The most trusted source for computer security training, certification and research.



select a course
Washington, DC - December 9 - 10, 2009
Global Information Assurance Certification

This is critical to any business to protect sensitive data.
-Melissa Black, Lockheed Martin

SANS WhatWorks in Incident Detection Summit 2009

with Richard Bejtlich

rich
Dates:
Summit: December 9-10, 2009
Summit Venue:

Washington Marriott Wardman Park Hotel
2660 Woodley Road NW
Washington, DC 20008
Phone: 202) 328-2000
Fax: (202) 234-0015
Website: www.marriott.com/hotels/travel...

Table of Contents

Summit Overview

Before you can respond to an incident, you have to detect it. We're bringing detection back.

Why should you attend the SANS WhatWorks in Incident Detection Summit 2009?

Following the success of the 2008 and 2009 editions of the SANS WhatWorks in Forensics and Incident Response Summits, SANS is teaming with Richard Bejtlich to create a practitioner-focused event dedicated to incident detection operations. The SANS WhatWorks in Incident Detection Summit 2009 will share tools, tactics, and techniques practiced by some of the world's greatest incident detectors. The Summit will offer two full days of content in a single track, consisting of keynotes, expert briefings, and dynamic panels. The event will concentrate on network-centric and host-centric methods to detect intruders that work in the real world.

Attending the Incident Detection Summit earns 12 hours of CPE Credits.

What Will You Learn at the Summit?

  • How do Computer Incident Response Teams and Managed Security Service Providers detect intrusions?
  • What network-centric and host-centric indicators yield the best results, and how do you collect and analyze them?
  • What open source tools are the best-kept secrets in the security community, and how can you put them to work immediately in your organization?
  • What sources of security intelligence data produce actionable indicators?
  • How can emerging disciplines such as proactive live response and volatile analysis find advanced persistent threats?

Who Should Attend

  • Chief Information Security Officers who want to know what it takes to validate the effectiveness of their security program
  • Information security professionals who want to enter the rapidly expanding field of intrusion detection
  • Security staff who want to learn the latest tools, tactics, and techniques to detect incidents
  • Information security consultants who advise clients on successful incident detection programs
  • Law Enforcement personnel who want to know how skilled intruders try to evade discovery
  • Any organization that is currently attempting to mitigate a large scale intrusion or data breach
  • Managers who are trying to hire technical staff to create or augment their organization's incident detection team
  • Red Teams who want to learn ways to evade notice by incident detectors

What Attendees are Saying

What past attendees had to say about recent Forensics and Incident Response Summits

  • The level of intellectual capital at this conference was impressive. - Michael Cloppert, Lockheed Martin
  • This is the best forum to share info and to find out what works and what doesn't - without vendor spin. - Steve Wallace, Lyondell Bassel
  • The SANS WhatWorks Summit was an impressive collection of experts from both government and private sector, which provided a timely and informative agenda on incident response and forensic issues. - Boyd Barker, Shell Oil Company

Read the Blogs

http://taosecurity.blogspot.com/2009/08/sans-incident-detection-summit-in-dc-in.html - TaoSecurity Blog