
When a breach skips the perimeter entirely — no stolen credentials, no phishing — the real damage is done in the gap before anyone notices. This practical session looks at how Security Operations Centre (SOC) teams detect threats earlier, shorten the window between intrusion and response, and act before a single breach turns into months of downstream fraud. Drawing on a real financial-sector incident, Daniel Nweke brings the attacker's perspective and Obiora Awogu brings front-line experience defending digital finance at scale.
What you'll learn:
How to treat middleware and adjacent infrastructure as a security boundary, not background plumbing
How to assess breach severity by the specificity of what's stolen, not just the volume
How to reduce mean time to detect (MTTD) and mean time to respond (MTTR)
How to connect incident response to fraud and customer teams, and use proactive alerting and step-up authentication to limit the blast radius
How to recognise and defend against the "second wave" of social engineering and account takeover that follows a breach
Who should attend: SOC analysts and team leads, GRC and compliance practitioners, incident response teams, security leaders and CISOs, and anyone responsible for protecting customer data, especially in financial services.