SuriCon2024 Intrusion Analysis & Threat Hunting [PRE-CONFERENCE TRAINING]

Schedule

Mon Nov 11 2024 at 08:00 am to Tue Nov 12 2024 at 05:00 pm

UTC+01:00

Location

Hotel Riu Plaza España | Madrid, MD

Advertisement
Start your SuriCon week early! Join our trainers in-person for this Suricata training course.
About this Event

Delivered by Suricata developers, this 2-day user training is held the same week as SuriCon2024 - join us for both and receive a 20% discount on this training!

Suricata has been and is a fundamental part of any security monitoring stack by way of providing network visibility, detection and security policies audit since 2009, widely used by many big and small organizations alike around the world both on prem and in the cloud.

In today’s threat landscape, sophisticated adversaries have routinely demonstrated the ability to compromise enterprise networks and remain hidden for extended periods of time. In Intrusion Analysis and Threat Hunting with Open Source Tools, you will learn how to dig deep into network traffic to identify key evidence that a compromise has occurred, learn how to deal with new forms of attack, and develop the skills necessary to proactively search for evidence of new breaches. We will explore all phases of adversary tactics and techniques - from delivery mechanisms to post-infection traffic and data exfiltration to get hands-on analysis experience. Open-source tools such as Suricata, Arkime and Kibana will be utilized to generate data, perform exhaustive traffic analysis, and develop comprehensive threat hunting strategies.

This training also offers a unique opportunity to bring in-depth use cases, questions, and challenges directly to the Suricata development team. By the end of this course, you will have the knowledge and skills necessary to discover new threats in your network and build an effective threat hunting program.


How to receive your discount:

  1. Purchase your ticket for SuriCon2024 by visiting https://suricon2024-madrid.eventbrite.com.
  2. Email us at [email protected] and let us know your intention to attend both events.
  3. We'll provide a single-use discount link to register for the training.


MORE INFORMATION:

Who should attend:

  • Security Administrators
  • Enterprise Defenders
  • Incident Responders
  • Security Operations Specialists
  • Security Analysts
  • Malware Analysts

Pre-requisites: This is an intermediate to advanced level course. Students should have the following knowledge to get the most out of this training:

  • General understanding and/or use of Suricata
  • Being able to import and run a VM (minimum 2CPU / 5GB RAM) on your laptop
  • Basic understanding of IDS/IPS/NSM principles

A sample of the topics that will be covered:

  • Gaps in security visibility that Suricata covers
  • Cover specific cases of Do’s and Dont’s during hunting
  • Suricata detection and monitoring with encrypted traffic
  • How to - IoC/pattern match vs more stateful detection logic
  • New additions and use cases in Suricata 7 both in terms of detection and deployment (e.g. protocols, rule keywords, conditional pcap logging)
  • How to use the data generated from Suricata effectively
  • Learn the fundamentals of rule writing, management and rule comprehension
  • Where to find exact reproducible cases of signature keywords usage.
  • Recognize traffic anomalies
  • Analyze real malware traffic generated from APT tools, Loders, Stealers
  • Free sources of real malware network traffic
  • Learn how to pivot with off Suricata data in structured and unstructured hunts
  • Learn different usage techniques for hunting
  • Rules vs. Kibana / Splunk / SIEM style queries over network protocol and flow (NSM) data
  • Lateral detection techniques in Windows environments (SMB/DCERPC)
  • Exercises using Machine Learning, Pandas, Jupyter on Suricata generated data.
  • Pros and cons vs traditional methods and pivots from a security analyst's perspective.
  • Make sense out of millions events on the wire


Enhance your experience by attending our pre-conference training sessions on November 11th and 12th. These sessions provide in-depth knowledge and hands-on experience. As a SuriCon attendee, you're eligible for a 20% discount on these valuable courses, available both in-person and virtually. For registration and details visit Advanced Deployment and Configuration and Intrusion Detection and Threat Hunting.


Refund Policy for SuriCon2024 (Trainings and Conference)

We value your commitment to SuriCon. However, we understand that plans can change, and we aim to be as accommodating as possible within our operational constraints. Please see our refund and credit policy below.


  • Refunds: Refunds are not available except in specific circumstances. We will issue refunds only if we need to cancel a training due to low enrollment or events beyond our control, such as catastrophic world events (e.g., natural disasters, global health emergencies).
  • Cancellations by Participants: If you need to cancel your ticket, please notify us at least by November 1, 2024. While refunds are not available for cancellations, we are pleased to offer a credit towards a ticket for SuriCon2025 conference or training (which ever is applicable). This advance notice helps to ensure OISF does not incur unnecessary expenditures.
  • Credit Details: Credits for future training are subject to availability and will cover the full cost of your original ticket and can be transferred to another individual if you are unable to attend.
  • Exceptions: In cases of personal emergency or health issues, please contact us to discuss potential accommodations, which may include exceptions to our standard policy.


Please note, all net proceeds from SuriCon2024 and all related training events directly fund the development of Suricata and support OISF's mission.

