SOC (Security Operations Center)
Category: business
A centralized team of security professionals responsible for monitoring and defending an organization’s information systems.
The SOC operates as the tactical command post for enterprise defense. Operating 24/7, SOC analysts evaluate SIEM outputs, investigate potential threat indicators, coordinate incident containment steps, and maintain the network event log auditing chain.
Common Examples
- The SOC team successfully contained the credential exploit within twelve minutes of the initial log anomaly trigger.
- Outsourcing tier-one alert monitoring to a managed SOC allowed our core engineering group to focus on system feature updates.