MITRE ATT&CK Defender (MAD): ATT&CK Fundamentals
This course is the fundamental piece of the MITRE ATT&CK Defender series where we will explore how a threat-informed mindset can help focus our efforts towards improving and understanding how our defenses actually fare against real-world adversaries.
This journey begins with the MITRE ATT&CK framework, a globally-accessible knowledge base and model for cyber adversary behavior based on real-world observations.
ATT&CK Fundamentals will not only familiarize you with how the ATT&CK knowledge base documents real-world adversary tactics, techniques, and procedures (TTPs), but also introduce the various ways we can exploit this understanding of adversary TTPs to address current (operational) and future (strategic) threats. Together we will explore how ATT&CK enables us to produce measurable and trackable answers to the hard questions we face every day as defenders (such as “how does our decision to make us better/worse at defending against threats?”), making us more threat-focused and informed security practitioners.
Anyone involved or interested in threat modeling and applying this knowledge to improve how you and your organization defends against adversaries.
A general understanding of information security and technology as well as their associated threats (i.e. malicious actors and malware).
By the end of this course, students should be able to:
- Understand the structure and philosophy that continually shapes ATT&CK
- Identify the available ATT&CK resources and operational use cases
- Recognize how ATT&CK empowers defenders through understanding threats
Complete this entire course to earn a MITRE ATT&CK Defender (MAD): ATT&CK Fundamentals Certificate of Completion