Detection at Scale cover image

WP Engine’s Christopher Watkins on Cost-Effective Threat Hunting Strategies

Detection at Scale

00:00

Optimizing Threat Detection in Cloud Environments

This chapter covers various aspects of running threat detections in SQL within a BigQuery data warehouse, emphasizing the importance of a unified schema like ECS for consistency across different log sources. Tips are provided on efficiently bridging gaps between clouds using cloud-native tooling and APIs, as well as utilizing native message buses, blob storage, and Google Cloud Platform in threat hunting strategies. The conversation also touches on cost-effective strategies, including query optimization, data partitioning, and working closely with data teams for optimization.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app