McAfee Is Identifying Various Insights That Lead To Decisions
A couple of weeks ago we discussed the process several security operations teams go through to ultimately separate the network signal from the noise. We reviewed the steps that McAfee technologies have undertaken in designing its Fusion Centers of Security to identify the network signals in our own operating environment. Getting right the basics of security operations, understanding our security architecture, and carefully assessing many priorities and risk are all vital to honing in on the network signals. But what if even the network signals can overwhelm? How do we get security operations out of the slow lane? How do we generally get to the intelligence — the insights — that lead to final decisions? A study of 500 CISOs from large enterprises across the UK, USA, and Germany, published by Bromium in the month of February, found that the average security operations center (SOC) that are enterprise-sized, receives 4,146 alerts, each and every single day. Now more than 70 perc...