The Ultimate Guide to Security Operations Centres
A curated Irish edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Security Operations Centres (SOCs).
What to know about Security Operations Centres
A Security Operations Centre (SOC) serves as the critical hub for monitoring, detecting, and responding to cybersecurity threats within organisations. Covering a wide spectrum of digital environments, SOCs integrate advanced technologies such as AI, machine learning, and automation tools to enhance threat detection and incident response capabilities.
Exploring recent developments in this field reveals insights on evolving challenges like alert fatigue, skills shortages, and the increasing complexity of cyberattack surfaces. Readers can learn how organisations leverage innovations in SOC-as-a-Service, AI-driven threat hunting, and next-generation platforms to build adaptable, efficient security operations tailored to their needs.
Whether you are an IT professional, security analyst, or business leader, following stories under the 'Security Operations Centre' tag offers valuable perspectives on managing cyber risk, improving operational efficiency, and preparing your organisation for the dynamic cybersecurity landscape ahead.
Irish Security Operations Centres News
Regional stories with direct local relevance
Storm partners ContraForce to boost Littlefish SOC
Incident triage at Littlefish's security operation should speed up, with analysts freed to focus on higher-risk threats and response actions.
Littlefish & ContraForce boost AI-led threat response
AI tools will cut incident triage from hours to seconds for Littlefish clients, helping analysts prioritise real threats as alert volumes rise.
ROCTEL doubles infrastructure footprint with Servecentric
The expanded deal gives the managed services firm more capacity for cybersecurity and AI workloads as customer demand and complexity rise.
EY Ireland & CrowdStrike launch cyber resilience tie-up
Critical sectors in Ireland are under growing pressure to keep services running as AI-driven cyberattacks outpace traditional defences.
ManageEngine automates final TLS certificate deployment
Shorter TLS validity periods are set to increase outage risk and admin workload, prompting ManageEngine to automate post-renewal deployment.
Integrity360 boosts FBD cyber defences across Ireland
Tighter regulation and rising cyber threats are pushing insurers to bolster defences for customer data and operational systems.
Analyst Insights
Research and market analysis connected to Security Operations Centres
Thrive adds Elastic & Cato to NextGen security platform
Fortinet named Gartner Leader in hybrid mesh firewall
Check Point named Leader in Gartner hybrid mesh firewall
Embedded systems hit USD $585 billion as edge AI grows
Dragos tops Forrester OT security strategy ranking
Featured News
Mimecast CEO: Agentic AI threat novel but not entirely new
Hidden AI risks are already widespread in workplaces, with Mimecast saying users are driving shadow tools and most exposure still starts with people.
Lumana's focus on vertical applications for AI video surveillance platform
Lumana's Principal Product Manager says its camera-agnostic AI platform is expanding beyond security into retail, healthcare and smart cities.
Check Point CTO on AI's double-edged sword
AI is shrinking the gap between vulnerability disclosure and real-world exploitation to hours, forcing security teams to adapt fast.
Check Point: Be the best, or get out the way
Rising AI-driven attacks are compel security buyers to cut vendor sprawl, though Check Point warns over-consolidation can still raise risk.
Check Point: Hackers are already in. Act accordingly
Hackers are exploiting vulnerabilities in hours or minutes, leaving many organisations compromised before defenders spot the breach.
Reviews
Expert Columns
The autonomous SOC takeover
How security leaders should measure AI SOC performance
AI closes vulnerability window as zero-day exploits surge
The future of autonomous security
When AI memory, simulation and provenance collide
Supercharged security: Cyber risk in the age of frontier AI
Why faster AI is exposing slower security thinking
AI does not invent cyber risk, it accelerates it
Your annual penetration testing is already out of date
What Swiss Cheese teaches us about choosing MDR
Interviews
Interviews and video coverage from the networkRecent Security Operations Centres News
ManageEngine rolls out Zia Agents for IT automation
The rollout gives enterprise IT teams autonomous task execution across service, security and endpoint management, with built-in privacy controls.
Renaissance partners with CyberSmart to widen Ireland reach
Irish businesses will gain access to a single platform for threat detection, compliance and staff training as a new channel deal broadens coverage.
Irish firms face ransomware resilience gap, report warns
Many organisations overestimate their ability to recover from ransomware, as 57% of Irish respondents reported at least one attack in two years.
eSentire awards bursary to MTU cybersecurity student
The award will fund and place Munster Technological University student Bartosz Lipinski in eSentire's Cork security operations centre amid a widening EU skills gap.
Irish tech leaders see stronger returns & AI focus
Irish tech leaders report stronger returns on digital spend than global peers, as AI strategies sharpen and cyber risk climbs the agenda.
Qualcom invests EUR €500,000 in secure AI services
Qualcom launches EUR €500,000 secure AI push in Ireland, creating new practice, hiring specialists and partnering with NROC on services.
Mandiant warns of AI agents fuelling new attack risks
Autonomous systems are now creating fresh avenues for code theft, remote execution and runaway cloud spending, Mandiant says.
Horizon3 links NodeZero to CrowdStrike Falcon SIEM
Security teams can now compare validated exposure findings with endpoint and cloud telemetry after Horizon3 tied NodeZero into CrowdStrike's SIEM.
AI agents now seen as biggest insider risk, Exabeam
Nearly half of security leaders now rank AI agents above external hackers and malicious insiders, according to Exabeam's survey.
Microsoft & Google use shared exchange to hit RedVDS
Criminal access to thousands of Microsoft accounts was cut off after the companies shared threat data through the Global Signal Exchange.
Tanium tests Anthropic AI for code vulnerabilities
By probing its own production code, Tanium is aiming to catch flaws before attackers can exploit software used by thousands of organisations.
Okta expands identity governance & access security
Security teams face tighter control over cloud and AI access as Okta adds automation to cut manual reviews and curb credential abuse.
Rubrik launches Code Guardian & expands Anthropic ties
The private previews aim to help security teams spot exploitable code chains and connect AI agents to Rubrik's governance tools more safely.
EU software makers face new cyber reporting deadlines
Companies selling software into the bloc now have 24 hours to flag exploited flaws, with fines reaching EUR €15 million for delays.
Proofpoint expands insider-risk tools to Microsoft 365
Investigators will get a fuller audit trail as the software links Microsoft 365 activity and AI prompts with emails, files and logs.
Proofpoint expands AI investigations into Microsoft 365
Investigators could gain a fuller view of insider risk as Proofpoint links Microsoft 365 messages and files with AI interactions.
F5 launches AI security to monitor worker tool use
As staff hand more tasks to AI agents, firms need audit trails and policy controls to stop unauthorised access and risky data moves.
Secure.com warns AI security tools can falter in production
Live testing may show AI security tools missing threats or flooding analysts with false alerts, Secure.com says.
CyberDockside.ai & HexaShield launch port cyber service
Ports and ship operators face rising regulatory pressure as the new service offers round-the-clock monitoring for critical operational technology.
Commvault cuts Active Directory recovery to minutes
A clean standby copy aims to keep authentication and access running after cyberattacks, helping firms restore Active Directory in minutes.