The 5 Most Relevant Questions for a SOC Analyst

Share and earn Cybytes
Facebook Twitter LinkedIn Email

Our guest today is Denver Durham. He’s a threat intelligence consultant at Recorded Future, with a background in the U.S. Army as an intelligence analyst, working in signals intel and all-source intel supporting counterterrorism, and later in the private sector in a SOC (security operations center) as a cyber threat analyst, performing attribution and analytics.

On today’s show, he takes us through what he believes are some of the most relevant questions for a SOC analyst, including collecting and prioritizing indicators of compromise, handling news feeds, managing firewall alerts, and performing trend analysis. We’ll learn about the types of reports a SOC analyst is likely to generate, how to make good use of some third-party rules, and he’ll share his advice for anyone considering a career as a SOC analyst.

To get the transcript for this podcast, visit the Recorded Future blog.

Share this post and earn Cybytes
Facebook Twitter LinkedIn Email
About Recorded Future
Recorded Future arms security teams with threat intelligence powered by patented machine learning to lower risk. Our technology automatically collects and analyzes information from an unrivaled breadth of sources and provides invaluable context that’s delivered in real time and packaged for human analysis or instant integration with existing security technology.
Promoted Content
Get Trending Threat Insights Delivered to Your Inbox With Our Free Cyber Daily
The web is rich with signals of new threats and vulnerabilities, but it’s nearly impossible to organize all of this information manually. We do the hard work for you by automatically collecting and organizing the entire web to identify new vulnerabilities and emerging threat indicators.

Our Revolution

We believe Cyber Security training should be free, for everyone, FOREVER. Everyone, everywhere, deserves the OPPORTUNITY to learn, begin and grow a career in this fascinating field. Therefore, Cybrary is a free community where people, companies and training come together to give everyone the ability to collaborate in an open source way that is revolutionizing the cyber security educational experience.

Support Cybrary

Donate Here to Get This Month's Donor Badge


We recommend always using caution when following any link

Are you sure you want to continue?