Cloud Security Podcast by Google

EP236 Accelerated SIEM Journey: A SOC Leader's Playbook for Modernization and AI

8 snips
Jul 28, 2025
Manija Poulatova, Director of Security Engineering and Operations at Lloyd's Banking Group, shares her insights on transforming Security Operations Centers. She reveals her accelerated SIEM migration journey and the challenges faced in balancing people, processes, and technology. The discussion touches on innovative composite alerting techniques and the 'funnel model' for detection. Manija also emphasizes the need for agile methodologies and offers advice for security leaders on successfully integrating AI into their teams. Her experience is a treasure trove for anyone in the cybersecurity field!
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ADVICE

Choose Transformation Over Migration

  • Avoid simple SIEM migrations; focus on total transformation instead.
  • Rethink detection and response for continuous improvement, not just moving old rules.
INSIGHT

Modern SOC Is Engineering-Led

  • A modern SOC must detect every attack, especially sophisticated ones.
  • This requires mindset shift to an engineering-led, code-based approach to detection and response.
ADVICE

Form a Diverse SWOT Team

  • Build a diverse, cross-functional SWOT team for SOC transformation.
  • Use hackathons to identify top talent and foster innovation.
Get the Snipd Podcast app to discover more snips from this episode
Get the app