9430611298?profile=RESIZE_710x

 

Key Takeaways (Summary by Anton Chuvakin):

  • SOC is first a TEAM. Next a PROCESS. And it uses TECHNOLOGY too, but ultimately people and process defines SOC success
  • Key challenges in building a modern SOC include (1) gaining visibility with the expanding attack surface (2) managing alerts and volumes of data (3) retaining an engaged and loyal staff, keeping them productive and engaged
  • Engineers who create alerts should be the same or in lock step with those who respond to alerts. Reduce the amount of friction between people who do those tasks today in your SOC.
  • As you build a modern and hybrid SOC, there are parts of a SOC that do and don’t outsource well.

 

1.Contributors (Security Heads Of Organizations)

  • Anton Chuvakin, Google Cloud
  • Rajesh Thapar, Axis Bank
  • Vishal Salvi, Infosys
  • Durga Dube, Reliance
  • Harshad Mengle, Future Group
  • Imran Mohd., L&T Financial Service
  • Satyajit, Indusind Bank
  • Vikas Kapoor, Vodafone
  • Vikas Yadav, Nykaa
  • Sanjay Suri, Nykaa
  • Nitin Gaur, Omega Healthcare
  • Sanil Anand, SLK Global
  • Vishwas Pitre, Zensar
  • Maya Agarwal, Google Cloud
  • Bikash Barai, CISO Platform, FireCompass

 

2.Challenges of Modern SOC

  • Visibility of all assets
  • People and skill availability
  • Maintaining continuous updation of Tech Stack
  • Getting right insights from huge volume of incident events
  • Assurance to management
  • False positive
  • Scaling response handling
  • Dashboards
  • People harder to hire at scale of event incident log
  • Attack surface grows faster than people can be hired
  • Increased signals and alerts
  • Integration and dependency on environment (AWS, Azure)
  • Management’s education and awareness on SOC impact
  • Optimising expense on SOC

 

3. Critical Capabilities /SOC Tool Essentials

  • Use AI to automate SOC Analyst L1 level job
  • Improve threat visibility
  • Have great talent pool
  • Standardised dashboard for management

 

4.Questions To Choose Right SOC Partner

  • How do you onboard clients ?
  • What AI have you used to reduce reliance on human resources ?
  • How did you handle a breach (past) ?
  • How many customers & segregation (industry, geography) ?
  • What is the wallet share of services consumed ?
  • Have you been able to successfully replace previous SOC ?
  • What is the relative importance of people over processes in your organization ? (Hint: Great people should be more important)

 

 

9430639856?profile=RESIZE_710x 

Votes: 0
E-mail me when people leave their comments –

Community Head, CISO Platform

You need to be a member of CISO Platform to add comments!

Join CISO Platform

Join The Community Discussion

CISO Platform

A global community of 5K+ Senior IT Security executives and 40K+ subscribers with the vision of meaningful collaboration, knowledge, and intelligence sharing to fight the growing cyber security threats.

Join CISO Community Share Your Knowledge (Post A Blog)
 

 

 

CISO Platform Talks : Security FireSide Chat With A Top CISO or equivalent (Monthly)

  • Description:

    CISO Platform Talks: Security Fireside Chat With a Top CISO

    Join us for the CISOPlatform Fireside Chat, a power-packed 30-minute virtual conversation where we bring together some of the brightest minds in cybersecurity to share strategic insights, real-world experiences, and emerging trends. This exclusive monthly session is designed for senior cybersecurity leaders looking to stay ahead in an ever-evolving landscape.

    We’ve had the privilege of…

  • Created by: Biswajit Banerjee
  • Tags: ciso, fireside chat

6 City Round Table On "New Guidelines & CISO Priorities for 2025" (Delhi, Mumbai, Bangalore, Pune, Chennai, Kolkata)

  • Description:

    We are pleased to invite you to an exclusive roundtable series hosted by CISO Platform in partnership with FireCompass. The roundtable will focus on "New Guidelines & CISO Priorities for 2025"

    Date: December 1st - December 31st 2025

    Venue: Delhi, Mumbai, Bangalore, Pune, Chennai, Kolkata

    >> Register Here

  • Created by: Biswajit Banerjee

Fireside Chat With Sandro Bucchianeri (Group Chief Security Officer at National Australia Bank Ltd.)

  • Description:

    We’re excited to bring you an insightful fireside chat with Sandro Bucchianeri (Group Chief Security Officer at National Australia Bank Ltd.) and Erik Laird (Vice President - North America, FireCompass). 

    About Sandro:

    Sandro Bucchianeri is an award-winning global cybersecurity leader with over 25…

  • Created by: Biswajit Banerjee
  • Tags: ciso, sandro bucchianeri, nab