Security Operations Center (SOC) Explained

Sdílet
Vložit
  • čas přidán 1. 05. 2023
  • IBM Security QRadar Suite: ibm.biz/Security_Suite_QRadar
    Security Operations Center (SOC) : ibm.biz/Security_Operations_C...
    If you have a problem in cybersecurity, where do you turn? Modern organizations have a "SOC" or security operations center. Its mission is focused on detection and response; in this video, Jeff "the security guy" Crume explains the people, process, and tools involved. To ground the discussion, Jeff presents three security incidents and explains how they're handled by the SOC.
    Get started for free on IBM Cloud → ibm.biz/ibm-cloud-sign-up
    Subscribe to see more videos like this in the future → ibm.biz/subscribe-now
    #AI #Software #Dev #lightboard #IBM #JeffCrume #QRadar #SOC

Komentáře • 44

  • @user-yk6jt8hx1b
    @user-yk6jt8hx1b Před 3 dny +1

    one of the best video i have seen so far in SOC - easy to understand and follow

  • @chanyuan-cv4op
    @chanyuan-cv4op Před rokem +30

    I especially like this teacher‘s lecture style, which is easy to understand and gives vivid examples!!! Update more 😮

    • @jeffcrume
      @jeffcrume Před rokem +2

      Thanks so much for the kind complements!

    • @chanyuan-cv4op
      @chanyuan-cv4op Před rokem +1

      I‘m Chinese and I can’t speak English. I‘m reading your course with automatic translation. 😁

  • @conwayniall
    @conwayniall Před rokem +2

    Love it, great explainer ❤ keep up the great work!!

  • @hass123uk
    @hass123uk Před 9 měsíci +2

    This was excellent, thanks for sharing.

  • @user-rs8uo3cc4y
    @user-rs8uo3cc4y Před 6 měsíci +1

    Nicely simplified.

  • @taiwoolaniyi7348
    @taiwoolaniyi7348 Před 2 měsíci +2

    Excellent delivery

  • @luizmsilvei
    @luizmsilvei Před rokem +1

    Very good! Thank you

  • @SanjayKumar-nk3kk
    @SanjayKumar-nk3kk Před 8 měsíci +1

    Short and sweet

  • @MywesternfatherAsianfath-pj4wq
    @MywesternfatherAsianfath-pj4wq Před 3 měsíci +1

    Thank you so much professor

    • @jeffcrume
      @jeffcrume Před měsícem

      You’re very welcome!

  • @kareemelfetiany2042
    @kareemelfetiany2042 Před 4 měsíci +1

    Thanks a lot.

  • @PetBuddies
    @PetBuddies Před 5 měsíci +1

    Thank you

  • @ismailcaylak1270
    @ismailcaylak1270 Před rokem +1

    wonderful

  • @kaushalvedant
    @kaushalvedant Před rokem

    Please provide information on IBM NOC service.

  • @Pixel-ff7rp
    @Pixel-ff7rp Před 8 měsíci +1

    thanks

  • @lahloudjiken
    @lahloudjiken Před rokem +1

    Good 👍

  • @user-uw1xi1wm8q
    @user-uw1xi1wm8q Před rokem +1

    This is excellent!

  • @angelkern
    @angelkern Před 3 měsíci +1

    It would be helpful to show how the Incident Response Team (IRT) works with the SOC. Some IRTs have an operational objective of being the Threat Hunters or Pen Tests.

    • @jeffcrume
      @jeffcrume Před 3 měsíci +1

      Good idea. I’ll consider that for a future video

  • @ahmedeltigani8138
    @ahmedeltigani8138 Před 4 měsíci +1

    Ma man you're the best

    • @jeffcrume
      @jeffcrume Před 3 měsíci

      You’re very kind to say so!

  • @tyrojames9937
    @tyrojames9937 Před rokem +1

    👍🏾

  • @manhoosnick
    @manhoosnick Před rokem +2

    I'd love to start a career in CyberSec, are there any IBM certs or apprencitceship or anything that can help me ? Thanks a lot

    • @jeffcrume
      @jeffcrume Před rokem +1

      Please see my previous response to Ashfaq Ahmed

    • @manhoosnick
      @manhoosnick Před rokem

      @@jeffcrume thanks Sir

    • @manhoosnick
      @manhoosnick Před rokem

      @@jeffcrume I can't find your response to his comment.

  • @ashfaqahmed4743
    @ashfaqahmed4743 Před rokem +4

    Will ai also affect cyber security jobs?
    (Can you guys also give me a detailed roadmap of getting into cyber security. I'm a civil engineering graduate trying to get into cyber security.
    Pls comment the roadmap from initial position to senior level. Thanks in advance)

    • @manhoosnick
      @manhoosnick Před rokem

      Hey Ashfaq, did you get a response from Jeff? I can't see any. Please copy paste if you can. 🙏

    • @LoveYourFamily2
      @LoveYourFamily2 Před rokem +1

      If the second question is still relavant, they have a vid "Careers in cybersecurity" that might give you necessary info.
      Regarding the first question, my quess is that cybersecurity tasks will always need both creativity and professional "intuition", so ai will be an important tool, but it will never replace human cybersecurity specialists.

    • @diehardf
      @diehardf Před 6 měsíci

      The ai itself also need to be secured so I'm not sure 😂

    • @spiderz5962
      @spiderz5962 Před 7 dny

      i dont think so. yeah, maybe ai can automatize processes but (at least) humans think problems in more of a unique way, a way that machines do not.
      machine for coding, not for thinking, a machine wouldn't save your company if its getting nuke'd prob. on todays world ai can help you a lot but i dont think it will annihilate human SOC (even pententesters) jobs

  • @haraldhwick
    @haraldhwick Před 10 měsíci +1

    Haven't used a SOAR. Had Cases where T1s are doing T2/T3 and Threat hunters work load is already astounding.
    Yet to see how many companies do avail the bare minimum for compliance, that must be a wow.
    literally had occurrence where clients are knowledgeable more than the vendor support.
    How is burnout outlook for cyb personnel in this industry for the next 10 years?
    It surely is sending a fraction of people to switch to red team work and skillset, or go grey. That itself is already a risk to the industry is it not?
    Skill personnel shortage, out of scope work, burnout rates. Misconfigured MSP Teams...
    Cyber is one of those industries you'd come to love/hate.

    • @jeffcrume
      @jeffcrume Před 9 měsíci

      I say that cybersecurity is an “acquired taste” and not everyone “acquires” it. But for those who have … 😊

  • @hmm_think
    @hmm_think Před rokem +3

    Can you share your screen and show what do you really mean?

  • @darylallen2485
    @darylallen2485 Před 18 dny

    Lol, I thought you were gonna explain SOC - System On a Chip 😂

  • @forheuristiclifeksh7836
    @forheuristiclifeksh7836 Před 9 měsíci

    3:33 Threat hunting

  • @matelaszlo2829
    @matelaszlo2829 Před 4 měsíci +2

    no need for having seperate levels, its old fasion. no need to have manager role. we need a tech leader with extensive cyber sec knowledge. team management is an old topic which is gone in new modern organisation.

    • @jeffcrume
      @jeffcrume Před 4 měsíci +4

      I think it depends on the size of the organization, level of sophistication of the personnel, complexity of the environment and countless other factors

    • @angelkern
      @angelkern Před 3 měsíci

      CIRT team leader should be the SOC leader and have the authority to "call" the incident and invoke the team.