Security Weekly Podcast Network (Audio) Initial entry to resilience: understanding modern attack flows and this week's news - Warwick Webb - ESW #444
Feb 2, 2026
Warwick Webb, VP of Managed Detection and Response at SentinelOne, leads global MDR ops and threat response. He explains how modern breaches move as coordinated attack flows that evade siloed defenses. Short takes cover attackers living off the land, credential abuse, measuring detection timing, and why rigorous after-action reviews build resilience.
AI Snips
Chapters
Books
Transcript
Episode notes
Living Off The Land Dominates Attacks
- Modern attackers live off legitimate tools and credentials to avoid detection.
- Detecting malicious code alone is no longer sufficient in 2026.
Combine Prevention With Response
- Invest in prevention but accept no control is perfect; build detection and response accordingly.
- Use preventative controls as the first layer, then prepare for what gets past them.
Complexity And Time Are Hidden Adversaries
- Unnecessary complexity and time scarcity are major adversaries for defenders.
- Simplifying toolsets and focusing effort reduces missed detections.



