@mdfranz with #OpenTIDE, starting or doing a POC of #DetectionOps is rather simple.
We submitted #OpenTIDE to the @defcon main conference. It’s, as some of you know, a defensive tool & the talk will therefore also be defensive, should the unlikely happen. Please, Wish us luck!! #DetectionEngineering #DetectionOps
@simplenomad hmmm. Maybe they would be interested in seeing the GitLab #DetectionOps project we’ve built.

Hey if you’re one of the countless awesome folks spending your free time to understand and document threat actors or their TTPs - if you want to maximize making your work actionable for blue teams and repeatable/consistent over time, consider cloning #OpenTIDE and using it to publish your research as standardized objects! #BuildOnce

#DetectionOps

@inliniac I just asked the dev of our #DetectionOps platform #OpenTIDE to consider submitting, he built Suricata integration already a while back, iirc.

This is pretty good on why you should test your detections and options/deliberations to go through when you're considering doing it:

https://medium.com/anton-on-security/testing-in-detection-engineering-part-8-73516197d5b4

#detectionengineering #DetectionOps

Testing in Detection Engineering (Part 8) - Anton on Security - Medium

This blog series was written jointly with Amine Besson, Principal Cyber Engineer, Behemoth CyberDefence and one more anonymous collaborator. This blog involved one more anonymous contributor. In this…

Anton on Security
We've attached the #FIRSTAMS2024 presentation slides of #OpenTIDE #DetectionOps at the end of the release blog https://code.europa.eu/groups/ec-digit-s2/opentide/
OpenTIDE · GitLab

Open Threat Informed Detection Engineering is the European Commission DIGIT.S2 (Security Operations) open source initiative to build a rich ecosystem of tooling and data supporting Cyber Threat Detections.

GitLab

We added a short #OpenTIDE release blog with basic info, how to use it and for what and with an attempt to describe the roadmap for the tool.

https://code.europa.eu/groups/ec-digit-s2/opentide/-/wikis/Blog/%5B2024-03-11%5D-OpenTIDE-1.0-Release

#detectionengineering #DetectionOps

[2024 03 11] OpenTIDE 1.0 Release · Wiki · OpenTIDE · GitLab

Open Threat Informed Detection Engineering is the European Commission DIGIT.S2 (Security Operations) open source initiative to build a rich ecosystem of tooling and data supporting Cyber Threat Detections.

GitLab
If you want to know more about this #DetectionOps release, here’s the slide deck: hmmm dunno how to upload a file maybe it doesn’t support that in Mastodon, hang on
In about 2 weeks we’re releasing something you might wanna see if you like #DetectionEngineering or #threatintel or #purpleteaming or #detectionascode -> TIDeMEC which implements #DetectionOps will be released at the FIRST Symphony Amsterdam