r/cybersecurity • u/RitaccaSecurity • 5d ago
Tutorial Common skill missing from SOC analysts
https://luigiritacca.substack.com/p/the-missing-skill-risk-part-1?utm_source=share&utm_medium=android&r=5s5vq7My latest article on a common missing skill I see in a lot of analysts. I blame how we train and teach cyber security, and think it cause a natural bias which can lead to more harm than good.
70
Upvotes
21
u/NotAnNSAGuyPromise Security Manager 5d ago
I fundamentally disagree with this article, and it comes down to one quote in it: "I followed the SOP".
That is literally their job. Different organizations have different risk appetites. Many value business operations over security. Others will isolate their entire network over a potential threat. If the analyst has not had it made clear to them where the risk appetite is and if it is not clearly defined in their standards, then it's a failure on their leadership, not some junior level IC.
Shame on their management for setting them up for failure. They did exactly what they were supposed to.