Artwork

Content provided by Informa TechTarget. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Informa TechTarget or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!
icon Daily Deals

SecOps and how it got that way, from AIX to AI

18:38
 
Share
 

Manage episode 438265243 series 3564930
Content provided by Informa TechTarget. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Informa TechTarget or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

Christopher Crowley is an independent consultant and senior instructor at the SANS Institute, who has 20 years of experience managing and securing networks. He is considered a leading expert in building a security operations center, or SOC, and authored the SANS 2024 SOC Survey report in May, which focused on the top challenges facing security operations.

In this episode, Crowley's survey provides an entry point for a bigger-picture discussion about the last 20 years of SecOps, the pros and cons of cloud-based SOCs, the trough of disillusionment with AI and predictions for the future.

  continue reading

37 episodes

Artwork
iconShare
 
Manage episode 438265243 series 3564930
Content provided by Informa TechTarget. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Informa TechTarget or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

Christopher Crowley is an independent consultant and senior instructor at the SANS Institute, who has 20 years of experience managing and securing networks. He is considered a leading expert in building a security operations center, or SOC, and authored the SANS 2024 SOC Survey report in May, which focused on the top challenges facing security operations.

In this episode, Crowley's survey provides an entry point for a bigger-picture discussion about the last 20 years of SecOps, the pros and cons of cloud-based SOCs, the trough of disillusionment with AI and predictions for the future.

  continue reading

37 episodes

All episodes

×
 
One of the enterprise tech industry's most influential voices on all things AI, independent analyst Andy Thurai, says in a wide-ranging discussion that IT pros should prepare to work with AI agents in the very near future, despite unanswered questions about their orchestration and the reliability of their decision-making.…
 
"AI is not just another technology layer; it's a distinct stack with its own complexities and risks," according to Coralogix CEO Ariel Assaraf. In this episode, Assaraf details those unique issues and how his company plans to address them using its recent acquisition, Aporia.
 
Kishore Gopalakrishna says that the observability market is ripe for disruption in the AI age, particularly at the storage and query layer. The former LinkedIn architect is now co-founder and CEO of StarTree, which offers a real time analytics platform based on Apache Pinot. The company has a preview version of its StarTree Cloud service for observability that supports metrics, logs and traces, and shipped StarTree ThirdEye last year for anomaly detection and root-cause analysis. In this episode, Gopalakrishna discusses why the new products are a cheaper, faster alternative for observability.…
 
Gartner analyst Gregg Siegfried reflects on the previous generation of AIOps tools that never quite lived up to their "NoOps" promise, looks at how generative AI tools have already affected IT ops pros' day to day work, and predicts the ways AI agents are poised to even more dramatically alter the observability and IT automation landscape.…
 
Mark Tomlinson is senior director of performance and observability for digital payments provider FreedomPay. He previously worked for PayPal and also served as Chief Performacologist, founder and host of the PerfBytes podcast from 2012 to 2023. He talks about how his company uses generative AI tools in its observability practices, imagines the future possibilities for agentic AI ... and just as importantly, explains what a "Performacologist" is.…
 
Alois Reitbauer is chief technology strategist, head of open source and the leader of research at observability vendor Dynatrace. He is a contributor to CNCF open source standards such as the Keptn event-driven orchestration project and OpenFeature for feature flag management. His Dynatrace bio also describes him as "a regular conference speaker, blogger, book author and sushi maniac." He reflects on the evolution of AIOps before and after generative AI, and discusses the work still being done to help large language models better generate infrastructure code in response to incidents.…
 
The rise of generative and agentic AI is also OpenTelemetry's moment to shine – in an increasingly non-deterministic world, there's a lot to be said for a standard means of collecting telemetry data about system behavior. However, it can be difficult to get a consensus on everything, especially developers' preferences about instrumenting code. This week's guest, Austin Parker, was among the original founding members of the OpenTelemetry project and remains a core contributor, as well as a member of the project's governance board. He explores the multiple intersections between the maturing open source observability standard and emerging AI technology, what's on the project's roadmap and shares his own experiences using generative AI to develop apps.…
 
What if you could see your application and infrastructure represented spatially instead of two-dimensional dashboard tabs, similar to atoms in a molecule or stars in the sky? According to Matt Young, founder and co-chair of the Cloud Native Computing Foundation (CNCF) technical advisory group (TAG) on observability, this will soon be a reality thanks to advanced AI models, knowledge graphs, and emerging data storage techniques such as columnar stores. In this episode, Matt discusses the implications of these new technologies for SREs, developers, and software supply chain security.…
 
