6 min read
Categories
What your SOC isn't telling you.
Insights on Cyber Risk Operations, Agentic SOCs, and the threat research your team needs.
Results for: Security Operations Center (SOC)
Blog
3 min read
From CMDB to CAASM: Operationalizing Asset Intelligence
The gap between where most enterprises are on asset intelligence - a CMDB with...
Blog
2 min read
Why Divergent Teams Drive True Security Collaboration
When people ask me what makes the Resolution Intelligence Cloud different from...
Blog
2 min read
Detecting Advanced Persistent Threats (APT) via Sequences
Sophisticated adversaries design their individual actions to be unremarkable. A...
Blog
2 min read
How Continuous Security Monitoring Exposes Blind Spots
There is a framework for thinking about what you know and don't know about the...
Blog
7 min read
CI/CD Pipeline Hijacking: 5 Attack Vectors & Threat Hunting
Deconstructing automated build runner exploitation, real-world case studies,...
Blog
3 min read
LLM Grounding: Why RAG Transforms Enterprise AI Security
The most common failure mode I observe in LLM deployments for security...
Blog
2 min read
Cybersecurity Partners: Building Trust & Shared Value
I want to use this post to say something I do not say publicly often enough.
Blog
5 min read
Deconstructing npm Registry & Supply Chain Attacks | Netenrich
Modern JavaScript/TypeScript development relies on composing applications...
Blog
2 min read
AI Governance in Security: Human In or On the Loop
"Human in the loop" appears in virtually every AI governance in security...
Blog
3 min read
What AI Agents Taught Me About the Autonomous SOC
When I talk about agentic AI and the path toward an autonomous SOC at...
Blog
3 min read
Why The Unified Security Data Lake Multiplies Everything
When we built the Resolution Intelligence Cloud, one of the early decisions...
Blog
2 min read
The True Vision Behind Cyber Risk Quantification
The Moment I Understood What We Were Really Building
About two years into the...
Blog
3 min read
NLP: Operationalizing AI Threat Detection
There is a specific inefficiency in how most organizations consume threat...
Blog
4 min read
When Trust Becomes the Attack Surface: Understanding Modern Software Supply Chain Attacks
Most enterprise applications today are more integration projects than original...
Blog
2 min read
Bootstrapping and Maximizing the Cybersecurity Budget
The decision to rebuild Netenrich without raising outside capital in 2018 was...
Blog
2 min read
Adversary Path Modeling: Proactive Threat Modeling
Lateral movement is one of the most important adversary techniques to detect -...
Blog
7 min read
The 39-Minute Investigation: How Five Low-Severity Alerts Became a Confirmed Account Takeover
Business Email Compromise used to be relatively straightforward to describe: a...
Blog
2 min read
The Biggest Flaw in Security Operations Architecture
There is a structural mismatch at the heart of most enterprise security...
Blog
2 min read
Using Graph Analytics for Lateral Movement Detection
There was a specific moment in an early customer engagement that changed how I...
Blog
2 min read
The Flywheel of SecOps Automation and Domain Memory
In conversations with security leaders, I often ask a question that produces a...
Blog
2 min read
Turning Cyber Threat Intelligence Into Action
There is a specific moment in any security investigation when context changes...
Blog
2 min read
How Innovation Gets Valued Among Cybersecurity Vendors
I want to tell the OpsRamp story honestly, because it contains a lesson about...
Blog
3 min read
Entity Resolution: The Foundation of Cross-Source UEBA
Early in the Netenrich 2.0 build, one of our data science leads surfaced a...
Blog
3 min read
Being the Underdog in the Security Operations Center (SOC)
Let me tell you something I mean without any false modesty: I genuinely love...
Blog
2 min read
What Machine Learning Threat Detection is Good At
After six years of applying machine learning to security operations problems at...
Blog
2 min read
GenAI: Building a Foundation for AI in Cybersecurity
When I talk about Netenrich's use of large language models and agentic systems,...
Blog
5 min read
The 3-minute Heist: Securing Modern Environments against Cloud Data Exfiltration.
Modern cloud environments have fundamentally changed how enterprise data is...
