Chapter 2: Requirements and Motivations
There are numerous reasons an organization might feel compelled to invest resources in a cyber threat hunting team. The motivations for a business will vary depending on the sector they operate in, organizational size, and reliance on IT. However, for a business, there are very few events as motivating as identifying a risk with a high probability of occurrence that also carries with it significant legal and financial repercussions.
When the risk materializes, the organization's preparation and existing defenses will be the deciding factor on the length, breadth, and depth of the compromise that occurs. The employment of a cyber threat hunting team will help severely shorten the time window an adversary has to cause havoc in an enterprise. When the smoke clears, depending upon the regulatory bodies or laws the organization follows, questions might be asked about whether everything that should have been done was. There are also legal requirements...