Eggs, Alerts, and Adversaries: Talking with Jose Hernandez from Splunk
ID: dd0b361c-ee10-5689-afe2-d67d6fa40f8f
STIX ID: report--dd0b361c-ee10-5689-afe2-d67d6fa40f8f
Feed Name: Hunt.io Blog
Interview with Jose Hernandez, Director of Splunk’s Threat Research Team, detailing how his team simulates attacks, builds and tests detections at scale, and uses automation and tools like Hunt.io, MagicSword projects (e.g., loldrivers.io), and Splunk’s detection-as-code framework to prioritize actionable, low-noise analytics. He discusses integrating SnapAttack capabilities, the importance of curiosity in hunting, leveraging trend analysis and enrichment for faster pivots, and operationalizing living-off-the-land intelligence, while also sharing personal reflections on work-life balance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
