How findings are tracked over time, what each status means, and how to triage findings individually or in bulk.
Signature-based malware scanning of writable, higher-risk host directories.
Host hardening audit with a plain-language explanation of every finding.
How the Reef server and agents work together, what the agent can access, what data leaves each host, and where results are stored.
Check that Linux audit logging is configured correctly, and surface notable audit events mapped to MITRE ATT&CK.
I offer one on one training and mentoring to help you get your next idea off the ground. Book an appointment today!