Blog
5 min read
Non-Human Identity Security: Why Defending NHIs Requires Detection and Posture Working Together
Non-Human Identities (NHIs)—service accounts, automation tokens, CI/CD pipeline...
Blog
4 min read
Revolutionizing Telemetry: Announcing Praxis Intelligent Data Pipeline Management by Netenrich for Google SecOps
As modern enterprises scale, their security operations inevitably face a...
Blog
2 min read
Why Classification Fails in Security Data Analytics
When we started building the Resolution Intelligence Cloud in 2018, one of the...
Blog
3 min read
How We Built a Team of Top Cybersecurity Talent
When I committed to making Netenrich a data-first, intelligence-first security...
Blog
2 min read
Left-Shifting Security Data Engineering Changes Everything
There is a pattern in how security programs try to improve detection quality...
Blog
4 min read
Fighting AI with AI: Why Zero-Day Discovery Is Only Half the Battle
How Netenrich and Google AI Threat Defense close the loop between finding...
Blog
3 min read
Why an AI SOC Can Make You Feel Safer Without Making You Safer
AI promises to transform the Security Operations Center and in many cases, it...
Blog
2 min read
What Losing My Company Taught Me About Cyber Resilience
I want to tell you a story I don't talk about often enough. Not because it is...
Blog
3 min read
My Foolproof Guide to Ruining Your Security Operations Center (in 5 Easy Steps)
By Christopher Morales, CISO and Head of Security Strategy, Netenrich
I’ve...
Blog
2 min read
Beyond CMDBs: Modernizing IT Asset Management (ITAM)
The configuration management database is one of those enterprise systems that...
Blog
2 min read
Digital Tone: A New Approach to Digital Risk Protection
Most security frameworks describe the enterprise as a collection of assets:...
Blog
2 min read
The A.C.T. Framework for Vulnerability Prioritization
Security teams face a persistent vulnerability prioritization problem. At any...
Blog
2 min read
Cyber Risk Management: Fix the Roof Before the Rain
Most security frameworks describe the enterprise as a collection of assets:...
Blog
4 min read
Agentic SOC: The New Economics of Security Operations
I’ve been in this game for over two decades, and if there’s one thing that...
Blog
2 min read
Attack Surface Management: One Question CISOs Must Answer
Ask any CISO in any organization of any size: do you know your complete attack...
Blog
2 min read
Starting Over: A Blueprint for SOC Modernization
In 2018, I had just watched OpsRamp find its home at HPE. Six years of building...
Blog
13 min read
LiteLLM PyPI Supply Chain Attack: What Happened & How to Fix It
Overview
On March 24, 2026, two malicious versions of the litellm Python...
Blog
3 min read
The Great Security Lie: Why Buying More Tools (and Renting More Humans) Will Never Save You
From the CEO’s Desk
Raju Chekuri, Chairman, President & CEO of Netenrich,...
Blog
3 min read
Transform Financial Security with Autonomous SOC
A CISO's Mandate: Stop Traditional Outsourcing, Start Transforming
The...
Blog
7 min read
Outpacing Breaches: Why Continuous Security Validation and Alignment Win
Cyberattacks rarely begin with masterful exploits. They start with small...
Blog
5 min read
Asset Visibility Gaps in Cybersecurity: How to Close Blind Spots Fast
On a regular Monday morning, Maya, an SOC lead, logs into her company’s asset...
Blog
5 min read
Is Your SOC Stuck Reactive? Shift to Proactive Threat Hunting
Security Operations Centers (SOCs) are busier than ever. However, are they more...
Blog
6 min read
Is SOC Analyst Burnout Putting Your Org at Risk? Cut Noise with AI
The modern Security Operations Center (SOC) is drowning in noise. Each new...
Blog
5 min read
Security Tool Sprawl Is Killing Efficiency – How to Consolidate
Most security teams don’t suffer from a lack of tools; they suffer from too...
Blog
5 min read
Incident Response Automation: Trusting Machines to Accelerate Recovery
Attackers move faster than defenders can blink. In 2024, the average breakout...
Blog
6 min read
Unified Risk Management: Your Big Risk Isn’t Hackers, It’s Silos.
