Bridging the gap between attack and defence is the purpose of purple teaming. This expert module teaches you to emulate an adversary in a controlled way, write the missing detections, and continuously measure your coverage.
• Emulate ATT&CK techniques in a controlled way • Build an emulation plan (Caldera) • Write and version detections • Measure coverage and run an AAR