Talk With an Expert

NOC/SOC Integration: Opportunities for Increased Efficiency in Incident Response within Cyber-Security

NOC/SOC Integration: Opportunities for Increased Efficiency in Incident Response within Cyber-Security (PDF, 2.66MB)Published: 14 Feb, 2018
Created by
Nelson Hernandez

Managing, monitoring and defending enterprise networks with siloed Network Operation Centers (NOC) and Security Operation Centers (SOC) is a challenge. Each team running 24/7 incident response, event monitoring/correlation, generating/escalating trouble tickets and up channeling communications which provide an opportunity to integrate NOC and SOC functions. Integrating both teams at the first tier through cross-training, rewriting Standard Operating Procedures (SOP's) with coordination points, standardizing shared and coordinated communications, sharing and integrating dashboards and other data tools as cybersecurity continues to evolve. Adoption of integration as an industry best practice can capitalize on federated data, improve communication, increase visibility and situational awareness, optimize resource sharing and increase efficiencies.