Key discussion areas include:
- Managed detection & response and threat hunting
- What effective alerts vs. actionable response really look like
- First 60 minutes of an incident: what matters most
- Limiting blast radius and lateral movement
- Proving security posture without tool overload