Become a partner

Use of generative AI in SOC tools

Juraj Belko - Systems Engineer, Ex-Security Consultant, FORTINET ·

Today, generative AI offers us not only the tools to understand complex data, but also the ability to orchestrate it efficiently. Imagine a dialogue with AI that helps you automate routine tasks and predict threats - GenAI overcomes the fear of the unknown and transforms our operational responsibilities into dynamic and proactive security strategies.

Artificial intelligence is quickly becoming a new tool in Security Operations Centers (SOC). Juraj Belko’s lecture showed how large language models can make complex tools accessible, speed up incident analysis, and bring automated responses all the way into practice. Alongside the benefits, concerns were raised about data and regulations — and also answers on how to address them.

SOC demystified: from signal collection to automation

The SOC — Security Operations Center — is the “control tower” of cybersecurity that collects and evaluates events from across the entire infrastructure. Data flow into a single bus from endpoints, servers, email, and networks, but also from clouds, OT environments, and application operations. On top of this foundation sits a tool for correlation and visibility, and the goal is to reach automation, where detection and response happen as much as possible without human intervention. Integration with the help desk and identity information increases response speed, but the quality of assessment rests on high-quality, meaningful data and threat intelligence.

Read more

Juraj Belko

FORTINET
Juraj Belko, with more than twenty years of professional experience, is a former programmer, system engineer, consultant and penetration tester who worked on a wide range of projects, which allowed him to acquire deep knowledge in the field of IT system security.

Recommendation speakers

Páčil sa ti článok? Zdieľaj ho a povedz o ňom aj ostatným