TY - BOOK AU - Basta,Alfred AU - Basta,Nadine AU - Anwar,Waqar AU - Essar,Mohammad Ilyas TI - Open-source security operations center (SOC): a complete guide to establishing, managing, and maintaining a modern SOC SN - 9781394201624 U1 - 005.8068 KW - Cyberinfrastructure KW - Security measures KW - Computer networks KW - Cyberterrorism KW - Prevention N2 - "The Security Operation Center (SOC) is a centralized function within an organization that uses people, procedures, and technology to prevent, identify, analyze, and respond to cybersecurity incidents while continuously monitoring and improving an organization's security posture. The emergence of sophisticated threats placed a premium on gathering context from several sources. An SOC is a central command post collecting telemetry from across an organization's IT infrastructure, including networks, devices, appliances, and data stores, regardless of where such assets are located. Essentially, the SOC is the point of contact for any events logged within the organization that is being monitored. The SOC must decide how each event will be managed and handled"-- UR - https://ieeexplore.ieee.org/servlet/opac?bknumber=10896967 ER -