Tips for managing IR teams and Execs (in the middle of your incident)!
- Steve Armstrong
- Tuesday, July 14th, 7:00pm - 8:00pm
There is more to Incident Response than just technical reviews of evidence and leading investigations. There are staff (investigators, execs and administrators) to motivate and manage whilst the attacker is constantly throwing planning hand grenades and technical spanners at your nicely formatted Gantt chart.
In this presentation Steve Armstrong will share some of his experiences and tips for managing staff both up and down the leadership chain. This is a light hearted presentation, packed with horror stories and advice to help those working in Enterprise Incident Response, there will be a Q&A session afterwards.
As well as a Certified SANS Instructor, Steve Armstrong is a Principal Incident Responder at Logically Secure Ltd.
The following bonus sessions are open to all paid attendees at no additional cost. There are many different types of events that fall into these categories:
- SANS@Night: Evening presentations given after day courses have ended. This category includes Keynotes.
|Modern Exploitation: How Hackers Hack With Live Demonstrations & Reversing||James Lyne||Monday, July 13th, 6:30pm - 7:30pm||SANS@Night|
|Using an Open Source Threat Model for Prioritized Defense||James Tarala||Tuesday, July 14th, 6:00pm - 7:00pm||SANS@Night|
|Tips for managing IR teams and Execs (in the middle of your incident)!||Steve Armstrong||Tuesday, July 14th, 7:00pm - 8:00pm||SANS@Night|
|Examining Shellcode in a Debugger through Control of the Instruction Pointer||Adam Kramer||Wednesday, July 15th, 6:00pm - 7:00pm||SANS@Night|
|Three Modern Mobile Threats: The Good, the Bad and the Ugly||Raul Siles||Wednesday, July 15th, 7:00pm - 8:00pm||SANS@Night|