Breakpoint Security Podcast

#S03EP10 SOC - Beyond Automation | Dr. Anton Chuvakin

Neelu Tripathy Season 3 Episode 10

In this episode of the Breakpoint Security Podcast, we dive into the evolving world of Security Operations Centers (SOC) with Dr. Anton Chuvakin, Security Advisor at the Office of the CISO, Google Cloud.

Key discussion points include:

  • Event Correlation: Exploring the automation of correlating security events in real-time and at scale. When should we rely on automation, and where does human expertise still play a vital role?
  • Threat Detection & Response: A deep dive into machine learning (ML) and behavior-based analytics for threat detection, including insider threats and the impact of UBA/UEBA on SOC operations.
  • Automated Response: Insights & limits of leveraging SOAR platforms to streamline incident response, the boundaries of automated remediation, and real-world use cases like quarantining devices or resetting accounts.
  • Threat Hunting: How organizations can fine-tune automation to enhance predictive accuracy and overcome the limitations of AI in identifying potential threats.

Dr. Chuvakin shares technical insights, real-world examples, and practical advice, making this a must-watch for anyone looking to optimize their SOC operations.

Recommended reading/viewing for practitioners:

https://cloud.withgoogle.com/cloudsecurity/podcast/ 

https://medium.com/anton-on-security/security-correlation-then-and-now-a-sad-truth-about-siem-fc5a1afb1001 

https://medium.com/anton-on-security/stop-trying-to-take-humans-out-of-soc-except-wait-wait-wait-e19c5887ef2f 

https://medium.com/anton-on-security/crosspost-a-simple-soar-adoption-maturity-model-dacf61ae857b 

https://medium.com/anton-on-security/about-threat-intel-retro-matching-5d94f2cc1991 

https://cloud.google.com/blog/topics/threat-intelligence/gemini-for-malware-analysis 

https://medium.com/anton-on-security/stop-trying-to-take-humans-out-of-soc-except-wait-wait-wait-e19c5887ef2f 

If you like to see more like this, please Subscribe to Breakpoint Youtube!

Please Share with others in the community. It always means a lot!

Follow us on LinkedIn: @breakpoint-security-podcast
Audio on
Buzzsprout: https://breakpoint.buzzsprout.com

Buzz me on Twitter or LinkedIn Connect with me on -

People on this episode