Contact: For queries, feel free to reach out at [email protected] or visit https://suricon.net.


Advertisement

Where is it happening?

Hotel Riu Plaza España, 84 Calle Gran Vía, Madrid, Spain

Event Location & Nearby Stays:

Tickets

USD 2500.00

OISF

Host or Publisher OISF

It's more fun with friends. Share with friends

Discover More Events in Madrid

Sun Nov 10 2024 at 07:00 pm Hollywood Undead @ Palacio Vistalegre in Madrid

Palacio Vistalegre

 EVERGREY + Special Guest: Klogr + Virtual Symmetry: 10.11.2024 (ES) MADRID, Revi Live
Sun Nov 10 2024 at 07:30 pm EVERGREY + Special Guest: Klogr + Virtual Symmetry: 10.11.2024 (ES) MADRID, Revi Live

Revirock Studios S.L.

ENTERTAINMENT MUSIC
The Sheepdogs in Madrid
Sun Nov 10 2024 at 08:30 pm The Sheepdogs in Madrid

Sala Mon Live

Frank Carter And The Rattlesnakes (Madrid, 2024)
Mon Nov 11 2024 at 01:00 am Frank Carter And The Rattlesnakes (Madrid, 2024)

BUT

FESTIVALS CONCERTS
Mon Nov 11 2024 at 07:00 pm Frank Carter & The Rattlesnakes @ Sala MON Live Madrid in Madrid

Sala MON Live Madrid

Mon Nov 11 2024 at 07:30 pm Pat Metheny @ Auditorio Nacional De Música in Madrid

Auditorio Nacional De Música

Music Minds - Europe 2024
Tue Nov 12 2024 at 12:00 am Music Minds - Europe 2024

Madrid

MUSIC ENTERTAINMENT
Gabriele M\u00fcnter. La gran pintora expresionista.
Tue Nov 12 2024 at 11:00 am Gabriele Münter. La gran pintora expresionista.

Museo Nacional Thyssen-Bornemisza

SPORTS ART
Conquer Overthinking And Make Lasting Changes
Thu Jun 24 2021 at 10:00 am Conquer Overthinking And Make Lasting Changes

Madrid Online

WORKSHOPS
Flamenco Class Experience (Private Groups)
Mon Jan 03 2022 at 06:00 pm Flamenco Class Experience (Private Groups)

Mercado de Antón Martín

DANCE WORKSHOPS
Curso I de Meditaci\u00f3n para J\u00f3venes hasta 40: La Mirada Interna
Mon Jan 24 2022 at 07:00 pm Curso I de Meditación para Jóvenes hasta 40: La Mirada Interna

Centro Sociocultural Clara Campoamor (Retiro)

ANIME PERFORMANCES
ISTQB\u00ae Automation Engineer Training Course - Madrid(3 days, in English)
Wed Mar 02 2022 at 09:00 am ISTQB® Automation Engineer Training Course - Madrid(3 days, in English)

Regus - Madrid, Ortega y Gasset

WORKSHOPS
Visita la Fundaci\u00f3n Mapfre de Madrid - Sala Recoletos
Fri Sep 23 2022 at 11:00 am Visita la Fundación Mapfre de Madrid - Sala Recoletos

P.º de Recoletos, 23

ART EXHIBITIONS
WINE TASTING & FLAMENCO MASTER CLASS + PUB CRAWL (Private Groups)
Thu May 18 2023 at 04:00 pm WINE TASTING & FLAMENCO MASTER CLASS + PUB CRAWL (Private Groups)

El Oso y el Madroño

BAR-CRAWLS PARTIES
Dancing Monday \u2013 Clase Gratis de SALSA & Bollywood + BARCEL\u00d3 CLUB
Mon Oct 02 2023 at 08:30 pm Dancing Monday – Clase Gratis de SALSA & Bollywood + BARCELÓ CLUB

Discoteca Calle 365 Callejón Secreto

DANCE ENTERTAINMENT
Una clase particular en H0 Golf House Madrid
Mon Dec 04 2023 Una clase particular en H0 Golf House Madrid

H0 Golf House Madrid

SPORTS WORKSHOPS
Taller de cocteler\u00eda en Malasa\u00f1a
Mon Dec 04 2023 Taller de coctelería en Malasaña

Así Sí

WORKSHOPS
Virtual Speaking Masterclass Madrid
Tue Jan 09 2024 at 08:00 pm Virtual Speaking Masterclass Madrid

Madrid

WORKSHOPS VIRTUAL
Spark Your Speeches Masterclass Madrid
Wed Jan 17 2024 at 05:00 pm Spark Your Speeches Masterclass Madrid

Madrid

ART PUBLIC-SPEAKING
Talleres gastron\u00f3micos _ Sabores de Casa
Tue Jan 23 2024 at 07:30 pm Talleres gastronómicos _ Sabores de Casa

Casa de México en España

PERFORMANCES WORKSHOPS

What's Happening Next in Madrid?

Discover Madrid Events