In SOC ReLoad, thought leaders and security researchers from leading institutions discussed steps that can be taken to overcome the obstacles in building proactive SOC capabilities and preempting cyber attacks.
14:05 - 14:25
Security is not an Island
Pete Shoard
Senior Director Analyst
14:25 - 14:50
Enhancing SIEM Outputs with Log and Alert Validation
Roseann Guttierrez
Technical Enablement Specialist
Armagan Zaloglu
VP Product Marketing
Tom Kellermann
Head of Cyber Security Strategy
Carlo Tarantini
Product Marketing Manager
Chris Crowley
SOC Class-Course Author
Volkan Ertuk
CTO & Co-Founder
Tanya Janca
Founder & Security Trainer
Pete Herzog
Co-Founder
Security Operations Center (SOC) practices spread across multiple tasks, all equally crucial: gaining optimal visibility, looking far and wide across the threat landscape, detecting early on, and responding fast. SOC teams spread themselves thin and fire-fight constantly, trying to balance complex and resource-intensive initiatives. SOCs find powerful allies in read teamers, who test the efficacy of their output. However, keeping log fidelity, prevention and alerting capabilities sharp vis-à-vis a changing adversarial context remains to be one of the most pressing challenges that SOC teams face.