Mastering macOS Threat Detection and Incident Response: A Hands-On Blue Team Training

OVERVIEW

NOTE: This training is a 2-day (8 hours/day) course from September 4 to 5.

Are you ready to tackle the rising wave of macOS security threats?

This rare 2-day training equips blue teams with practical skills to monitor, detect, and respond to macOS attacks. As one of the few specialized courses in macOS security, it’s an indispensable opportunity to strengthen your defenses

With macOS adoption skyrocketing in enterprises, attackers are innovating to target this platform, shattering the myth of macOS immunity.

Main Takeaways

-(Fundamentals) Gain the latest happenings and a comprehensive understanding of macOS security fundamentals, including file systems, timestamps, security features (XProtect, Gatekeeper, TCC etc.), and how attackers bypass them.

-(Monitoring & Threat Detection) Learn to set up an infrastructure for attack simulation and analyze real-time macOS endpoint telemetry to identify suspicious activity

-(Incident Response) Develop essential incident response and forensic artifact analysis skills, and utilize investigation tools to minimize damage from cyberattacks.

Attendees will leave with actionable skills, lab instructions, and evidence files to tackle real-world macOS security challenges confidently.

PREREQUISITES

-Familiarity with macOS
-Cybersecurity and incident response basics
-Curiosity, Willingness, and of course, the Lab requirements too

Lab Requirements

-Laptop: Macbook with M* chip
-OS: macOS 13 or above with Admin rights
-RAM: min. 16 GB
-Storage: 100 GB

Presented By

Surya Teja Masanam Headshot

SURYA TEJA MASANAM

DFIR Lead

Danish Ansari Headshot

DANISH ANSARI

macOS Security Expert