Talk With an Expert

Creating an Active Defense PowerShell Framework to Improve Security Hygiene and Posture

Creating an Active Defense PowerShell Framework to Improve Security Hygiene and Posture (PDF, 5.42MB)Published: 28 Apr, 2020
Created by:
Kyle Snihur

Security professionals are inundated with alerts, and analysts are suffering alert fatigue with no actionable intelligence (Miliard, 2019). Poor priorities and lack of resources put enterprises at risk (Wilson, 2015). In Windows domains, PowerShell can be used to aggregate data and provide actionable reports and alerts for security professionals continuously. This paper explores the viability of creating an Active Defense PowerShell framework for small to medium-sized organizations to improve security hygiene and posture. The benefits include providing actionable alerts and emails that security professionals can quickly address. Aggregated data can also be used to identify and prioritize holes in an organization's security posture.