home.social

#secops — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #secops, aggregated by home.social.

  1. NCSC Warns of Flawed SOC Metrics

    The National Cyber Security Centre is warning that common security operations center metrics are fundamentally flawed, and that the only metric that truly matters is whether attacks are detected and responded to in a timely manner. By focusing on easily quantifiable but misleading metrics, organizations may inadvertently be encouraging their teams to prioritize…

    osintsights.com/ncsc-warns-of-

    #SocMetrics #SecurityOperations #Secops #NationalCyberSecurityCentre #Ncsc

  2. Investing the weekend in reducing some of the security debt of my digital private life, especially on services from external providers. Things like:

    - Rotating passwords to stronger ones
    - Enabling 2FA where possible
    - Enabling complex app specific passwords on apps accessing my accounts

    #SecOps #CyberSecurity #DigitalLife #ProtectYourself

  3. If you're running any of our firewall scripts, you'll probably want to update them!

    They're all now reworked to keep their defined iptables chains attached to the top of the INPUT chain, to make sure default policies don't just override them. At least two of our servers had ended up not actually blocking IPs before this rewrite.

    github.com/qwebltd/Useful-scri

    github.com/qwebltd/Useful-scri

    github.com/qwebltd/Useful-scri

    #iptables #linux #firewall #serveradmin #security #secops #hosting

  4. We've built another #firewall script, now running on all of our #servers. This one pulls the #Spamhaus list of spammy & malicious ASNs, uses our #ASN Lookup #API to convert each into IP lists, & adds those IPs to an #IPTables firewall chain.

    Like with our other firewall scripts, this is #FOSS that you can grab for your own servers! You'll need an access key from our API portal for the lookups with this one, but they're only $8 for unlimited lookups! 😉

    github.com/qwebltd/Useful-scri

    #secops #security

  5. New blog post live for my Sentinel Saturday series! :1000: :apartyblobcat:
    Read the blog 👉 marshsecurity.org/sentinel-sat

    In this post, I explore the power of using Microsoft Sentinel Tasks as part of your automation workflows.

    Most teams aren’t getting the full #value out of Tasks in Microsoft Sentinel. Are you? When you combine Sentinel Tasks with automation, they become a game-changer.

    - Auto-create tasks when automation fails (so nothing slips through the cracks)
    - Auto-complete tasks when automation succeeds
    - Use tasks to verify automation outcomes
    - Build engineering feedback loops and automation #QA

    Read the blog 👉 marshsecurity.org/sentinel-sat

    #MicrosoftSentinel #SentinelAutomation #CyberSecurity #SOCAutomation
    #CloudSecurity #AzureSecurity #SIEM #SecOps #Automation #InfoSec
    #CyberSecurityCommunity #BlueTeam #ThreatDetection #SecurityEngineering #SecurityOperations

  6. I'm not wild about the "Year of" trope, but I think we can go ahead and call this the Year of Agentic AI. I've rarely seen one topic so thoroughly absorb the entire industry's attention.

    #Cybersecurity often follows the initial hype around the latest shiny object. Still, some IT pros and vendors are considering what #agenticAI means for security, particularly in identity and access management.

    In this feature that was months in the making, experts from academic, vendor, and enterprise backgrounds weighed in.

    #AIagents #IAM #identityandaccessmanagement #SecOps #ITOps #identitysecurity #PAM #abac #accesscontrols #AI #GenAI #LLMs

    techtarget.com/searchitoperati