Chapter 9

Intelligence

Abstract

Applying security intelligence into the tools protecting the organization is what is required for a SOC to move from a reactive to proactive. Getting the right type of intelligence and being able to effectively apply it to the SOC ecosystem is a critical component in the overall protection of the organization.

Keywords

intelligence
OSINT
information
automation
IP
domain
blacklists
attributes
lists

“If you know the enemy and know yourself, you need not fear the result of a hundred battles. ...

Get Designing and Building Security Operations Center now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.