Detection Engineering: Practicing Detection-as-Code – Documentation – Part 4 

SecurityVendor

Sufficiently documenting our detections is essential in detection engineering as it provides context around the the purpose, detection logic, and expected behaviour of each detection rule. Just as important as documenting individual detections is tracking how the overall detection library evolves. In this part we are looking into how we can tackle both of those issues.NVISO LabsRead More