Impact on Operational SOC Processes
This section describes the fundamentals of the SOC processes.
In the subsections, direct benefits for SOC Operators from using IMPETUS tools, the direct impact from these benefits on the basic SOC work processes as conducted by SOC Operators, and the presumed leverage for improved performance of the SOC as a functional whole are described.
Direct Benefit from IMPETUS Tools
Impact on Basic Security Operations Center (SOC) Processes
Transformative Effects on Basic SOC Processes
Strategic Leverage for Improved Performance of the SOC as a Whole
Where the Impact Starts: The Basic SOC Operator Processes
The main context for application of IMPETUS tools and platform is the SOC processes, driven by SOC operators and enabled by technical and administrative support.
This operational context can be generalised into four primary processes:
Information collection : retrieve relevant and correct information about the situation related to an incident or crises
Analysis of information collected
Response activation (possibly through an intermediary user operator at the scene of the crises)
Evaluation and correction of response : feedback from as well as new input to the management of the incident or crisis