Try our new research platform with insights from 80,000+ expert users

Why a Security Operations Center (SOC) is important?

EB
Director of Community at PeerSpot (formerly IT Central Station)
  • 3
  • 27
PeerSpot user

3 Answers

Last answered Dec 10, 2021
Hasan Zuberi ( HZ ) - PeerSpot reviewer
Regional Sales Manager at a tech services company with 11-50 employees
Real User
Top 20
Nov 22, 2021
EB
Director of Community at PeerSpot (formerly IT Central Station)
Real User
Nov 22, 2021

@Hasan Zuberi ( HZ ), thank you for your answer! Can you possibly give an example (or two) of how SOC has changed/advanced during the last couple of years?
Thanks

PeerSpot user
Search for a product comparison in IT Alerting and Incident Management
DL
Sales Solutions Engineer at a tech services company with 201-500 employees
Reseller
Nov 23, 2021
DL
Sales Solutions Engineer at a tech services company with 201-500 employees
Reseller
Nov 23, 2021

@Evgeny Belenky yeah, "alert fatigue" is also a consequence of the human factor. 

Without a continuous process of SOC software configuration, SOC will face this "alert fatigue" issue. 

One more thing is gaps between different parts of the SOC team. Multi-experts are great, but they can be really expensive and hard to find. 
In real life, the basic SOC team is 5-7 people up to 22-23 years old (yesterday students)  and the Head of SOC somewhere from the Bank Cybersecurity department or from a similar position. 

And in this case, you need to put a lot of resources to build a real SOC team: staff training, team building, inside audits of SOC work. As I said before - People. Because people configure software, mark an alert as false-positive, tick "reviewed" boxes; configure SIEM, EDR, UEBA, etc. So you need to be sure that every member of the SOC team is in the right place with the right set of skills.

PeerSpot user
Jairo Willian Pereira - PeerSpot reviewer
Information Security Manager at a retailer with 10,001+ employees
Real User
Top 5
Dec 10, 2021
Find out what your peers are saying about PagerDuty, Splunk, Atlassian and others in IT Alerting and Incident Management. Updated: December 2025.
881,082 professionals have used our research since 2012.
IT Alerting and Incident Management
IT Alerting and Incident Management streamline communication and resolution during IT incidents, reducing downtime and enhancing service reliability. Organizations implement these solutions to effectively manage incidents, ensuring quick recovery and minimal service disruption.IT Alerting and Incident Management solutions enhance operational efficiency by facilitating rapid notification, response coordination, and incident tracking. Integrated systems automate alert distribution to relevant...
Download IT Alerting and Incident Management ReportRead more