A Maturity Capability Framework For Security Operation Center

Issam Taqafi,Yassine Maleh,Karim Ouazzane
DOI: https://doi.org/10.1080/07366981.2023.2159047
2022-12-30
EDPACS
Abstract:Owning a Security Operation Center (SOC) is becoming increasingly common for organizations as part of their cybersecurity strategy to ensure near-real-time detection and adequately respond to cyber-attack engaging the SOC's humans, technology, and processes. However, SOC investments only sometimes achieve the best possible outcomes and only provide an acceptable protection level in some cases due to the challenges related to the technologies, processes and especially the human factor. This paper proposes a new practical maturity framework for Security Operation Center. This will serve as a roadmap for IT auditors and security experts when they evaluate the maturity of a security operation center in terms of safeguarding the assets of the company, its partners, and its clients.
What problem does this paper attempt to address?