<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>threat detection &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/threat-detection/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Fri, 13 Jun 2025 15:22:16 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>AWS CIRT announces the launch of the Threat Technique Catalog for AWS</title>
		<link>https://noise.getoto.net/2025/06/13/aws-cirt-announces-the-launch-of-the-threat-technique-catalog-for-aws/</link>
		
		<dc:creator><![CDATA[Steve de Vera]]></dc:creator>
		<pubDate>Fri, 13 Jun 2025 15:22:16 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=8976d04515ed5378898cf8e01d16f273</guid>

					<description><![CDATA[Greetings from the AWS Customer Incident Response Team (AWS CIRT). AWS CIRT is a 24/7, specialized global Amazon Web Services (AWS) team that provides support to customers during active security events on the customer side of the AWS Shared Responsibility Model. We’re excited to announce the launch of the Threat Technique Catalog for AWS. When […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Mapping AWS security services to MITRE frameworks for threat detection and mitigation</title>
		<link>https://noise.getoto.net/2025/05/13/mapping-aws-security-services-to-mitre-frameworks-for-threat-detection-and-mitigation/</link>
		
		<dc:creator><![CDATA[Pratima Singh]]></dc:creator>
		<pubDate>Tue, 13 May 2025 15:49:20 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Amazon GuardDuty]]></category>
		<category><![CDATA[GuardDuty]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=f23730ab7e14dc4f7512c1090de4956a</guid>

					<description><![CDATA[In the cloud security landscape, organizations benefit from aligning their controls and practices with industry standard frameworks such as MITRE ATT&#38;CK®, MITRE EngageTM, and MITRE D3FENDTM. MITRE frameworks are structured, openly accessible models that document threat actor behaviors to help organizations improve threat detection and response. Figure 1: Interaction between the various MITRE frameworks Figure […]]]></description>
		
		
		<enclosure url="https://archive.org/details/Shmoocon-2022/Shmoocon2022-Karen_Lamb%2C_Gabby_Raymond%2C_%26_Maretta_Morovitz-She_doesn%E2%80%99t_even_go_here.mp4" length="0" type="video/mp4" />

			</item>
		<item>
		<title>Testing and evaluating GuardDuty detections</title>
		<link>https://noise.getoto.net/2025/01/28/testing-and-evaluating-guardduty-detections/</link>
		
		<dc:creator><![CDATA[Marshall Jones]]></dc:creator>
		<pubDate>Tue, 28 Jan 2025 19:47:55 +0000</pubDate>
				<category><![CDATA[Amazon GuardDuty]]></category>
		<category><![CDATA[announcements]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2e0baa5ccf3f7d2928e2a69a698ba1ae</guid>

					<description><![CDATA[Amazon GuardDuty is a threat detection service that continuously monitors, analyzes, and processes Amazon Web Services (AWS) data sources and logs in your AWS environment. GuardDuty uses threat intelligence feeds, such as lists of malicious IP addresses and domains, file hashes, and machine learning (ML) models to identify suspicious and potentially malicious activity in your […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Preventing unintended encryption of Amazon S3 objects</title>
		<link>https://noise.getoto.net/2025/01/16/preventing-unintended-encryption-of-amazon-s3-objects/</link>
		
		<dc:creator><![CDATA[Steve de Vera]]></dc:creator>
		<pubDate>Thu, 16 Jan 2025 02:43:53 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[S3]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2d784658c31e97cfa97ebad47244be67</guid>

					<description><![CDATA[At Amazon Web Services (AWS), the security of our customers’ data is our top priority, and it always will be. Recently, the AWS Customer Incident Response Team (CIRT) and our automated security monitoring systems identified an increase in unusual encryption activity associated with Amazon Simple Storage Service (Amazon S3) buckets. Working with customers, our security […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Unauthorized tactic spotlight: Initial access through a third-party identity provider</title>
		<link>https://noise.getoto.net/2024/11/04/unauthorized-tactic-spotlight-initial-access-through-a-third-party-identity-provider/</link>
		
		<dc:creator><![CDATA[Steve de Vera]]></dc:creator>
		<pubDate>Mon, 04 Nov 2024 14:00:19 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=5f6d57140fa5db92a81af037422608c9</guid>