Charity Majors pioneered the term 'observability' as co-founder and CTO of Honeycomb.io, based on her experience building and managing distributed systems at Parse, Facebook, and Linden Lab building Second Life. She is the co-author of the O'Reilly books Observability Engineering and Database Reliability Engineering . Her Honeycomb bio adds that she "loves free speech, free software and single malt scotch." In this interview with Informa TechTarget senior news writer Beth Pariseau, Majors covers the interplay between AI and observability, "Observability 2.0," and urges site reliability engineers to lean into AI agents, even if they seem to be replacements.…
 
Multifaceted connection points are emerging between observability and AI, from monitoring and improving AI models themselves to observing the ways the behavior of AI agents differs from traditional web apps. In short, AI-driven automation makes new kinds of observability workflows both necessary and possible. This season of IT Ops Query will feature interviews with a variety of industry expert guests on how AI, including agentic AI, will change observability, as well as how observability will change AI. Join me starting March 20th, wherever you get your podcasts.…
 
Sigstore creator, Chainguard CEO, OpenSSF TAC member and Season 1 guest Dan Lorenc returns to discuss the year in open source and security. Topics range from software supply chain management, hardening container images and SBOMs in limbo to open product companies and business models, including his own company's shift in focus this year. Plus: a look ahead to SecOps and AI in 2025.…
 
S&P Global Market Intelligence principal research analyst Daniel Kennedy discusses what the results of his Voice of the Enterprise research project dating back to 2015 reveal about the notion of a cybersecurity skills shortage; the effects of the Crowdstrike outage on a long-running debate about unified cybersecurity platforms vs best-of-breed vendors; and hopeful signs heading in to the next decade of SecOps.…
 
SecOps, developers and infrastructure ops teams are often encouraged to work more closely together within IT, but for one industry analyst, the CrowdStrike outage exposed an even more significant gap between IT and businesses. Charles Betz is vice president and principal analyst for enterprise architecture at Forrester Research. He has also worked as an adjunct professor at the University of St. Thomas in St. Paul, Minnesota, and as an enterprise architect at AT&T, Wells Fargo, Best Buy and Target. Following the CrowdStrike outage, Betz and a dozen other Forrester analysts collaborated on a report calling for a redefinition of enterprise resilience in the wake of the incident. For Betz, the experience of Delta Airlines in the CrowdStrike aftermath is potentially instructive for improving business resilience. "This was not a failure of IT disaster recovery," he said in this episode of Delta's weeklong ordeal. "This was truly a failure of business continuity…a shock to the physical system that couldn't be unwound without a lot of hard work."…
 
In October, the Cybersecurity and Infrastructure Security Agency (CISA) issued a report that's still generating buzz in the security world – it questioned the data sources in often-cited reports about the value of "shifting left". Another section of the CISA report called into question the idea that security flaws cause people to stop using products and concluded that "In general, it seems that quality failures don’t always affect customer loyalty." In this episode, guest Adrian Sanabria, the host of the Enterprise Security Weekly podcast and principal researcher at The Defenders Initiative, discusses the fallout from CISA's report on the last decade's notions of organizational security roles and how changing technology will also change the roles organizations assign to those responsible for cybersecurity and risk.…
 
Doug Merritt was CEO of Splunk from 2015 to 2021 and led the company's transition from an on-premises software company to a cloud-based service provider. After two years in the venture capital and board advisory space, Merritt joined multi-cloud networking company Aviatrix as CEO in 2023. That company introduced its first security product, a distributed firewall for Kubernetes, in May, and rolled out a managed version of its multi-cloud network and security control plane this week. Merritt identifies two ways generative AI is shifting multi-cloud security: first, data gravity and the costs of generative AI mean cloud computing is becoming increasingly distributed, often including hybrid and edge environments, which he says calls for a new approach to centralized network management. Secondly, Merritt said he's a believer that generative AI will help network and SecOps pros keep pace with these changes – and in the coming weeks, Aviatrix will roll out the first of its own GenAI-powered features for security incident management and event reduction.…
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

icon Daily Deals
icon Daily Deals
icon Daily Deals

Quick Reference Guide

Listen to this show while you explore
Play