Threat hunting starts with a hypothesis, not an alert
It's human-led investigation for attacker activity your automated detection already missed.
#GCED #ThreatHunting #CyberSecurity #SOC
Full GCED explanation, free: https://navyduck.com/giac/gced/q218-soc-team-wants-implement-threat
