Advancing Threat Intel Automation with MISP

Breakout Session September 21, 2022 11:15 am - 12:00 pm

Bookmark and Share

Ian Furr
JJ Josing

Leveraging open-source threat intel automation helps cybersecurity teams to improve analysis, enrichment, and enhance overall capabilities without breaking the bank. RH-ISAC’s intelligence team shares updates on their MISP initiative, including key aspects of development, capabilities for members, and best practices for use.

After a brief overview, attendees can follow a demo where they will be walked through the process of creating an event, inserting indicators, adding and using unified tagging, leveraging synchronization between two MISP instances, and how to query MISP’s API to ingest indicators into your own environments from RH-ISAC’s Community MISP instance.

RH-ISAC Summit