Chapter 9. The Technology

“Technology is the campfire around which we tell our stories.”—Laurie Anderson

Now that you know about the people and processes, it is time to review the technology used by security operations center (SOC) teams around the world. This chapter focuses on what SOC architects should consider as they evaluate different technologies. The chapter covers best practice considerations for designing high-level categories such as network, security, systems, collaboration, and storage. The chapter then goes deeper into design considerations for products found in most SOC environments. The chapter wraps up with SOC architectures that bring together all the technologies covered.

Before evaluating technologies, let’s first review the ...

Get Security Operations Center: Building, Operating and Maintaining your SOC now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.