Security Orchestration, Automation, and Response for Security Analysts: Learn the secrets of SOAR to improve MTTA and MTTR episode artwork

EPISODE · May 17, 2025 · 13 MIN

Security Orchestration, Automation, and Response for Security Analysts: Learn the secrets of SOAR to improve MTTA and MTTR

from CyberSecurity Summary · host CyberSecurity Summary

Focuses on SOAR solutions and their role in modern cybersecurity. It emphasizes the need for automated responses to security incidents due to the overwhelming number of alerts and the shortage of skilled cybersecurity personnel, particularly in Security Operations Centers (SOCs). The book details the key components of SOAR, including incident management, investigation, automation, reporting, threat intelligence (TI), and threat and vulnerability management (TVM), explaining how these elements work together to improve efficiency. Specific SOAR tools like Microsoft Sentinel SOAR, Splunk SOAR (Phantom), and Google Chronicle SOAR (Siemplify) are examined, with a particular emphasis placed on practical examples and configurations using Microsoft Sentinel automation rules and playbooks (Logic Apps). The text also covers important considerations like permissions, triggers, actions, and the use of dynamic content and expressions for effective automation, while stressing that automation is a tool to assist, not replace, SOC analysts.You can listen and download our episodes for free on more than 10 different platforms:https://linktr.ee/cyber_security_summaryGet the Book now from Amazon:https://www.amazon.com/Security-Orchestration-Automation-Response-Analysts/dp/1803242914?&linkCode=ll1&tag=cvthunderx-20&linkId=c65a462bc2325d65fce69cdf2b87a0bb&language=en_US&ref_=as_li_ss_tlDiscover our free courses in tech and cybersecurity, Start learning today:https://linktr.ee/cybercode_academy

Focuses on SOAR solutions and their role in modern cybersecurity. It emphasizes the need for automated responses to security incidents due to the overwhelming number of alerts and the shortage of skilled cybersecurity personnel, particularly in Security Operations Centers (SOCs). The book details the key components of SOAR, including incident management, investigation, automation, reporting, threat intelligence (TI), and threat and vulnerability management (TVM), explaining how these elements work together to improve efficiency. Specific SOAR tools like Microsoft Sentinel SOAR, Splunk SOAR (Phantom), and Google Chronicle SOAR (Siemplify) are examined, with a particular emphasis placed on practical examples and configurations using Microsoft Sentinel automation rules and playbooks (Logic Apps). The text also covers important considerations like permissions, triggers, actions, and the use of dynamic content and expressions for effective automation, while stressing that automation is a tool to assist, not replace, SOC analysts.You can listen and download our episodes for free on more than 10 different platforms:https://linktr.ee/cyber_security_summaryGet the Book now from Amazon:https://www.amazon.com/Security-Orchestration-Automation-Response-Analysts/dp/1803242914?&linkCode=ll1&tag=cvthunderx-20&linkId=c65a462bc2325d65fce69cdf2b87a0bb&language=en_US&ref_=as_li_ss_tlDiscover our free courses in tech and cybersecurity, Start learning today:https://linktr.ee/cybercode_academy

NOW PLAYING

Security Orchestration, Automation, and Response for Security Analysts: Learn the secrets of SOAR to improve MTTA and MTTR

0:00 13:44

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Darknet Discussions Darknet Discussions Welcome to "Darknet Discussions," the podcast that gets into the shadows of the internet to bring you the most intriguing, enlightening, and sometimes unsettling stories from the dark web. Hosted by seasoned darknet aficionados, each episode of "Darknet Discussions" explores the intricate dynamics of darknet markets, cybersecurity threats, and the digital underworld. Join us as we interview experts, discuss the latest trends in cybercrime, and shed light on the technologies that operate beneath the surface of everyday internet use. Also, we occasionally go off on a tangent about something completely unrelated. Song Against Songs, The by G. K. Chesterton (1874 - 1936) LibriVox LibriVox volunteers bring you 9 recordings of The Song Against Songs by G. K. Chesterton. This was the Fortnightly Poetry project for October 16, 2011.Chesterton was a large man, standing 6 feet 4 inches (1.93 m) and weighing around 21 stone (130 kg; 290 lb). His girth gave rise to a famous anecdote. During World War I a lady in London asked why he was not 'out at the Front'; he replied, 'If you go round to the side, you will see that I am.' On another occasion he remarked to his friend George Bernard Shaw: "To look at you, anyone would think a famine had struck England". Shaw retorted, "To look at you, anyone would think you have caused it". P. G. Wodehouse once described a very loud crash as "a sound like Chesterton falling onto a sheet of tin."( Summary from Wikipedia ) HealthCall LIVE WOWO / Federated Media HealthCall LIVE with Lee Kelso is a summary of the weeks most interesting and useful health and medical news. Lee Kelso is a veteran TV news anchor, radio journalist and host of viewer-driven, health-focused TV and online broadcasts. Each week, he brings you a series of interesting health news headlines and medical breakthroughs collected from professional journals and research projects around the world. You can also listen to HealthCall LIVE at 7am Tuesday mornings and 9-10am Saturday mornings on News/Talk 1190 WOWO 107.5 FM in Fort Wayne. London Property Digest, by Longrad Longrad Welcome to London Property Digest, your essential 10-minute audio recap for staying informed on London's property market. Whether you're an estate agent, an investor, or just curious about real estate, our bite-sized episodes deliver the latest news, trends, and insights in a quick and easy format.What to Expect:Weekly News Roundup: A swift summary of the top property stories from the past week.Spotlight on Developments: An expert examination of noteworthy developments that deserve your attention.Originally created to keep our team at Longrad sharp, we’re now sharing it with the wider community — offering you a fast, comprehensive London property update on the go.

Frequently Asked Questions

How long is this episode of CyberSecurity Summary?

This episode is 13 minutes long.

When was this CyberSecurity Summary episode published?

This episode was published on May 17, 2025.

What is this episode about?

Focuses on SOAR solutions and their role in modern cybersecurity. It emphasizes the need for automated responses to security incidents due to the overwhelming number of alerts and the shortage of skilled cybersecurity personnel, particularly in...

Is there a transcript available for this episode?

Yes, a full transcript is available for this episode. You can read the complete transcript on the episode page.

Can I download this CyberSecurity Summary episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!