Saturday, November 28, 2020

Blue, Red, White, & Purple Teams explained

 Organization Security Exercise Types

An organization will use its own security people for training purposes to learn how to defend against an attack. There are a couple different scenarios that can be implemented. Pit a Red Team against a Blue Team, the other is to allow both teams to share information.

Red Team: This team acts as the aggressor, they will attempt to break into the network without sharing information with the Blue Team.

Blue Team: This team is the defensive team that attempts to detect and prevent any infiltration.

White Team: Sets the roles of engagements and monitors the exercise.
This team also will be the arbitrator and can stop the exercise at any point it becomes destructive.

Purple Team: In this type of exercise the Red and Blue teams share information and collaborate throughout the exercise. 

No comments:

Post a Comment