Artwork

Content provided by SquareX. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by SquareX or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Doing Adversary Emulation Right | William Booth, General Manager, Director MITRE ATT&CK Evaluations

1:11:31
 
Share
 

Manage episode 491228333 series 3579095
Content provided by SquareX. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by SquareX or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

What if most organizations are testing their security tools against the wrong threats entirely?
As the leader behind the industry standard program that helps organizations understand how security tools perform against real-world threats, William Booth, General Manager and Director of MITRE's ATT&CK Evaluations, shares common misconceptions in adversary emulation, the gap between compliance and actual security effectiveness, and practical advice for security leaders trying to make sense of vendor claims and build truly effective defense strategies.
0:00 Episode highlights and introduction
0:56 How a money laundering investigation inspired William to enter the field
6:11 What MITRE ATT&CK evaluations actually test and why participation matters
23:07 Selecting the right adversary for emulation in your organization
35:11 Compliance goes beyond security controls
44:18 Browser attacks in ATT&CK evaluations
58:37 AI's impact on evaluations and security tool performance
1:10:07 Closing: advice for security leaders evaluating vendor claims

🔔 Follow William and John on:
https://www.linkedin.com/in/williambbooth/
https://www.linkedin.com/in/johncarse/

🔥 Powered by SquareX
Deployed as a lightweight extension, SquareX turns any browser, on any device, into a secure enterprise browser. Find out more about SquareX at https://hubs.la/Q03rPcbf0

  continue reading

Chapters

1. How a money laundering investigation inspired William to enter the field (00:00:00)

2. What MITRE ATT&CK evaluations actually test and why participation matters (00:06:11)

3. Selecting the right adversary for emulation in your organization (00:23:07)

4. Compliance goes beyond security controls (00:35:11)

5. Browser attacks in ATT&CK evaluations (00:44:18)

6. AI's impact on evaluations and security tool performance (00:58:37)

7. Closing: advice for security leaders evaluating vendor claims (01:10:07)

61 episodes

Artwork
iconShare
 
Manage episode 491228333 series 3579095
Content provided by SquareX. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by SquareX or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

What if most organizations are testing their security tools against the wrong threats entirely?
As the leader behind the industry standard program that helps organizations understand how security tools perform against real-world threats, William Booth, General Manager and Director of MITRE's ATT&CK Evaluations, shares common misconceptions in adversary emulation, the gap between compliance and actual security effectiveness, and practical advice for security leaders trying to make sense of vendor claims and build truly effective defense strategies.
0:00 Episode highlights and introduction
0:56 How a money laundering investigation inspired William to enter the field
6:11 What MITRE ATT&CK evaluations actually test and why participation matters
23:07 Selecting the right adversary for emulation in your organization
35:11 Compliance goes beyond security controls
44:18 Browser attacks in ATT&CK evaluations
58:37 AI's impact on evaluations and security tool performance
1:10:07 Closing: advice for security leaders evaluating vendor claims

🔔 Follow William and John on:
https://www.linkedin.com/in/williambbooth/
https://www.linkedin.com/in/johncarse/

🔥 Powered by SquareX
Deployed as a lightweight extension, SquareX turns any browser, on any device, into a secure enterprise browser. Find out more about SquareX at https://hubs.la/Q03rPcbf0

  continue reading

Chapters

1. How a money laundering investigation inspired William to enter the field (00:00:00)

2. What MITRE ATT&CK evaluations actually test and why participation matters (00:06:11)

3. Selecting the right adversary for emulation in your organization (00:23:07)

4. Compliance goes beyond security controls (00:35:11)

5. Browser attacks in ATT&CK evaluations (00:44:18)

6. AI's impact on evaluations and security tool performance (00:58:37)

7. Closing: advice for security leaders evaluating vendor claims (01:10:07)

61 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play