Build crucial cyber security skills through interactive training during SANS Cyber Security Mountain 2021. Save $150 thru 6/30.


To attend this webcast, login to your SANS Account or create your Account.

This webcast has been archived. To view the webcast login into your SANS Portal Account or create an account by clicking the "Get Registered" button on the right. Once you register, you can download the presentation slides below.

Supercharge Incident Response with data your network team already collects

  • Wednesday, November 18, 2020 at 12:00 PM EST (2020-11-18 17:00:00 UTC)
  • Matt Bromiley, Bob Hansmann


  • Infoblox

You can now attend the webcast using your mobile device!



Year after year, we see the same thing: responding to incidents takes too long. Unfortunately, each minute lost is a minute the attacker gained, sometimes to the tune of weeks or months. Some of the most critical incident response stepsidentification and containmentprovide an opportunity for your defenders to gain back the advantage.

Todays enterprise infrastructures are nothing like theyve been even in the recent past: hybrid environments, mixed cloud, mixed vendors, worldwide assets, mobile workforces, microservices, and more. All these changes mean your approach must change, too. Instead of relying on external data points, take a look at the data you already generate and use threat intelligence to help you navigate and make sense of it.

Join SANS author Matt Bromiley and Infoblox cybersecurity expert Bob Hansmann to learn how to enhance and supercharge your incident response process with tips you can implement right away.

Be among the first to receive the associated whitepaper written by Matt Bromiley.

Speaker Bios

Matt Bromiley

Matt Bromiley is a SANS digital forensics and incident response (IR) instructor, teaching FOR508 Advanced Incident Response, Threat Hunting, and Digital Forensics and SANS FOR572 Advanced Network Forensics: Threat Hunting, Analysis, and Incident Response. He is also an IR consultant at a global IR and forensic analysis company, combining experience in digital forensics, log analytics, and incident response and management. His skills include disk, database, memory and network forensics; incident management; threat intelligence and network security monitoring. Matt has worked with organizations of all shapes and sizes, from multinational conglomerates to small, regional shops. He is passionate about learning, teaching and working on open source tools.

Bob Hansmann

Bob Hansmann has been in the cybersecurity industry for over 20 years, working with vendors as an engineer, architect, product manager, and currently in product marketing. He helped launch the industry's first security offerings for file servers and web gateways in the '90s and continues to drive innovative security initiatives and best practices. Today, Mr. Hansmann is working with Infoblox, focused on leveraging DNS as a security visibility and control point, and making threat intelligence more actionable, automated, and available across a broad spectrum of the security portfolio.

Need Help? Visit our FAQ page or email

Not able to attend a SANS webcast? All Webcasts are archived so you may view and listen at a time convenient to your schedule. View our webcast archive and access webcast recordings/PDF slides.