InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

How to Maximise Data Value in the AI Driven SOC

Presented by

Matt Ellison - Director of Sales Engineering for EMEA, Corelight and Carlo Tarantini - Senior Product Marketing Manager, Cribl

About this talk

Security operations centres (SOCs) face growing pressure to keep up with evolving threats and the explosion of data—especially network data, which is critical for both human analysts and AI-driven detection, since AI relies on rich, high-quality data to identify threats. But as data volumes grow, so do costs and complexity, forcing tough choices about what to collect, store, and analyse. In this webinar, experts from Corelight and Cribl will show how modern SOCs can maximise the value of every byte—without breaking the bank. Learn how to tier data across SIEMs, data lakes, and object storage for cost efficiency, empower analysts with search-in-place and expanded datasets, and operationalise both human- and AI-generated context for faster, more effective threat hunting. Key Takeaways: - Discover how network evidence expands threat detection to cover advanced adversary techniques, including EDR evasion, and accelerates investigations. - Learn strategies to cost-effectively manage and tier security data across multiple storage solutions. - See how Corelight and Cribl enable investigations and provide rich datasets that machine learning platforms already understand, accelerating AI-driven security workflows. - Explore future-ready SOC architectures that integrate seamlessly with your existing SIEM, AI/ML, and detection tools.
Corelight

Corelight

2451 subscribers40 talks
Corelight transforms network and cloud activity into evidence
Corelight transforms network and cloud activity into evidence so that data-first defenders can stay ahead of ever-changing attacks. Delivered by our open NDR platform, Corelight’s comprehensive, correlated evidence gives you unparalleled visibility into your network. This evidence allows you to unlock new analytics, investigate faster, hunt like an expert, and even disrupt future attacks. Our on-prem and cloud sensors go anywhere to capture structured, industry-standard telemetry and insights that work with the tools and processes you already use. Corelight’s global customers include Fortune 500 companies, major government agencies, and research universities.
Related topics