Menu
Log in


Log in

Member Log in

Events

Tech Tuesday Breakfast with Karlo Arozqueta of Google

  • Tuesday, April 07, 2026
  • 7:30 AM - 9:30 AM
  • Hudson Alpha Atrium - 601 Genome Way
  • 59

Registration


Register

 Decoration

Join

Cyber Huntsville 

&

AI Huntsville

for our continuing Tech Tuesday Breakfast Series!

April 7, 2026 at 7:30AM

Hudson Alpha Atrium at – 601 Genome Way


Breakfast Provided



Topic: From Intelligence to Implementation: Closing the Detection Loop with Google Threat Intelligence and MSV

In the modern SOC, the bottleneck isn't a lack of data—it’s the gap between knowing a threat exists and knowing if your specific environment can stop it. This session demonstrates a high-fidelity "Intelligence-to-Validation" workflow. We begin with Google Threat Intelligence (GTI), exploring the massive scale of Mandiant, VirusTotal, and Google’s frontline research. We will showcase how Gemini AI transforms this vast intelligence into actionable insights via natural language, allowing any analyst to perform deep malware analysis without leaving the console.

The conversation then pivots from "knowing" to "doing." Using the Vawtrak banking trojan as our case study, we will move into Mandiant Security Validation (MSV). Attendees will see a live emulation of Vawtrak’s multi-stage attack lifecycle—from initial delivery across a next-gen firewall to the resulting telemetry in Splunk.

The core value of this session lies in the "Last Mile" of defense: Tuning. We will demonstrate how to use MSV’s evidence-based results to identify exactly where signatures are firing (or failing) and how to refine both firewall policies and Splunk correlation rules. This process directly attacks the #1 problem in the SOC: high false-positive rates. By the end of this presentation, attendees will understand how to leverage AI-driven intel and automated validation to move from noisy, generic alerts to a hardened, verified security posture.


Karlo Arozqueta is a 26-year veteran of the information security field who has done every job from running ethernet cable to running the Computer Incident Response team for 7 years in a 24x7 Security Operations center for a DHS Agency.  In addition to being a security practitioner, he is an accomplished public speaker, having spoken at hacker and security conferences both large and small all over the US.  He is currently a Senior Solutions Architect over the Federal market at Google Public Sector (formerly Mandiant) where he has spent the last ~8 years evangelizing the many benefits of the Mandiant/Google Security portfolio.




© Cyber Huntsville

P.O. BOX 11971, Huntsville, Alabama 35814

info@cyberhuntsville.org  

Designed By Zellus Marketing

Powered by Wild Apricot Membership Software