
EP96 Cloud Security Observability for Detection and Response
Cloud Security Podcast by Google
00:00
Observability for Security Podcasts - Is There a Black Box?
I would strongly recommend that from a observability perspective alone, just having some reserve stuff that you don't expect to be touched. That's an almost really easy signal to do. Having a reserve set of dark space that you can look for connections to that should never ever happen is usually a nice leading indicator if something bad is happening. It's kind of externally, it's a different story, but if it's coming from your network internally, someone is probing, looking to move laterally,.
Transcript
Play full episode