Security Operations Centre – part 5

Security Operations Centre – part 5

Eugene Wypior Security Operations Centre – part 5 What is Cyber Threat Intelligence? According to Gartner, Threat Intelligence is evidence-based knowledge, including context, mechanisms, indicators, implications, and actionable advice, about an existing or...
Security Operations Centre – part 4

Security Operations Centre – part 4

Eugene Wypior Security Operations Centre – part 4 The human factor of SOCs According to the definition of Security Operations Centre (SOC) we used in part 1 of these series, ‘SOC is a combination of people, processes and technologies (…)’. How does a SOC’s team...
Security Operations Centre – part 3

Security Operations Centre – part 3

Eugene Wypior Security Operations Centre – part 3 The SOC’s main purpose is the identification and reaction to threats. A SOC needs to be able to see what is going on the in the information system it is intending to protect. What else you envision your SOC to do...