Blog Entries

20. 07. 2026 Marco Fazio Blue Team

Inside Password Attacks: A SOC Perspective

The View from the SOC From inside the SOC, authentication traffic never really stops. Most of it is ordinary business: people signing in, services renewing sessions, or developers moving between tools. Mixed into that stream is something far less ordinary: repeated, automated attempts to become someone else. That’s why identity work sits so close to…

Read More
20. 05. 2026 Marco Fazio Automation, Blue Team, SEC4U

Device Isolation with SOAR

SOAR for Controlled Response SOAR is often described in broad terms: orchestration, automation, response, integration. That’s true, but it can also feel vague. A simpler way to explain it is this: SOAR helps a SOC turn a decision into action without repeating the same manual steps every time. This matters most when the action is…

Read More

Archive