LC101: Writing detection and response rules
LimaCharlie is a cybersecurity middleware platform to connect sources of security telemetry, automate activity based on what's being observed, and forward data where you need it. LimaCharlie puts you in complete control of your data, allowing you to build the security program that your organization wants and needs.
In our first LC101 session (https://www.youtube.com/watch, we looked at how to get started with LimaCharlie; creating an account and setting up an organization. In our next session, join Matt Bromiley, our Lead Solutions engineer, to continue the discussion in getting familiar with LimaCharlie's detection and response capabilities.
In this webinar, we will look at:
- What goes into a detection and response (D&R) rule
- Crafting detection rules for operating system telemetry
- Scaling detection and response rules across third-party logs and other telemetry
- Importing pre-configured rules to get your organization up and running fast
This is part two of a multi-part education series, where we look at different ways to utilize the LimaCharlie platform. As always, our free tier lets you get started with LimaCharlie without entering in a credit card. We encourage you to follow along, bring your questions, and learn how LimaCharlie can help you create the security program you’ve always wanted!
Website: https://limacharlie.io
Join the LimaCharlie Slack: https://slack.limacharlie.io