My Day Getting My Hands Dirty with an NDR System
My objective
As someone relatively inexperienced with network threat hunting, I wanted to get some hands-on experience using a network detection and response (NDR) system. My goal was to understand how NDR is used in hunting and incident response, and how it fits into the daily workflow of a Security Operations Center (SOC).
Corelight’s Investigator software, part of its Open NDR Platform, is