Artwork

Content provided by PDQ.com. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by PDQ.com or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

PowerShell as a Defender’s Secret Weapon with Michael Haag

44:53
 
Share
 

Manage episode 469442681 series 3331726
Content provided by PDQ.com. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by PDQ.com or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
In this episode of the PowerShell Podcast, we sit down with Michael Haag, Principal Threat Researcher at Splunk, to dive into PowerShell security, threat detection, and automation. Michael shares his journey from IT support to becoming a security expert, the role of PowerShell in modern cybersecurity, and his work on PowerShell Hunter and Atomic Red Team.
Key topics in this episode include:
  • Michael’s journey into security – From IT support to system administration and eventually security research.
  • Incident response and PowerShell – How PowerShell is used to detect and mitigate threats.
  • PowerShell Hunter – A powerful tool for hunting threats and automating security tasks.
  • Atomic Red Team and Atomic Test Harnesses – How these tools help defenders simulate and detect attacks.
  • The importance of automation in security – How PowerShell can help security teams manage large-scale environments efficiently.
  • Advice for getting into security and automation – Why contributing to open-source and getting involved in the community is key.
Michael also shares his thoughts on the evolving security landscape, how defenders can stay ahead of attackers, and practical steps for IT professionals looking to pivot into cybersecurity.
Bio and Links:
Michael Haag is Principal Threat Research Enginer at Splunk. Michael led the development of Atomic Red Team, an open-source testing platform that security teams can use to assess detection coverage. An avid researcher, he is passionate about understanding and evaluating the limits of defensive systems. His background includes security analysis, threat research, and incident handling.
  continue reading

171 episodes

Artwork
iconShare
 
Manage episode 469442681 series 3331726
Content provided by PDQ.com. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by PDQ.com or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
In this episode of the PowerShell Podcast, we sit down with Michael Haag, Principal Threat Researcher at Splunk, to dive into PowerShell security, threat detection, and automation. Michael shares his journey from IT support to becoming a security expert, the role of PowerShell in modern cybersecurity, and his work on PowerShell Hunter and Atomic Red Team.
Key topics in this episode include:
  • Michael’s journey into security – From IT support to system administration and eventually security research.
  • Incident response and PowerShell – How PowerShell is used to detect and mitigate threats.
  • PowerShell Hunter – A powerful tool for hunting threats and automating security tasks.
  • Atomic Red Team and Atomic Test Harnesses – How these tools help defenders simulate and detect attacks.
  • The importance of automation in security – How PowerShell can help security teams manage large-scale environments efficiently.
  • Advice for getting into security and automation – Why contributing to open-source and getting involved in the community is key.
Michael also shares his thoughts on the evolving security landscape, how defenders can stay ahead of attackers, and practical steps for IT professionals looking to pivot into cybersecurity.
Bio and Links:
Michael Haag is Principal Threat Research Enginer at Splunk. Michael led the development of Atomic Red Team, an open-source testing platform that security teams can use to assess detection coverage. An avid researcher, he is passionate about understanding and evaluating the limits of defensive systems. His background includes security analysis, threat research, and incident handling.
  continue reading

171 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide

Listen to this show while you explore
Play