PLAY PODCASTS
EP77 Operational Realities of SOAR: Automate and/or Enrich, Playbooks, Magic
Season 1 · Episode 77

EP77 Operational Realities of SOAR: Automate and/or Enrich, Playbooks, Magic

Cloud Security Podcast by Google · Anton A Chuvakin

August 1, 202225m 6s

Audio is streamed directly from the publisher (traffic.libsyn.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

Guest:

  • Cyrus Robinson, SOC Director and IR Team lead at Ingalls Information Security

Topics:

  • You've been using SOAR tools for years, so what do you think of the technology so far?
  • What is driving SOAR adoption today? And what is inhibiting SOAR adoption?
  • Realistically, how hard is SOAR to operationalize for a typical company?
  • What are your favorite SOAR playbooks to start with?
  • How to build, train and keep the SOAR team? Do they need to code to succeed?
  • We like the SOAR maturity model approach. How would you imagine a SOAR adoption maturity model?
  • How to implement SOAR from scratch in scaling operations? How to start? How to plan? How to not fail?

Resources: