Ryan Chapman
Lecturer
Team Lead, Managed Threat Hunting at Palo Alto Networks
Specialities
Digital Forensics and Incident Response
Connect with Ryan

About Ryan
Ryan is a Principal Threat Hunter who has worked in the Digital Forensics & Incident Response (DFIR) realm for 13 years. He is the author of SANS FOR528: Ransomware and Cyber Extortion and also teaches SANS FOR610: Reverse Engineering Malware.
Prior to working as a Threat Hunter, Ryan worked in Incident Response consulting for nearly 5 years. During his overall career, he has worked in Security Operations Center and Cyber Incident Response Team roles that handled incidents from inception through remediation. With Ryan, it's all about the blue team. Researching IOCs, hunting through log aggregation utilities, analyzing malware, and performing host and network forensics are all skills in his repertoire.
Press & Media
Recognitions
- Learning to Combat Ransomware
- Hands-on Ransomware: Exploring Cybercrime
- Sign in PikaBot Malware Analysis: Debugging in Visual Studio
- SANS Wait Just an Infosec
- Handling Ransomware Incidents: What YOU Need to Know!
- Detecting & Hunting Ransomware Operator Tools: It Is Easier Than You Think!
- The Truth about Ransomware: Its not Complicated!
- Stay Ahead of Ransomware Livestream Series - Episode 2
- Stay Ahead of Ransomware Livestream Series - Episode 1
- Ransomware - Do You Pay It Or Not? Experts Debate the Costs Ethics around Paying Ransomware
- Oh You Silly Framework!: An Intro to Analyzing .NET Malware
- Understanding and Analyzing Carrier Files
- Exploit Kit Shenanigans: They're Cheeky
- Network Forensics Workshop: Packet Pillaging Done Right!
