Автор: Joseph Muniz & Aamir Lakhani
Издательство: Pearson Education
Год: 2021
Формат: epub
Страниц: 1500
Размер: 40.2 Mb
Язык: English
This is the definitive, vendor-neutral guide to building, maintaining, and operating a modern Security Operations Center (SOC). Written by three leading security and networking experts, it brings together all the technical knowledge professionals need to deliver the right mix of security services to their organizations. The authors introduce the SOC as a service provider, and show how to use your SOC to integrate and transform existing security practices, making them far more effective. Writing for security and network professionals, managers, and other stakeholders, the authors cover:
How SOCs have evolved, and todays key considerations in deploying them
Key services SOCs can deliver, including organizational risk management, threat modeling, vulnerability assessment, incident response, investigation, forensics, and compliance
People and process issues, including training, career development, job rotation, and hiring
Centralizing and managing security data more effectively
Threat intelligence and threat hunting
Incident response, recovery, and vulnerability management
Using data orchestration and playbooks to automate and control the response to any situation
Advanced tools, including SIEM 2.0
The future of SOCs, including AI-Assisted SOCs, machine learning, and training models