Security Operations Center (SOC)

January 6, 2026

SECURITY

Why your organization needs a Cisco Talos Incident Response Retainer

1 min read

Every day, new ransomware and data breaches dominate the headlines, reminding us that it’s a matter of when, not if, your organization may be next. Having a well-prepared response plan and a team of forensic professionals ready to act at a moment’s notice can mean a world of difference between swift incident recovery or a […]

December 12, 2025

SECURITY

Have You Seen My Domain Controller?

2 min read

Windows clients expose Active Directory DNS queries on public Wi-Fi, risking OSINT and credential leaks. Learn from Cisco Live SOC observations how to protect clients with VPNs .

December 12, 2025

SECURITY

Splunk in Action: From SPL to PCAP

4 min read

Learn how Cisco Live SOC uses Splunk SPL and Endace PCAP to investigate exposed HTTP authentication and Kerberos activity, securing sensitive data on public Wi-Fi networks.

December 12, 2025

SECURITY

In Splunk, Empty Fields May Not Be Null

2 min read

Splunk's coalesce function treats empty fields as non-null. Learn to use Splunk macros to convert empty strings to nulls for accurate data selection and reliable detections.