Análisis de inteligencia de amenazas: quién necesita inteligencia cibernética y por qué

! , R-Vision Threat Intelligence Platform (TIP). , . threat intelligence, , , , Gartner .





TI, , , open-source . , TI. !





threat intelligence?

, threat intelligence, , : , . , , Gartner SANS Institute. 





TI

Cyber threat intelligence is knowledge about adversaries and their motivations, intentions, and methods that is collected, analyzed, and disseminated in ways that help security and business staff at all levels protect the critical assets of the enterprise (Threat intelligence — , , , - ).





Definitive Guide to Cyber Threat Intelligence





Threat intelligence is evidence based knowledge, including context, mechanisms, indicators, implications and actionable advice, about an existing or emerging menace or hazard to assets that can be used to inform decisions regarding the subject's response to that menace or hazard» (Threat intelligence — , , , , , ).





Gartner, McMillan (2013) from Tactics, Techniques and Procedures (TTPs) to Augment Cyber Threat Intelligence (CTI): A Comprehensive Study





The set of data collected, assessed and applied regarding security threats, threat actors, exploits, malware, vulnerabilities and compromise indicators ( , , , , , , ).





SANS Institute





R-Vision , .





« » — , . : , N , , () , . , , — . . . , — . , , 1000 . , . . , , . , , : , , , … . , - , , ( — ), . , — . TI .





, , TI . , TI SOC (Security Operations Center). TI — (MSSP/MDR). , TI , , — . : TI . , TI , , .





threat intelligence , TI

Threat intelligence — , , , , . , :





  • ,   ( / , ).





  • , .





threat intelligence — . RSS-. RSS- — , . TI , , , , , , . 





? — , — . TI , . , . TI , , , , , (), . , . . 





, , . , , . : « » — , N . . , .





, « ». TI, , . — , TI , , . 





threat intelligence, , , . Stay tuned!








All Articles