This is a 2 hour hands-on workshop.
As with any enterprise environment, we can (and should) focus on hardening our defenses to keep the adversaries out, but these defenses may some day be evaded via a variety of methods. Cloud is no different. In this workshop, we will work through the process of creating a detection that we can use as defenders to spot an adversary performing attack techniques against our Azure environments.
The overall process and takeaways will be:
Prerequisites: Prepare for this webcast by watching the introductory webcast Building Better Cloud Detections... By Hacking? (Azure Edition)
If you need to setup an Azure account, you can create a free trial account with Global Administrator access at https://azure.microsoft.com. The cost will be minimal (pennies) to complete the workshop.
This content supports materials and concepts from SEC541: Cloud Security Attacker Technique, Monitoring, and Threat Detection