Detection Engineering can be a minefield of technical and logistical challenges, but in this workshop, you’ll learn the fundamentals within a fully functional SIEM.
Detection Engineering can be a minefield of technical and logistical challenges, but in this workshop, you’ll learn the fundamentals within a fully functional SIEM.
From writing custom threat detections using a structured and scientific process to test-firing them yourself, you’ll gain hands-on experience that bridges the gap between theory and practice. By the end of this workshop, you will not only have a strong foundation in detection engineering knowledge but also the practical skills to build effective and high-fidelity detections from the ground up.
System Requirements
A computer
Student Requirements
A MetaCTF account - labs will be performed via MetaCTF Cloud Labs
An email ready to use to sign up for an Elastic Cloud free trial (you can't have used that email for an Elastic Cloud trial previously)
"Security Engineer, Triathlete, and Analytics Addict"
Bio
Hayden Covington is a Senior Analyst in Black Hills Information Security’s SOC where he specializes in training, quality assurance, detection engineering, and investigative analysis. With a previous background as a SOC analyst for a US naval contractor, Hayden has extensive experience in Digital Forensics and Incident Response (DFIR), Security Orchestration, Automation, and Response (SOAR), and insider threat.