Detection at Scale cover image

WP Engine’s Christopher Watkins on Cost-Effective Threat Hunting Strategies

Detection at Scale

CHAPTER

Optimizing Threat Detection in Cloud Environments

This chapter covers various aspects of running threat detections in SQL within a BigQuery data warehouse, emphasizing the importance of a unified schema like ECS for consistency across different log sources. Tips are provided on efficiently bridging gaps between clouds using cloud-native tooling and APIs, as well as utilizing native message buses, blob storage, and Google Cloud Platform in threat hunting strategies. The conversation also touches on cost-effective strategies, including query optimization, data partitioning, and working closely with data teams for optimization.

00:00
Transcript
Play full episode

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner