Skip to content
TRAC GRC Solution
 

Flexible GRC Platform

Simplify cybersecurity risk management and tackle your cybersecurity challenges with ease. TRAC is a powerful GRC tool that automates the tedious risk assessment process and delivers customized results aligned with regulations, best practices, and your strategic goals.

Header image for SBS CyberSecurity blog.

SBS Institute Webinar: Assumed Breach Testing — Why Test as if a Hacker Is Already in Your Network

650aefa75b6eb8b92803615b

  Recorded on November 16, 2023   |    1.5 hours   |   Member: $199 or Nonmember: $249

On average, an organization takes 287 days to detect and contain a data breach. Hackers today are very good at breaking into networks and staying undetected for long periods before executing their ultimate objectives. When a cyber incident inevitably occurs, your best bet is to assume your network is compromised and act accordingly rather than think you're not compromised and carry on as usual.

One of the most important questions to ask yourself is: "If a hacker was in my network, would I know?" Testing your internal and external network security controls regularly is an important way to find the answer. But what happens if the Penetration Test has little or no success?

Assumed breach testing simulates the initial foothold an attacker might obtain, allowing for more in-depth testing and providing a unique perspective of the organization's readiness for a real-world breach. Assumed breach testing helps answer the question of "what can happen if we were breached?"

Topics Covered:

  • Modern cyberattack vectors
  • Identifying your data stores
  • Lateral movement and persistence
  • Privilege escalation
  • Data exfiltration
  • How to perform assumed breach testing