Creating a Threat-Informed Culture
AI-generated summary and notes. Check quotations, numbers, and important claims against the source video. Captions may contain errors.
Watch the source video on YouTube
Estimated reading time: 42 minutes for the text on this page.
The keynote panel at MITRE's Center for Threat-Informed Defense delved into the importance of integrating threat intelligence into an organization's common practices and strategic frameworks. The discussion, led by moderator John Baker, explored the journeys and insights of industry leaders from Fortinet, National Australia Bank, and Citi's Asia-Pacific Red Team. Emphasis was placed on adopting a threat-informed defense approach to better prioritize resources, improve risk assessments, and enhance communication at all organizational levels.
The panel discussion, part of the MITRE ATT&CK conference, spotlighted the dynamic integration of threat intelligence into cybersecurity practices. John Baker, as the moderator, emphasized the necessity of a communal approach to advancing threat-informed defense strategies, urging organizations to leverage collective knowledge and experiences to enhance cyber defense capabilities.
Participants including Derek Mankey of Fortinet, David West from National Australia Bank, and Mark from Citiβs Asia-Pacific Red Team shared their unique insights and experiences in adopting threat-informed defense. They highlighted how such strategies help in prioritizing resources and aligning them more effectively with organizational objectives, ultimately enhancing security operations.
Despite challenges in adoption and the ever-evolving threat landscape, the panelists reinforced the need for ongoing engagement and learning. They advocated for standardizing tools and practices, creating a common threat language, and nurturing a collaborative environment that adapts to the continuously changing cyber defense paradigms.