Security Operations is a collaboration between IT security and operations teams that integrates tools, processes, and technology to keep an enterprise secure while reducing risk.
SECOPS
AGENDA
- Why do we need SECOPS?
- What is Secops?
- Benefits of implementing secops
- Goals of Secops
- Secops Tools
- What does a Secops center do?
- Key Roles on a Secops team
- Secops in the cloud
- How does secops work in service now
Why do we need SECOPS?
- Shortage of talent in system security
- Security is not a priority
- Innovation has outpaced security
What is SecOps?
- SecOps is a methodology that IT managers implement to enhance the connection, collaboration and communication between IT security and IT operation working teams.
Benefits of implements SecOps:
- Information and Communication are Integrated
- Priorities Unite
- Tools and Technology amalgamate
- IT operations can be Streamlined
- Security is Proactive
Goal of SecOps:
- Development Timelines
- Application Uptime
- Performance Requirements
SecOps Tools:
1. Alerting Tools
- FourOneOne
- alerta
- ElastAlert
2. Automation Tools
3. Visualization
4. Threat Intelligence
- criticalstack // Intel Feed
5. Testing Tools
Key-Roles in a SecOps Team:
- Incident Responder
- Security Investigator
- Advanced Security Analyst
- SOC Manager
- Security Engineer/Architect
SecOps in the Cloud:
- Execute
- Establish
- Build
- Remove
- Extend
- Replace