I considered EDR coverage and network visibility alongside the intrusion techniques under assessment. SOC and incident-response experience helped me ask what the organisation could observe, investigate and act on, and turn those questions into assessment priorities and control recommendations.
Viewed
Growing MSSP with Offensive Services
Connecting findings to detection and response
From external attack surface to assumed-breach testing
Return to the full story ←