Top Cybersecurity Instructors and Best Offers of the Year Available Now - Learn More!


To attend this webcast, login to your SANS Account or create your Account.

This webcast has been archived. To view the webcast login into your SANS Portal Account or create an account by clicking the "Get Registered" button on the right. Once you register, you can download the presentation slides below.

Integrated Incident Response: A SANS Survey

  • Thursday, August 01, 2019 at 1:00 PM EDT (2019-08-01 17:00:00 UTC)
  • Matt Bromiley


  • DFLabs
  • DomainTools
  • ExtraHop
  • Infoblox
  • King & Union
  • OpenText Inc.
  • Unisys
  • Swimlane

You can now attend the webcast using your mobile device!



This incident response (IR) survey is designed to provide insight into the integration of IR capabilities to identify weak spots and best practices for improving IR functions and capabilities. Attendees at this webcast will learn about the experiences of survey participants with regard to:

  • The anatomy of incidents/breaches
  • How quickly organizations were able to react
  • What types of data, tools and information are key to investigations of an incident
  • How successful investigations have been
  • The state of budget and staffing for IR
  • Levels of integration of IR teams and the maturity of IR processes
  • Impediments to IR implementations and plans for improvement

Best practices and actionable advice will be presented to help organizations improve their IR practices to be more integrated and efficient.

Register for this webcast and be among the first to receive the associated whitepaper written by SANS instructor, IR expert and survey author Matt Bromiley.

Click here to register for a panel discussion involving the authors and sponsors on Friday, August 2, 2019, at 1 PM (EDT) to learn more about how your organization can use these survey results to improve your incident response.

View the associated whitepaper here.

Speaker Bio

Matt Bromiley

Matt Bromiley is a SANS digital forensics and incident response (IR) instructor, teaching FOR508 Advanced Incident Response, Threat Hunting, and Digital Forensics and SANS FOR572 Advanced Network Forensics: Threat Hunting, Analysis, and Incident Response. He is also an IR consultant at a global IR and forensic analysis company, combining experience in digital forensics, log analytics, and incident response and management. His skills include disk, database, memory and network forensics; incident management; threat intelligence and network security monitoring. Matt has worked with organizations of all shapes and sizes, from multinational conglomerates to small, regional shops. He is passionate about learning, teaching and working on open source tools.

Need Help? Visit our FAQ page or email

Not able to attend a SANS webcast? All Webcasts are archived so you may view and listen at a time convenient to your schedule. View our webcast archive and access webcast recordings/PDF slides.