SOC
Coverage of SOC in the Nexus archive.
- Imagine the SOC Without a Queue: From Alert Backlog to AI Hypothesis Engine
The traditional Security Operations Center (SOC) model often fails because most alerts in the queue do not receive analyst review due to time limitations. This standard progression involves an alert arriving, a detection engine assigning a severity score, and the issue waiting for a human decision regarding investigation escalation. The discussion centers on moving beyond this backlog using concepts like AI Hypothesis Engine.
- How to Reduce Phishing Exposure Before It Turns into Business Disruption
Phishing emails can pass through security and expose businesses to risk, early detection helps teams move from uncertainty to evidence faster. Phishing attacks leave teams unsure what was exposed and how far the risk has spread. Early phishing detection is crucial to reduce business disruption.