SprwLabs

  • Home
  • Blog
  • Ideas Board
  • Services
  • About
  • Contact

Incident Response

security automation

Let SOAR Prioritize Your Incident

Alex Stoll, August 29 2024

Managing Incident Severity in a SOC: Leveraging SOAR for Automation In a Security Operations Center (SOC), managing incident severity is critical for ensuring the security of an organization’s digital infrastructure. Incident severity directly impacts the prioritization of resources, team actions, and response times. As threats evolve in...

Read More
soar

Headless Automation

Greg Bammel, April 20 2023

While our favorite holiday is Halloween, this article sadly has nothing to do with the Headless Horsemen.  Instead we will focus on how we stop security teams from being scared and overwhelmed. Security teams are constantly challenged to do more with less.  When a security team acquires a SOAR, they do not always have a staffing plan associated...

Read More
soar

Staffing & Operationalizing SOAR

Greg Bammel, February 3 2023

Congratulations! You've just taken a big step forward and are now the proud owner of a SOAR. This blog post will help you evaluate, design, and scope your SOAR project to ensure that you have the right team and resources in place to make it successful. While this post won't cover the specifics of how to design a successful SOAR, it'll provide a...

Read More
soar

Building Blocks

Greg Bammel, October 31 2022

Utopia.  That's where every SOAR conversation starts.  Sadly, that's not day 1 of a SOAR deployment. Security operations is compromised of a plethora of tools and processes.   Building a security automation requires understanding of how your security operations center functions.  There are no fully built out playbooks.  When we start out creating...

Read More