Skip to main content
Security operations center

Security operations center

Search complete. 379 mentions across 95 episodes found for "Security operations center".

Sep 12, 2026

SandraGUEST
0:42
For the most part, I would say, unless you get super lucky.
AbidHOST
0:45
So what does a SOC analyst or a security operations center actually do?
SandraGUEST
0:50
So an SOC analyst is someone who works on the defensive security side.
SandraGUEST
0:53
Think of it as any time a company gets a security alert or if an employee sends an email for something that is in regards to security or an incident or something suspicious, then that goes straight to the SOC, which is the Security Operations Center.
SandraGUEST
1:08
From there, a security analyst or an SOC analyst is going to take that alert and dig into it, basically doing the background research, digging into logs, looking at anything that could be related to that alert, and then basically flagging it as a true positive or a false positive.
SandraGUEST
1:22
So this basically means, is this an actual incident? Is it serious enough to get escalated to SOC level two, which are typically the incident responders, or if it's a false positive and they basically just close the ticket.
SandraGUEST
1:33
They're basically the first line of defense for any company in terms of defensive security.
AbidHOST
1:38
Yeah, spot on.
Sam CurryGUEST
2:05
And so then you get to security, and we have a further dimension.
Sam CurryGUEST
2:09
I think we may get a SecOps revolution like the DevOps revolution.
Sam CurryGUEST
2:12
We have a further dimension of the opponent is asymmetric.
Sam CurryGUEST
2:16
It is not as it is, say, in engineering where you have other engineers building competitive products.
James McQuigganHOST
75:31
You've been trying to work on some cybersecurity certifications.
James McQuigganHOST
75:34
I'm in a bachelor's program for a SOC analyst, currently studying for the Cisco CCNA cybersecurity.
James McQuigganHOST
75:39
Should I focus on CISA? See you, Jer.
James McQuigganHOST
75:45
Should I focus on CISA plus or CEH? Well, a lot of that's going to come down to what is your goal? What do you want that certification to do for you? Is there a particular area you're wanting to go into? So when we look at, let's switch over here.
James McQuigganHOST
76:04
When we look at the CISA, And my mother goes like, where'd my keyboard go? So when we look at the CISA certification, you know, your CISA is that intermediate one.
James McQuigganHOST
76:15
So your Sec+, your Network+, your A+, those are all your entry level ones, but your CISA one is a little more intermediate.
James McQuigganHOST
76:25
And, you know, you're looking to already have four years of SOC analyst or vulnerability analyst there.
James McQuigganHOST
76:31
But this one, this is a plus is focusing on the CYSA plus is focusing on SOC analyst work.
Phil WileyGUEST
4:50
And so red team sometimes generically refers to offensive security.
Phil WileyGUEST
4:54
And then the blue team is the defenders, the people that are managing the firewalls, the intrusion prevention devices, endpoint detection systems, incident response, the SOC.
Phil WileyGUEST
5:05
GRC, and all these other items within the defensive side.
Phil WileyGUEST
5:09
So that's kind of really how it those two are divided up.
Lorena RuizNARRATOR
2:42
Models such as Zero Trust, Identity First Security, and XDR, Extended Detection and Response architectures allow organizations to prioritize real risks, identify anomalies before they escalate, and respond with greater precision.
Lorena RuizNARRATOR
2:57
At Minsait Cyber, we advocate for making the Security Operations Center, SOC, the core of this transformation.
Lorena RuizNARRATOR
3:05
A modern SOC must go beyond alert monitoring.
Lorena RuizNARRATOR
3:08
It must become a hub of digital resilience, integrating contextual intelligence, proactive capabilities, and real-time coordinated response.
James McQuigganHOST
75:31
"Been trying to work on some cybersecurity certifications.
James McQuigganHOST
75:34
I'm in a bachelor's program for a SOC analyst, currently studying for the Cisco CCNA Cybersecurity.
James McQuigganHOST
75:39
Should I focus on SISA..." See ya, Jer.
James McQuigganHOST
75:42
Um, uh, "Should I focus on SISA plus or CEH?" Well, you know, a lot of that's gonna come down to what is your goal? What do you want that certification to do for you? Is there a particular area you're wanting to go into? So your, when we look at...
James McQuigganHOST
76:09
Like, where'd my keyboard go? So when we look at the SISA certification, you know, it, your SISA is that intermediate one.
James McQuigganHOST
76:15
So your, your SEC plus, your Network plus, your A plus, those are all your entry-level ones, but your SISA one is a little more, uh, intermediate.
James McQuigganHOST
76:25
Um, and you know, you're looking to already have four years of SOC ana- analyst or vulnerability analyst there.
James McQuigganHOST
76:32
But this one, the SISA plus is focusing on, the C-Y-S-A plus, is focusing on SOC analyst work.
Will EckertGUEST
20:50
We can give them guidance on what the adversaries are using as far as TTPs.
Will EckertGUEST
20:56
we can help and try and integrate that into maybe the different SOC workflows that we have.
Will EckertGUEST
21:00
And we can give examples during those presentations.
Will EckertGUEST
21:04
But we also have to be mindful when we're creating different types of products that we create in, you know, for JTALK itself.

