Scenario B – external threat hunt
After a review of the constraints, restraints, and scope of the network, Cyber Sleuths International determined that a five-member on-site team would work best to meet the organization's needs. The customer has agreed to provide additional support in the form of a system administrator, which will turn the hunt team into a hybrid model. Doing so will allow the team a higher level of insight into how the enterprise has been developed and managed. A list of the team's agreed-upon deliverables to provide to the organization is provided here:
- Targeted organizational threat briefing. This will consist of open source research concerning who is targeting their organization or organizations like them, and those actors' known offensive cyber capabilities, motivating factors, and best practices for defense.
- Real-time feedback on any identified threats during the course of the threat hunt.
- Leadership debrief and report of...