Discussion about this post

User's avatar
Laurent Hausermann's avatar

This is an excellent post, Francis. It demonstrates the complexity of SOC/SIEM/AI-driven SOC and the challenges it presents for end-users in terms of understanding.

It raises a question: We've been discussing "engineering-led SOC practices" for years now. Is the new Data Lake approach a first step towards more "engineering" practices like pipelines, CI/CD, etc.?

No posts

Ready for more?