Michael Leland

Global Head of Technical Communications SentinelOne

Michael joined SentinelOne in May 2020 as Head of Technical Marketing where he brings over 25 years of security domain expertise. He is responsible for messaging and strategic development of the XDR product roadmap. Prior to SentinelOne he held the title of Chief Technical Strategist for McAfee. Michael served formerly as the CTO at NitroSecurity where he was responsible for developing and implementing NitroSecurity's overall SIEM technology vision and roadmap.

Michael has held senior technical management positions at Eziaz, Cabletron and Avaya. At Avaya, a global telecommunications equipment and services vendor, he served as CTO where he led the company in its strategic efforts for converged data/voice development initiatives.

Agenda Day 1: 26th October 2021

12:00 PM Effective Threat Hunting in the Age of Big Data

Data is growing exponentially. IDC predicts that by 2025, 85% of the data will be stored in enterprise and/or public cloud storage, and 30% will be ‘real-time, sensorized’ telemetry from endpoint and IoT devices. This presents an enormous challenge for enterprises looking to improve their security posture by leveraging this abundant wealth of data. But we all know that data without context becomes superfluous, and that more data does not equate to “better security”. For data to become “knowledge” it needs to be contextualized and assembled into actionable results. Most cyber security teams in APJ are suffering from “data overload” and “alert fatigue”.


Join this session to watch SentinelOne’s experts discuss key points to consider when big data becomes a big problem:


  • The challenges posed by the rise of Big Data
  • How cyber hackers are exploiting weaknesses posed by legacy SIEM and EDR solutions
  • How data retention is key to effective threat hunting, but it comes at a cost (in most cases)
  • Live Hack – Technical demonstration of how an AI-driven XDR platform can enable effective threat hunting with automated detection and alerting rules triggered on data from real-time and historical EDR.