Splunk Boss of the SOC competition. Twitter Handles:…
Understanding and Applying Threat Intelligence [not-audio_url] [/not-audio_url]

Duration: 39:37
Katie Nickels talks about what threat intelligence is, where to get it, what you should expect from it, and how the SOC should be using it. Twitter Handles: @likethecoins | @SecHubb | @SANSDefense All Blueprint Podcast E…
Privacy Laws: The Future Driver of Cyber Security [not-audio_url] [/not-audio_url]

Duration: 39:27
Mary Chaney shares what types of laws we should be concerned about. She discusses her thoughts on privacy laws and how that will drive cyber security, and what she’s doing to get more diverse representation in the indust…