					<description><![CDATA[Security is a shared responsibility between Amazon Web Services (AWS) and you, the customer. As a customer, the services you choose, how you connect them, and how you run your solutions can impact your security posture. To help customers fulfill their responsibilities and find the right balance for their business, under the shared responsibility model, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to deploy an Amazon OpenSearch cluster to ingest logs from Amazon Security Lake</title>
		<link>https://noise.getoto.net/2024/07/30/how-to-deploy-an-amazon-opensearch-cluster-to-ingest-logs-from-amazon-security-lake/</link>
		
		<dc:creator><![CDATA[Kevin Low]]></dc:creator>
		<pubDate>Tue, 30 Jul 2024 16:02:19 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Amazon Security Lake]]></category>
		<category><![CDATA[AWS security]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[Customer Solutions]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[OpenSearch]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=d5afb7cfda214e38f69e660401d737ab</guid>

					<description><![CDATA[January 30, 2025: This post was republished to make the instructions clearer and compatible with OCSF 1.1. Customers often require multiple log sources across their AWS environment to empower their teams to respond and investigate security events. In part one of this two-part blog post, I show you how you can use Amazon OpenSearch Service […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Three ways to accelerate incident response in the cloud: insights from re:Inforce 2023</title>
		<link>https://noise.getoto.net/2023/06/30/three-ways-to-accelerate-incident-response-in-the-cloud-insights-from-reinforce-2023/</link>
		
		<dc:creator><![CDATA[Anne Grahn]]></dc:creator>
		<pubDate>Fri, 30 Jun 2023 19:46:58 +0000</pubDate>
				<category><![CDATA[Amazon Athena]]></category>
		<category><![CDATA[Amazon Detective]]></category>
		<category><![CDATA[Amazon EKS]]></category>
		<category><![CDATA[Amazon EventBridge]]></category>
		<category><![CDATA[Amazon GuardDuty]]></category>
		<category><![CDATA[Amazon Inspector]]></category>
		<category><![CDATA[Amazon Security Lake]]></category>
		<category><![CDATA[AWS Organizations]]></category>
		<category><![CDATA[AWS re:Inforce]]></category>
		<category><![CDATA[AWS Security Hub]]></category>
		<category><![CDATA[AWS Systems Manager Incident Manager]]></category>
		<category><![CDATA[AWS Wickr]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[OpenSearch]]></category>
		<category><![CDATA[re:Inforce 2023]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Thought Leadership]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=194f69ecba3abeae833cb2b128ee2098</guid>

					<description><![CDATA[AWS re:Inforce took place in Anaheim, California, on June 13–14, 2023. AWS customers, partners, and industry peers participated in hundreds of technical and non-technical security-focused sessions across six tracks, an Expo featuring AWS experts and AWS Security Competency Partners, and keynote and leadership sessions. The threat detection and incident response track showcased how AWS customers […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Your guide to the threat detection and incident response track at re:Inforce 2023</title>
		<link>https://noise.getoto.net/2023/05/18/your-guide-to-the-threat-detection-and-incident-response-track-at-reinforce-2023/</link>
		
		<dc:creator><![CDATA[Celeste Bishop]]></dc:creator>
		<pubDate>Thu, 18 May 2023 19:51:16 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS re:Inforce]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Live Events]]></category>
		<category><![CDATA[re:Inforce]]></category>
		<category><![CDATA[re:Inforce 2023]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=0c2e326352b8fc02145d4a28888eace5</guid>

					<description><![CDATA[A full conference pass is $1,099. Register today with the code secure150off to receive a limited time $150 discount, while supplies last. AWS re:Inforce is back, and we can’t wait to welcome security builders to Anaheim, CA, on June 13 and 14. AWS re:Inforce is a security learning conference where you can gain skills and confidence […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Gain insights and knowledge at AWS re:Inforce 2023</title>
		<link>https://noise.getoto.net/2023/03/30/gain-insights-and-knowledge-at-aws-reinforce-2023/</link>
		
		<dc:creator><![CDATA[CJ Moses]]></dc:creator>
		<pubDate>Thu, 30 Mar 2023 17:32:03 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS re:Inforce]]></category>
		<category><![CDATA[cloud security conference]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[data privacy]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=d477221de99ffb43efde41488192c69f</guid>

					<description><![CDATA[I’d like to personally invite you to attend the Amazon Web Services (AWS) security conference, AWS re:Inforce 2023, in Anaheim, CA on June 13–14, 2023. You’ll have access to interactive educational content to address your security, compliance, privacy, and identity management needs. Join security experts, peers, leaders, and partners from around the world who are […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Three key security themes from AWS re:Invent 2022</title>
		<link>https://noise.getoto.net/2023/01/13/three-key-security-themes-from-aws-reinvent-2022/</link>
		
