Summary
The MITRE ATT&CK Framework is important to understand and have as part of your foundation of information for a career in information security. The building blocks, such as how the matrices are used, how to build detections ranging from novice to expert in the depth of understanding, and learning new techniques due to the continued evolution of the matrices, keep you current in this industry.
In the next chapter, we’ll begin our first of multiple deep-dives by looking at the enterprise-level matrices. We’ll cover a large sampling of techniques, sub-techniques, detections, and mitigations. We’ll also talk through real-world examples of implementing those detections and mitigations and the risks that can be associated with those techniques if they were to be exploited.