26 MINS LATER

Jake WilliamsGUEST
46:43
I'm with you, man.
Jake WilliamsGUEST
46:44
I don't like to write code from scratch anymore.
Jake WilliamsGUEST
46:46
On the flip side, I think I've shared with you that incident that got worked where the SOC was, the Security Ops Center was trying to generate some PowerShell code to go and delete a document that a threat actor had uploaded to some SharePoint sites.
Jake WilliamsGUEST
47:01
And chat GPT hallucinated a dollar sign.
Gerald AugerHOST
57:46
Pew, pew, pew.
Gerald AugerHOST
57:48
You'll see this oftentimes with, um, SOC analysts.
Gerald AugerHOST
57:52
Yeah, I'm calling you out, SOC analysts.
Gerald AugerHOST
57:54
The reality i- well, and IT, IT engineers.
Gerald AugerHOST
57:58
A lot of people when they do logging, right? Like, so a SOC analyst, IR person, logs are, like, some of the most valuable thing that they can get because they can't recreate what the hell happened.
Gerald AugerHOST
58:09
They can't do the investigation unless they have logs, right? So someone comes into your business that's under attack, and you don't have logs.
Gerald AugerHOST
58:17
That's literally the first thing that they're gonna do.
Gerald AugerHOST
58:21
What do you detect on? You detect on things that are seen in logs.
Mădălin BratuGUEST
31:55
So for instance, even with this danger, cybersecurity is the right place if you are operating in one of the domains.
Mădălin BratuGUEST
32:03
Like you are operating in SOC, you can do GRC, you can do technical architecture, you can do pen test.
Mădălin BratuGUEST
32:09
You have, for 10 years from now, you can have a very steady revenue stream.
Mădălin BratuGUEST
32:15
If you are, if you want to have more money, you need to go to entrepreneurship.
Mădălin BratuGUEST
33:32
The third opinion, don't start in entrepreneurship.
Mădălin BratuGUEST
33:35
Go to a multinational that is very corporation or organization to learn from the, I mean, as an employee, to learn the cybersecurity topics.
Mădălin BratuGUEST
33:44
Go to SOC, go to whatever, but go and to learn, and as much as you are migrating to, to a global level, you are learning a lot.
Mădălin BratuGUEST
33:53
I can give you a sample.
Andrés SarmientoHOST
0:14
Your tier one analyst is still opening the ticket.
Andrés SarmientoHOST
0:17
That collapse from hours to seconds is the entire argument for the agentic SOC.
Andrés SarmientoHOST
0:23
It's also why a lot of smart people are terrified of it.
Andrés SarmientoHOST
0:26
This is Tech Updates, and today: Is the SIEM Dead? One number before we go further, because you're going to hear it everywhere.
Andrés SarmientoHOST
1:06
Cisco and Splunk shipped six named AI agents inside their platform.
Andrés SarmientoHOST
1:11
Triage, guided response, detection building.
Andrés SarmientoHOST
1:14
CrowdStrike, Microsoft, Palo Alto, and Google all have agentic SOC products now.
Andrés SarmientoHOST
1:20
And a wave of startups, Dropzone, Profit, Radiant, Torque, are built entirely around autonomous tier one triage.

85 more episodes mention Security operations center.

Create an account to see the whole feed, search across every transcript, and follow the entities you care about.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.