25.7.3
This website uses cookies to ensure you get the best experience on our website. Learn more

ATT&CK Threat Hunting Detection Engineering Certification Path

6 Credentials
After completing the ATT&CK® Threat Hunting Instructional Training Program you should be able to demonstrate foundational knowledge that supports the execution of a six-step TTP-based hunting methodology centered on use of the ATT&CK® Framework. This program is designed for practitioners who can apply a solid understanding of the ATT&CK® Framework, adversarial behaviors of interest, and possess the ability to articulate hunt-directing hypotheses that inform the development of written analytics that drive information needs and data collection requirements. The ability to apply the TTP-based hunting methodology, as demonstrated by successful completion of this program, supports your dedication to securing critical networks and systems against attacks from advanced cyber adversaries. Learners must earn six distinct ATT&CK® Threat Hunting badges to complete the program. Each badge requires you to demonstrate your ability to conduct the steps of the TTP-based hunt methodology using ATT&CK as a malicious activity model. The TTP-Hunt Methodology demonstrated in this program was developed by a team of MITRE’s own subject matter experts based on research conducted to identify leading practices in threat hunting. To complete the ATT&CK® Threat Hunting Instructional Program, you are required to earn six distinct badges to demonstrate your mastery of program content. Each badge is earned by answering at least 85% of the questions correctly on associated knowledge questions. Pre-requisites: • Practitioners should have a solid understanding of the ATT&CK Framework • Familiarity with Windows, Splunk or ELK, and networking fundamentals • We highly recommend taking the ATT&CK Threat Hunting course to facilitate success
Viewing 1-6 of 6

ATT&CK® Fundamentals Badge

MITRE ATT&CK® subject matter experts continuously develop the training and mastery assessment built for the ATT&CK® Fundamentals Badge. Their focus is to validate a defender's ability to understand the ATT&CK framework (the data along with the philosophy that has shaped ATT&CK) as well as recognize how ATT&CK can be applied to operational challenges/opportunities. The ATT&CK® Fundamentals Badge validates that a defender: • Understands what knowledge is and isn't captured within ATT&CK • Understands how and why ATT&CK evolves • Can manipulate and extend ATT&CK to meet tailored needs Meet the training and mastery assessment author: Jamie Williams Lead Cyber Adversarial Engineer at MITRE Jamie Williams is a Cyber Adversarial Engineer for the MITRE Corporation. He works on various exciting efforts involving security operations and research, specializing in adversary emulation and behavior-based detections. He also leads teams that help shape and deliver the "adversary-touch" within ATT&CK® and ATT&CK Evaluations. Before joining MITRE, Jamie received his M.S. in Information Systems Engineering from Johns Hopkins University and his B.S. in Information Systems from the University of Maryland, Baltimore County (UMBC). Steve Luke Director of Content MITRE ATT&CK Defender ™ Steve Luke is the Director of Content for MITRE ATT&CK Defender™. He’s dedicated to empowering organizations with more effective ways to robustly detect and respond to cyber-attacks. Since 2007, Steve has focused on delivering innovative solutions to cyber missions, with a special focus on ATT&CK® and its application to hunting. Steve co-authored a paper on TTP-Based Hunting, developed and delivered educational materials about that methodology, and leads purple teaming events to explore ATT&CK techniques and develop robust analytic approaches to detect them. Steve earned a B.S. and Masters of Engineering in Electrical Engineering from Cornell University with a focus on digital signal processing. Prior to joining MITRE in 2005, he served as an officer in the United States Air Force.
Skills
  • ATT&CK
  • Cybersecurity
  • Threat-Informed Defense
+4 more skills
Viewing 1-6 of 6