The Always-On Purple Team: An automated CI/CD for detection engineering
Abstract
Join Jeroen as he is building the always-on purple team!
In this session, he will present an innovative architecture that merges industry-leading SOC technologies (SIEM/XDR, SOAR, BAS and a pinch of ChatGPT). The result is a detection engineering CI/CD pipeline that can automatically create, test, and deploy detection analytics.
The proof is in the pudding: Live demo included!