Implementing ATT&CK in All Parts of Your SOC
This chapter will outline how to narrow down your environment and prioritize where you need to fix a coverage area. The chapter will then list how you can implement detections and the ATT&CK framework as part of your overall security posture, and how it can be applicable to teams outside of the SOC as well. This chapter will cover the following:
- Examining a risk register at the corporate level
- Applying ATT&CK to NOC environments
- Mapping ATT&CK to compliance frameworks
- Using ATT&CK to create organizational policies and standards