Skip to content
CardinalOps
  • Platform

    Platform

    • Threat Coverage Platform
    • Agentic Fleet
  • Use Cases

    Use Cases

    • Map all your detections to MITRE ATT&CK
    • Gain new detections to address critical gaps
    • Identify and fix broken detection rules
    • Pinpoint root causes of noisy rules
    • Continuous Threat Exposure Management (CTEM)
    • Operationalize threat intelligence
    • Measure the depth of ATT&CK coverage
    • Assess and improve your detection posture
    • Embed Detection Engineering into AI SOC
    • Manage detection posture across multiple SIEMs
  • Integrations
  • ROI & Pricing
  • Company

    Company

    • Who we are

      Meet the leadership team, advisors, investors, and mission that drive us forward.

    • Why work here

      Big challenges need big thinkers. Are you up to it?

    • Careers

      Your opportunity to make a difference … for our customers, the world, and yourself.

    • Security & Compliance

      We value the privacy and security of your data.

  • Resources

    Resources

    • Blog
    • Newsroom
    • Webinars & Events
    • White Papers
    • Videos
  • Contact Us
  • Book a Demo
HOME
  • Blog
  • Newsroom
  • Webinars & Events
  • White Papers
  • Videos
  • Cybersecurity Experts: July 4th Weekend Ripe for Ransomware

    Cybersecurity Experts: July 4th Weekend Ripe for Ransomware

    Apart from being up to date on patching, backups, and MFA — monitor 24×7 in the SOC so you can quickly shut down an attack before it reaches your crown jewels.

  • CardinalOps Advances to Final Round of 2022 SINET16 Innovator Awards

    CardinalOps Advances to Final Round of 2022 SINET16 Innovator Awards

    Automation and MITRE ATT&CK address complexity headaches that SOC teams have in managing their SIEMs – including Splunk, Microsoft Sentinel, and IBM QRadar.

  • China-Backed RedAlpha APT Builds Sprawling Cyber-Espionage Infrastructure

    China-Backed RedAlpha APT Builds Sprawling Cyber-Espionage Infrastructure

    China performs industrial espionnage to obtain technology expertise and also has targeted PII in two of the largest data breaches in history ― OPM and Anthem.

  • Exchange Vulnerability May Have Led to Attack on NetStandard MSP

    Exchange Vulnerability May Have Led to Attack on NetStandard MSP

    Organizations should implement MITRE ATT&CK detections for T1595 to alert on reconaissance and T1505.003 to alert on attempts to install malicious software.

  • Leveraging Automation and MITRE ATT&CK to Eliminate Detection Coverage Gaps in Your SOC

    Leveraging Automation and MITRE ATT&CK to Eliminate Detection Coverage Gaps in Your SOC

    SecurityGuyTV interviews Phil Neray, CardinalOps VP of Cyber Defense Strategy at at Black Hat USA

  • CardinalOps Shortlisted for Best Security Innovation Category in 2022 SaaS Awards

    CardinalOps Shortlisted for Best Security Innovation Category in 2022 SaaS Awards

    Platform uses automation and MITRE ATT&CK to address to address complexity headaches of managing SIEMs (Splunk, Microsoft Sentinel, IBM QRadar, etc.).

  • CardinalOps Sponsors SANS Webinar with Google’s Dr. Anton Chuvakin and Critical Start’s Randy Watkins on “Demystifying SIEM, EDR, XDR & MDR”

    CardinalOps Sponsors SANS Webinar with Google’s Dr. Anton Chuvakin and Critical Start’s Randy Watkins on “Demystifying SIEM, EDR, XDR & MDR”

    CardinalOps sponsors a live SANS webinar to help security operations professionals decipher the alphabet soup around SIEM, EDR, XDR, and MDR.

  • How the Colonial Pipeline Attack Changed Cybersecurity

    How the Colonial Pipeline Attack Changed Cybersecurity

    Raised visibility for mitigations such as network segmentation, which MITRE ATT&CK categorizes as essential to preventing access to safety-critical systems.

  • CISA Argues Against Disabling PowerShell

    CISA Argues Against Disabling PowerShell

    PowerShell used in MetaSploit, Trickbot, and Emotet attacks as well as by HAFNIUM and the Lazarus Group. MITRE ATT&CK has a dedicated technique for PowerShell.

  • Microsoft Disables Iran-Linked Lebanese Hacking Group Polonium

    Microsoft Disables Iran-Linked Lebanese Hacking Group Polonium

    Fancy Bear also targeted VPNs in 2018. SIEM mitigations for MITRE ATT&CK T1133 External Remote Services: examine authentication logs for unusual access patterns.

  • SIEMs not detecting a huge percentage of MITRE ATT&CK techniques

    SIEMs not detecting a huge percentage of MITRE ATT&CK techniques

    CardinalOps 2022 SIEM Detection Risk report shows SIEMs missing detections for 80% of MITRE ATT&CK techniques; 15% of SIEM rules are broken and will never fire.

  • Colonial Pipeline Ransomware Attack: Lessons for Technologists

    Colonial Pipeline Ransomware Attack: Lessons for Technologists

    Eliminate monitoring blind spots in your SIEM using MITRE ATT&CK.

Previous Page
1 … 16 17 18 19 20 … 23
Next Page

Never Miss Another Threat

CardinalOps’ Agentic Detection Engineering represents a fundamental shift in how detection engineering operates. Instead of relying solely on manual effort, it introduces a coordinated system of specialized AI agents that optimize the entire detection lifecycle and fly alongside human detection engineers.

Detection teams can scale without adding headcount. Alert fatigue gives way to signal clarity. Detection lifecycle management becomes streamlined instead of sprawling. Feedback from the SOC finally closes the loop to create better detections over time. 

See it for yourself.

Book a Demo
CardinalOps

Optimize your cyber defense with AI-powered detection engineering.

  • Platform
  • Use Cases
  • Integrations
  • Company
  • Resources

© 2026 CardinalOps

Privacy Policy | Terms & Conditions | Security & Compliance