Speaker

Aytek Aytemur

Aytek Aytemur

Blue Team Engineer at Picus Security

Actions

Aytek Aytemur has been actively engaged in cybersecurity since 2020, beginning his journey as a freelance developer specializing in Sigma and Yara rules for the SOC Prime Threat Detection platform, where he contributed over 235 detection rules. His professional background encompasses areas such as detection engineering, threat research, and security R&D.

Currently, Aytek is a Blue Team Engineer at Picus Security. He focuses on Continuous Threat Exposure Management (CTEM), strengthening cybersecurity defenses, and deploying cutting-edge endpoint security solutions. He also plays a critical role in automating processes and pioneering innovative threat-hunting methodologies.

Beyond his technical roles, Aytek is deeply committed to studying emerging threats and devising effective mitigation strategies. He strives to advance the cybersecurity landscape through a combination of technical expertise, strategic insights, and a passion for creating safer digital environments.

PERSEPTOR: Automating Detection Rule Generation with AI-Driven Threat Intelligence

In an era of rapidly evolving cyber threats, organizations face constant challenges in detecting and mitigating sophisticated attacks.
Staying ahead of adversaries demands not only robust defense mechanisms but also intelligent systems capable of transforming raw threat data into actionable intelligence.

PERSEPTOR is a cutting-edge threat intelligence project designed to streamline the process of extracting actionable insights from diverse threat reports.
Leveraging state-of-the-art LLMs and the LangChain framework, PERSEPTOR autonomously summarizes threat reports, identifies TTPs, extracts IoCs, and generates Sigma and YARA rules using AI-driven mechanisms to minimize false positives.

The project also provides tailored query recommendations for various cybersecurity products, enhancing its practical adaptability across different operational environments.

PERSEPTOR specializes in automating detection content creation and prioritization, enabling Blue Teamers, SOC Analysts, Incident Responders, Threat Hunters, and Threat Detection Engineers to efficiently organize and implement detection rules.

Through real-time analysis, PERSEPTOR empowers these teams to effectively prioritize threats and optimize response strategies, significantly enhancing their ability to detect and mitigate emerging cyber threats.

This presentation delves into the conceptualization, development, and implementation of PERSEPTOR, highlighting its modular architecture, advanced AI-driven functionalities, and transformative impact on modern cybersecurity operations. Furthermore, the presentation will discuss the applicability of PERSEPTOR in cybersecurity operations through various use case examples.

BSides Prishtina 2025 Sessionize Event

April 2025 Pristina, Kosovo

Aytek Aytemur

Blue Team Engineer at Picus Security

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top