PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
November 6, 2019100 citationsOpen Access

Matched and Mismatched SOCs

View Full Paper
FKFaris Bugra KokuluASAnanta SonejiTBTiffany Bao

Key Points

Key points are not available for this paper at this time.

Abstract

Organizations, such as companies and governments, created Security Operations Centers (SOCs) to defend against computer security attacks. SOCs are central defense groups that focus on security incident management with capabilities such as monitoring, preventing, responding, and reporting. They are one of the most critical defense components of a modern organization's defense. Despite their critical importance to organizations, and the high frequency of reported security incidents, only a few research studies focus on problems specific to SOCs. In this study, to understand and identify the issues of SOCs, we conducted 18 semi-structured interviews with SOC analysts and managers who work for organizations from different industry sectors. Through our analysis of the interview data, we identified technical and non-technical issues that exist in SOC. Moreover, we found inherent disagreements between SOC managers and their analysts that, if not addressed, could entail a risk to SOC efficiency and effectiveness. We distill these issues into takeaways that apply both to future academic research and to SOC management. We believe that research should focus on improving the efficiency and effectiveness of SOCs.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Kokulu et al. (2019) studied this question.

synapsesocial.com/papers/6a0ac33680d186fca85ce9eahttps://doi.org/10.1145/3319535.3354239
Ask AI
Helpful
Bookmark
Share
View Full Paper