In today's digital landscape, seeing the full risk picture is no longer an...
Blog
6 min read
Beyond the Hype: The Hidden Risks Lurking in Your Enterprise AI
Artificial intelligence (AI) is no longer optional. It has become a necessity...
Blog
5 min read
Hybrid Cloud Security Risks? How to Achieve Consistent Protection
Securing IT infrastructure is never simple, and hybrid cloud environments raise...
Blog
6 min read
How to Prove Cybersecurity ROI to the Board
CISOs face a paradox. Despite multi-million-dollar investments, the average...
Blog
2 min read
AI in Security Operations: Transforming SOCs or Overhyped?
Why AI in Security Operations Matters Today
For more than 15 years,...
Blog
4 min read
Security Data Lake: Engineering for SOC Precision and Scale
Strapline: A security data lake is not a dumping ground - it’s a living,...
Blog
4 min read
Engineering Security Data Lakes for Cloud & Hybrid Environments
For today’s cloud-native enterprises, “security by default” is a dangerously...
Blog
2 min read
Predictive & AI Threat Intelligence: Anticipating the Unseen Attacks
Cyber threats are everywhere. Not only that, they come from everywhere. So...
Blog
5 min read
Incident Response Methodology: Engineering-led Approach
What is Incident Response Methodology?
Incident response methodology is the...
Blog
5 min read
API Security Risks: How to Detect and Defend with AI
What Is API Security?
API Security is the practice of protecting the...
Blog
4 min read
Top 5 SOC Best Practices to Overcome Modern SOC Challenges
Modern SOC Challenges in 2025
Security Operations Centers (SOCs) were designed...
Blog
5 min read
How to Use Google Chronicle Ingestion API
Key Takeaways
- Use Chronicle Ingestion API to send logs directly into Google...
Blog
5 min read
Choosing the Right Data Ingestion Method for Your SecOps
Key Takeaways
- Every enterprise must plan a data ingestion strategy based on...
Blog
6 min read
Key Log Types for Google Chronicle: Importance and Ingestion
Key Takeaways
- Google Chronicle delivers value only if you feed it the right...
Blog
4 min read
How to Optimize Log Ingestion in Hybrid Cloud Environments
Key Takeaways
- Hybrid cloud log ingestion is complex due to fragmented...
Blog
5 min read
Data Ingestion Challenges in SecOps and How to Overcome Them
Key Takeaways
- You must cleanup, normalize, and contextualize diverse data...
Blog
8 min read
A Step-by-Step Guide to the Data Ingestion Process
Key Takeaways
- Data ingestion is critical for advanced, data-driven Security...
Blog
2 min read
CISO Framework for SOC: Aligning Threats, Assets & Controls
Most security operations centers struggle with scale, complexity, and context....
Blog
4 min read
Agentic AI for SecOps: Turbocharge Your Security Operations
The Rise of AI Agents for Cybersecurity in 2025
Cybersecurity in 2025 faces an...
Blog
3 min read
Configuring Data Ingestion into Google Security Operations: A Step-by-Step Guide
Google Chronicle, part of Google SecOps, is a powerful tool for security data...
Blog
6 min read
From Data to Decisions: Enhancing Situational Awareness in Security Operations with Data Analytics
Threat actors have continued to bypass advanced security tooling despite the...
Blog
3 min read
Unlock Google Unified Security's Full Potential with Netenrich
Security leaders today aren’t just defending infrastructure. They are...
Blog
5 min read
7 Cybersecurity Monitoring Tools Every SOC Analyst Should Master
The rise of sophisticated attack vectors, such as advanced persistent threats...
Blog
6 min read
Traditional MDR is Failing: 10 CISOs Share Their Learnings
The Chief Information Security Officer (CISO) role has transformed from being...
Blog
4 min read
Transforming Security Operations: Netenrich's Partnership with Google Cloud Security
The increasing complexity and scale of cyber threats—fueled by AI and...
Blog
5 min read
Scaling the Intelligent SOC: Challenges and Solutions for Data-Driven Operations
Security operations (SOC) leaders dream of having a fully scaled unit of...