		<dc:creator><![CDATA[Anne Grahn]]></dc:creator>
		<pubDate>Fri, 13 Jan 2023 20:34:45 +0000</pubDate>
				<category><![CDATA[Amazon GuardDuty]]></category>
		<category><![CDATA[Amazon Inspector]]></category>
		<category><![CDATA[Amazon Macie]]></category>
		<category><![CDATA[Amazon Security Lake]]></category>
		<category><![CDATA[Amazon Verified Access]]></category>
		<category><![CDATA[Amazon Verified Permissions]]></category>
		<category><![CDATA[Amazon VPC lattice]]></category>
		<category><![CDATA[AWS Config]]></category>
		<category><![CDATA[AWS Lambda]]></category>
		<category><![CDATA[AWS re:Invent]]></category>
		<category><![CDATA[AWS Wickr]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[Data protection]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[Identity and Access Management]]></category>
		<category><![CDATA[Re:Invent 2022]]></category>
		<category><![CDATA[reInvent]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Thought Leadership]]></category>
		<category><![CDATA[threat detection]]></category>
		<category><![CDATA[Zero-Trust]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=3220e18ba3d8b86fe88fecbb5e26dca6</guid>

					<description><![CDATA[AWS re:Invent returned to Las Vegas, Nevada, November 28 to December 2, 2022. After a virtual event in 2020 and a hybrid 2021 edition, spirits were high as over 51,000 in-person attendees returned to network and learn about the latest AWS innovations. Now in its 11th year, the conference featured 5 keynotes, 22 leadership sessions, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>AWS CIRT announces the release of five publicly available workshops</title>
		<link>https://noise.getoto.net/2022/12/22/aws-cirt-announces-the-release-of-five-publicly-available-workshops/</link>
		
		<dc:creator><![CDATA[Steve de Vera]]></dc:creator>
		<pubDate>Thu, 22 Dec 2022 19:49:41 +0000</pubDate>
				<category><![CDATA[Amazon EC2]]></category>
		<category><![CDATA[Amazon S3]]></category>
		<category><![CDATA[announcements]]></category>
		<category><![CDATA[Athena]]></category>
		<category><![CDATA[AWS CloudTrail]]></category>
		<category><![CDATA[cryptomining]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=f41b1267a04559b2febaa6c21d0d1870</guid>

					<description><![CDATA[Greetings from the AWS Customer Incident Response Team (CIRT)! AWS CIRT is dedicated to supporting customers during active security events on the customer side of the AWS Shared Responsibility Model. Over the past year, AWS CIRT has responded to hundreds of such security events, including the unauthorized use of AWS Identity and Access Management (IAM) […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to investigate and take action on security issues in Amazon EKS clusters with Amazon Detective – Part 2</title>
		<link>https://noise.getoto.net/2022/12/05/how-to-investigate-and-take-action-on-security-issues-in-amazon-eks-clusters-with-amazon-detective-part-2/</link>
		
		<dc:creator><![CDATA[Marshall Jones]]></dc:creator>
		<pubDate>Mon, 05 Dec 2022 18:05:29 +0000</pubDate>
				<category><![CDATA[Containers]]></category>
		<category><![CDATA[Detective]]></category>
		<category><![CDATA[EKS]]></category>
		<category><![CDATA[GuardDuty]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Kubernetes]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=18dc4c919f857ca53cc9cb1dacd9028b</guid>

					<description><![CDATA[In part 1 of this of this two-part series, How to detect security issues in Amazon EKS cluster using Amazon GuardDuty, we walked through a real-world observed security issue in an Amazon Elastic Kubernetes Service (Amazon EKS) cluster and saw how Amazon GuardDuty detected each phase by following MITRE ATT&#38;CK tactics. In this blog post, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to detect security issues in Amazon EKS clusters using Amazon GuardDuty – Part 1</title>
		<link>https://noise.getoto.net/2022/11/22/how-to-detect-security-issues-in-amazon-eks-clusters-using-amazon-guardduty-part-1/</link>
		
