Idea from Austin Mitchell


How to Secure Remote Access Infrastructure Against Malicious Insiders


I'd like to cover some of the specific technologies and approaches that different vendors use to address insider threats in remote access-enabled enterprise IT environments. In particular, I'd like to show how many off-the-shelf EDR and SIEM solutions fail to adequately protect against compromised credential attacks (or make investigating them prohibitively time-consuming), while more advanced solutions grant visibility into the behaviors of authenticated users in real-time.


Austin Mitchell