Information security teams are often stuck in cyclical patterns where it feels as if the alerts never end and attackers are constantly successful. Organizations should start thinking proactively, think like threat hunters, says author. Admittedly, the term “threat hunting” is not a new one. In fact, many mature organizations have various threat hunting programs that are either separate teams or, more often, integrated with the security operations center (SOC) and/or incident response teams. In this mode, security and response teams are waiting for an alert to tell them where to go next.”]

