Creating security operations centres that work

Steve Mansfield-Devine · Network Security · 2016

It's becoming increasingly common for organisations to set up Security Operations Centres (SOCs) to centralise their information security operations. The aim is to create an effective, highly focused resource for both detecting and responding to threats. But while it seems like a good idea and can result in impressive capabilities, the actual improvements in security can be more modest than expected. In this interview, Luke Jennings, head of research and development at Countercept by MWR InfoSecurity, explains how organisations are failing to reap the full benefit from their investments in SOCs – and what they can do about it.

Read the paper · More papers on PaperTik