RMISC 2018 – What was interesting

Respond Software’s presentation on SOC automation was particularly interesting. Respond made some bold claims with respect to automating SOC operations and implementing “robotic” analysts, but they also presented some use cases and referenced the mathematical algorithms to back it up. They are worth a look. Here is the website. The firm’s Respond Analyst application is an AI-based “brain” that can interface with the SEIM, IPS, and some endpoint software, and make informed decisions as to what is a threat. Supposedly out of the box! I’ve not tested it, but the presentation caught my attention at several layers. Is this the future of SOC?