Cloud Security Podcast by Google

EP64 Security Operations Center: The People Side and How to Do it Right

10 snips
May 9, 2022
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ADVICE

Prioritize Investigative Skills in SOC Training

  • Train SOC analysts on investigative skills, focusing on formulating questions and finding data.
  • Teach them how to stay focused and when to pivot, essential for effective investigations.
INSIGHT

Investigative Skills Can Be Taught

  • Investigative skills, often seen as instinctual, can be learned through practice and experience.
  • Realistic training scenarios are crucial for developing these skills effectively.
ADVICE

Use Real-World Data for Realistic Training

  • Create realistic training scenarios using real vendor gear and gold images from endpoints.
  • Run real exploits in isolated environments to generate realistic telemetry for training.
Get the Snipd Podcast app to discover more snips from this episode
Get the app