#SecurityOperationsCenter

Tedi Heriyantotedi@infosec.exchange
2025-05-20
Tedi Heriyantotedi@infosec.exchange
2025-02-17

SOC Performance Unplugged: Understanding MTTD, MTTA&A, MTTR, and more: underdefense.com/blog/soc-metr

#soc #SecurityOperationsCenter #metrics

secsolutionsecsolution
2025-01-03

Vectra AI: leader nel MarketScape 2024 di IDC per le soluzioni di Network Detection and Response: "Le soluzioni di network detection and response hanno punti di forza tipici in quanto sfruttano l’operativita’ all’interno della rete al momento dell’ingresso/uscita...
dlvr.it/TH7r86

secsolutionsecsolution
2024-01-02

Cybersecurity 2024: il futuro secondo HWG Sababa: Nel primo semestre del 2023 gli attacchi cyber andati a segno in Italia sono cresciuti del 40% rispetto allo stesso periodo dell’anno precedente. Uno scenario particolarmente negativo, gia’ emerso nel 2022, ma che trova conferma anche in questa prima meta’ dell’anno. Osservando la situazione...
dlvr.it/T0rRk2

2023-08-29

!!Cybersecurity Job seekers in UK or Spain!!

There is an awesome cybersecurity role, for a mid-senior (L2/L3?) SOC analyst for a great team looking after global security in a complex environment. The role is remote but you must already be based in the UK or Spain with a right to work in that country.

You will get to work with some incredible people and for an awesome boss. The hours are good, with (currently) no expectation of shifts or objectionable hours and the pay is excellent. The organisation is committed to staff development and will give you the chance to use some cutting-edge security tools.

The ideal candidate will have a good technical background and absolutely requires experience working in a SOC. You will be expected to work without supervision and be able to move beyond existing playbooks and respond to situations where the full security stack hasn't been deployed. You will be expected to understand common attacks and know what to look for in the early stages of an intrusion. Importantly, you need to have a clear idea of when you will hit your current limits and escalate to L3/IR.

⚠ Important Note: I am not the hiring manager. You will not work for me. I do not select the candidates. I am not a JLL employee. You can only apply via the link below, so there is no point in sending me your CV as it will just make it look like you haven't read the post. ⚠

#jobs #cybersecurity #infosec #informationsecurity #soc #cyber #jobseekers #recruitment #hiring #analyst #securityoperationscentre #securityoperationscenter

jll.wd1.myworkdayjobs.com/jllt

Question for my #InfoSec peeps:

Does anyone use a list of known TOR exit nodes for any kind of response tools? Dynamic block list?
Threat Intel?

What do you use, and what were your motivations for choosing that specific source?

#IncidentResponse #Automation #InfoSecOperations #SecurityOperationsCenter #SOC

2022-11-24

The 3 Building blocks for a Security Operations Center #SOC

1-People with dedicated role in incident response or analysis.

2-Processes in incident and patch management. NIST, PCI, HIPPA and ISO27001 can help define your processes.

3-Technology tools like endpoint protection, SIEM to gather logs from network devices

#SecurityOperationsCenter

2022-11-15

Hey #infosec,
If you commission an external #SOC, how do you design the exit clauses? What reasons lead to an exit? What services must the SOC provide during the exit? Is there good literature anywhere?

#informationsecurity #management #SecurityOperationsCenter

2022-03-04

How to Bring the Power of No-Code Security Automation to Your Team in 2022 - Seven in 10 SOC analysts say they are “burned out.” Six in 10 plan to leave their job “in... feeds.feedblitz.com/~/68452614 #securityorchestrationandautomation #securityoperationscenter(soc) #securityoperationscenter #no-codeautomation #processautomation #expertinsight #technologies #topstories

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst