Blog post

The “How To Build a SOC” Paper Update is OUT!

By Augusto Barros | September 07, 2018 | 1 Comment

threat detectionsiem and log managementincident response

Anton and I have been probing the social media for some time about the trends related to SOC and incident response teams. All that work finally made its way into our “How to Plan, Design, Operate and Evolve a SOC” paper. It is the same paper we published a couple of years ago, but updated to reflect some things we’ve seen evolving since the first version, such as:

  • SOAR tools evolution and growth in adoption
  • Further convergence between security monitoring and incident response
  • Higher adoption of services to supplement internal capabilities

We also updated the guidance figure to include more details for each phase:

Please provide feedback if you read it via https://surveys.gartner.com/s/gtppaperfeedback

Leave a Comment

1 Comment

  • Joost says:

    How can we download the paper?