Cyber Threat Intelligence Podcast

Season 1 - Episode 3 (Pedro Kertzman & Pedro Barros)

9 snips
Apr 1, 2025
Pedro Barros, a security analyst and educator at Houston Community College, dives into the complexities of threat intelligence. He discusses the problematic prevalence of 'combo lists,' which recycle old data as new threats. Emphasizing the need for actionable intelligence, he advocates for quarterly evaluations of threat feeds based on accuracy and relevance. For those interested in a career in Cyber Threat Intelligence, he suggests understanding various security roles and recommends 'Visual Threat Intelligence' as a must-read, highlighting its engaging nature.
Ask episode
AI Snips
Chapters
Books
Transcript
Episode notes
ADVICE

Build Broad Cybersecurity Foundations

  • Gain fundamentals in incident response, forensics, detection engineering, and vulnerability management to excel in CTI.
  • Understanding these areas helps bridge gaps and focus on what matters to a company.
ANECDOTE

Combo Lists Cause False Alerts

  • Pedro dislikes "combo lists" that recycle old breach data as new threat intel, causing false alerts and panic.
  • Good threat feeds enrich data with context like breach timing to create actionable intelligence.
ADVICE

Regularly Evaluate Threat Feeds

  • Evaluate threat intelligence feeds regularly for accuracy, timeliness, and relevance, ideally quarterly or biannually.
  • Gather feedback from SOC analysts, detection engineers, and vulnerability teams to improve intelligence quality.
Get the Snipd Podcast app to discover more snips from this episode
Get the app