		<dc:creator><![CDATA[Marshall Jones]]></dc:creator>
		<pubDate>Tue, 22 Nov 2022 18:39:46 +0000</pubDate>
				<category><![CDATA[Containers]]></category>
		<category><![CDATA[Detective]]></category>
		<category><![CDATA[EKS]]></category>
		<category><![CDATA[GuardDuty]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Kubernetes]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=a59d7f245cd747cc901180d64ede7006</guid>

					<description><![CDATA[In this two-part blog post, we’ll discuss how to detect and investigate security issues in an Amazon Elastic Kubernetes Service (Amazon EKS) cluster with Amazon GuardDuty and Amazon Detective. Amazon Elastic Kubernetes Service (Amazon EKS) is a managed service that you can use to run and scale container workloads by using Kubernetes in the AWS […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>AWS re:Inforce 2022: Threat detection and incident response track preview</title>
		<link>https://noise.getoto.net/2022/06/23/aws-reinforce-2022-threat-detection-and-incident-response-track-preview/</link>
		
		<dc:creator><![CDATA[Celeste Bishop]]></dc:creator>
		<pubDate>Thu, 23 Jun 2022 15:49:55 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS re:Inforce]]></category>
		<category><![CDATA[AWS security]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[cloud security conference]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Live Events]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=1211209f7c80aee7c4f7c9ce294e0c67</guid>

					<description><![CDATA[Register now with discount code SALXTDVaB7y to get $150 off your full conference pass to AWS re:Inforce. For a limited time only and while supplies last. Today we’re going to highlight just some of the sessions focused on threat detection and incident response that are planned for AWS re:Inforce 2022. AWS re:Inforce is a learning […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>AWS Security Profiles: Megan O’Neil, Sr. Security Solutions Architect</title>
		<link>https://noise.getoto.net/2021/11/24/aws-security-profiles-megan-oneil-sr-security-solutions-architect/</link>
		
		<dc:creator><![CDATA[Maddie Bacon]]></dc:creator>
		<pubDate>Wed, 24 Nov 2021 18:39:42 +0000</pubDate>
				<category><![CDATA[AWS re:Invent]]></category>
		<category><![CDATA[ransomeware]]></category>
		<category><![CDATA[reInvent]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=280ca68137e6521de1ebec2233f7e5aa</guid>

					<description><![CDATA[In the week leading up to AWS re:Invent 2021, we’ll share conversations we’ve had with people at AWS who will be presenting, and get a sneak peek at their work. How long have you been at Amazon Web Services (AWS), and what do you do in your current role? I’ve been at AWS nearly 4 […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Introducing the Ransomware Risk Management on AWS Whitepaper</title>
		<link>https://noise.getoto.net/2021/09/28/introducing-the-ransomware-risk-management-on-aws-whitepaper/</link>
		
		<dc:creator><![CDATA[Temi Adebambo]]></dc:creator>
		<pubDate>Tue, 28 Sep 2021 19:21:53 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[infrastructure security]]></category>
		<category><![CDATA[NIST CSF]]></category>
		<category><![CDATA[ransomware]]></category>
		<category><![CDATA[Risk management]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security controls]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=eb0a3dfeba0c5043cec1ca759e505165</guid>

					<description><![CDATA[AWS recently released the Ransomware Risk Management on AWS Using the NIST Cyber Security Framework (CSF) whitepaper. This whitepaper aligns the National Institute of Standards and Technology (NIST) recommendations for security controls that are related to ransomware risk management, for workloads built on AWS. The whitepaper maps the technical capabilities to AWS services and implementation […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How Security Operation Centers can use Amazon GuardDuty to detect malicious behavior</title>
		<link>https://noise.getoto.net/2020/09/17/how-security-operation-centers-can-use-amazon-guardduty-to-detect-malicious-behavior/</link>
		
		<dc:creator><![CDATA[Darren House]]></dc:creator>
		<pubDate>Thu, 17 Sep 2020 19:26:38 +0000</pubDate>
				<category><![CDATA[Amazon GuardDuty]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[threat detection]]></category>
		<category><![CDATA[Threat Intelligence]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=cc26073b59f906780f67d1edce75c5b2</guid>

					<description><![CDATA[The Security Operations Center (SOC) has a tough job. As customers modernize and shift to cloud architectures, the ability to monitor, detect, and respond to risks poses different challenges. In this post we address how Amazon GuardDuty can address some common concerns of the SOC regarding the number of security tools and the overhead to [&#8230;]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 90/340 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-08 03:40:23 by W3 Total Cache
-->