How to Banish Heroes from Your SOC?

How to Banish Heroes from Your SOC?

This blog was born from two parents: my never-finished blog on why relying on heroism in a Security Operations Center (SOC) is bad and Phil Venables “superb+” blog titles “Delivering Security at ...
Taking an autonomic approach to security operations

More SRE Lessons for SOC: Simplicity Helps Security

As we discussed in our blogs, “Achieving Autonomic Security Operations: Reducing toil”, “Achieving Autonomic Security Operations: Automation as a Force Multiplier,” “Achieving Autonomic Security Operations: Why metrics matter (but not how you ...
SOC Technology Failures — Do They Matter?

SOC Technology Failures — Do They Matter?

SOC Technology Failures — Do They Matter?img src: https://flic.kr/p/dwWHw5Most failed Security Operations Centers (SOCs) that I’ve seen have not failed due to a technology failure. Lack of executive commitment, process breakdowns, ineffective workforces (often a ...
Stop Trying to Take Humans Out of SOC … Except … Wait… Wait… Wait…

Stop Trying to Take Humans Out of SOC … Except … Wait… Wait… Wait…

Stop Trying to Take Humans Out of SOC … Except … Wait… Wait… Wait…This is about the Security Operations Center (SOC). And automation. And of course SOC automation.Let’s start from a dead-obvious point: you cannot ...
New Paper: “Future of the SOC: Forces shaping modern security operations”

New Paper: “Future of the SOC: Forces shaping modern security operations”

For some reason, I just cannot leave the topic of Security Operation Center (SOC) alone. In fact, I now am participating in a very fun effort to write a series of papers ...