#firstcon26

5 posts · Last used 2d

Back to Timeline
FIRST.org @firstdotorg@infosec.exchange · 2d ago
🎙️New FIRST Impressions Podcast Episode: Tim Brown (Team8) Recorded live at #FIRSTCON26 following his opening keynote, Tim Brown, CISO-in-Residence at Team8 and former SolarWinds CISO, shares an incredibly candid conversation about leading through one of cybersecurity's most consequential incidents. From the technical realities of incident response to the often-overlooked human impact of prolonged crisis, Tim discusses resilience, recovery, leadership, and why taking care of your team is just as important as protecting your infrastructure. Whether you're an incident responder, security leader, or simply interested in the people behind cybersecurity, this episode offers thoughtful lessons that extend far beyond technology. 🎧 Tune in to hear one of FIRSTCON26's keynote speakers reflect on leadership, resilience, and finding growth through adversity. https://media.first.org/podcasts/FIRST_Impressions-timbrown.mp3 #FIRSTCON26 #FIRSTImpressions #Cybersecurity #IncidentResponse #Leadership #Team8 #CISO #Resilience #SecurityLeadership
0
0
0
FIRST.org @firstdotorg@infosec.exchange · Jul 17, 2026
🎙️ New FIRST Impressions Podcast Episode: Chris Butera (CISA) Recorded live at #FIRSTCON26 in Denver, this episode features Chris Butera, acting Executive Assistant Director for Cybersecurity at CISA, the local host of the conference. Chris joins the podcast to discuss the future of the #CVEprogram, software supply chain security, AI-specific SBOMs, end-of-support risk management, and the importance of strong collaboration between government and industry. If you’re interested in vulnerability management, AI security, supply chain resilience, or the evolving cybersecurity ecosystem, this is an episode you won’t want to miss! 🎧 Tune in to hear how CISA is helping shape the future of cyber defense and vulnerability coordination across the global community. #FIRSTCON26 #FIRSTImpressions #CISA #Cybersecurity #CVE #SBOM #AISecurity #SupplyChainSecurity #VulnerabilityManagement https://media.first.org/podcasts/FIRST_Impressions-butera26.mp3
0
0
0
FIRST.org @firstdotorg@infosec.exchange · Jul 16, 2026
New on the FIRST blog: Ken van Wyk, FIRST Member & President and Principal Consultant, KRvW Associates, LLC and #FIRSTCON26 speaker, and Elliott Atkins, FIRST Liaison & Founder and Managing Director, Exercise3 Limited, on the most common incident response problems they've directly observed across hundreds of operations and exercises. Most #IncidentResponse teams have the technical chops and business knowledge to get the job done. So why do IR operations still go sideways? Two independent data sets, isolated from one another, revealed strikingly similar problems: 📄 IRPs too dense for anyone to actually use in a crisis ⚠️ Process errors made under pressure: evidence handling, cost tracking, insurance compliance 📊 Severity triage that doesn't reflect real business impact 🧭 Unclear decision authority when it matters most 👤 Key personnel unavailable, with no backup empowered to act 🗣️ Discussions that never resolve into an actual decision ✅ Actions assigned but never tracked 📢 Communication breakdowns, especially with non-technical stakeholders Read more: https://go.first.org/nqUbz #cybersecurity
0
0
0
FIRST.org @firstdotorg@infosec.exchange · Jul 14, 2026
Working in cyber in 2026, we spend so much of our time connecting through screens. But every year, #FIRSTCON reminds us that the strongest partnerships are still built face to face. You can exchange emails for years, join countless video calls, and collaborate across continents, but there's something irreplaceable about sharing a meal, raising a glass, and getting to know the person behind the job title. Those moments build the trust that matters when the pressure is on. When an incident strikes, you're not reaching out to a stranger, you're calling a friend. Our #FIRSTCON26 recap reflects on the conversations, connections, and community that made this year's conference in Denver so memorable. Read the full blog here: https://www.first.org/blog/20260703-When-FIRSTCON26-Rode-into-Denver #FIRSTCON26 #CyberSecurity #IncidentResponse #Community #FIRST
0
0
0
FIRST.org @firstdotorg@infosec.exchange · Jul 08, 2026
New on the FIRST blog: Vishal Thakur, Regional Manager of CSIRT Operations at Atlassian, on why the most damaging techniques in the wild often have no home in any defensive framework until after they've already been used. He presented at #FIRSTCON26 alongside co-author David Wearing. Highlights: Atom Table abuse. Revix's "kill-all-VMs" tactic. Both real, both weaponized, both caused damage in the wild, and neither had a place in MITRE ATT&CK before the fact. These techniques aren't rare. They just don't make it into the catalogue until after someone's already been hit by them. 🎯 Pre-Positioning: sleeper threats seeded long before the "hands-on-keyboard" phase 🛡️ Resilience Erosion: flags how backups or patch cycles could be quietly targeted 🏛️ Governance & Cognitive Manipulation: threats aimed at policy, procurement, and analyst judgment What PR3TACK brings: 📊 Seed Matrix v1.0: 17 tactic categories, from Execution to Digital Exhaust Manipulation 🎚️ Every technique tiered by feasibility: High (PoC demonstrated), Medium (technically reasoned), Low (early research) 🧭 An interactive Navigator to search, filter, and map techniques to your own environment They are opening PR3TACK to the wider community. CSIRTs can apply to join the Members Team or Core Team, and researchers can apply as PR3TACK Affiliated Researchers to help validate and submit new TTPs. Read more: https://go.first.org/TUmTi #cybersecurity #infosec
0
0
0

You've seen all posts