Blog
5 min read
Engineering Intelligence: Why AI Alone Will Not Build Future-Ready SOCs (And What Will)
Today adaptable, context-aware SecOps are vital for managing advanced cyber...
Blog
4 min read
From Sledgehammer to Scalpel: Rethinking Noise in the SOC
Low signal-to-noise ratios are slowing you down—here’s how to turn noise into...
Blog
3 min read
Intelligent Defense: How Netenrich Adaptive MDR™ Overcomes the Limitations of Traditional SIEMs
Traditional SIEMs just aren’t cutting it anymore. They rely on outdated,...
Blog
1 min read
Score Big with the Ultimate 49ers VIP Experience
Are you ready to take your NFL game day to the next level? Netenrich and...
Blog
3 min read
Bridging the Gap: Why Traditional MDR Falls Short and What's Next
In today's rapidly evolving threat landscape, the need for robust Managed...
Blog
3 min read
Introducing Signal Analytics: Unifying Security Processes for Deeper Insights and Enhanced Adaptive MDR
Security is a delicate balance of trust and vigilance. To truly automate and...
Blog
2 min read
Unlock Advanced Cybersecurity Skills with the Modern SecOps Masterclass on Coursera
As technology evolves at an unprecedented pace and artificial intelligence...
Blog
2 min read
Netenrich Hybrid SOC and Security Tools Strategy Report 2024: Six Key Takeaways
In an era of escalating cyber threats, understanding the evolving landscape...
Blog
3 min read
From Reactive to Proactive: Three Must-Haves to Transform Your SOC for the Digital Age
Remember Ferris Bueller? In a way, working in a SOC is like a high-stakes...
3 min read
Transforming the SOC: Embracing Adaptive MDR and Autonomic Security Operations
The traditional Security Operations Center (SOC) is at a critical juncture....
2 min read
Adaptive MDR™: Not Your Average MDR Solutions
“In cybersecurity, the only constant is change.” This age-old adage continues...
Blog
4 min read
Red CryptoApp: A New Threat Group in the Ransomware World
This is a preliminary report based only on the data leak site (DLS), listed...
Blog
1 min read
Netenrich Earns Google Cloud SecOps Service Delivery Expertise Certification
As the first, exclusive pure-play Google SecOps partner, Netenrich is 100%...
Blog
5 min read
Identity Behind Hunters International Ransomware Group’s Dedicated Leak Site Exposed
This article focuses on my research to uncoverthe identity of Hunters...
Blog
4 min read
Exposing Alpha Ransomware: A Deep Dive into Its Operations
Alpha ransomware, a distinct group not to be confused with ALPHV ransomware,...
Blog
4 min read
How to Achieve Autonomic Security Operations with Resolution Intelligence Cloud?
So, what’s a SOC? Some still believe they need a physical SOC building, where...
Blog
8 min read
Discovering the ADHUBLLKA Ransomware Family: Tracing the Roots of LOLKEK, BIT, OBZ, U2K, TZW Variants
This article is not an in-depth reverse-engineering analysis of a ransomware...
3 min read
Advanced Threat Hunting: Detecting Beaconing Attacks
Beaconing attacks can be difficult—but not impossible—to detect. The more you...
2 min read
FraudGPT: The Villain Avatar of ChatGPT
With the rise of generative AI models, the threat landscape has changed...
Blog
1 min read
Netenrich and Cybriant Partner to Move Upmarket and Scale Operations
Netenrich has entered into a strategic partnership with Cybriant, a leading ...
Blog
3 min read
SANS Institute Evaluates Resolution Intelligence Cloud, Gives Thumbs Up
To keep an enterprise up and running, security is essential—and no doubt, why...
Blog
2 min read
What Is Detection Engineering?
Detection engineering is the process of designing and implementing systems,...
Blog
3 min read
Beyond UEBA: A New Approach to Anomaly Detection and Situational Awareness
User entity and behavior analytics (UEBA) has been great at solving some...
Blog
4 min read
Netenrich is a Sample Related Vendor/Security Vendor in Gartner® report, Emerging Tech: Security — Emergence Cycle for Automated Moving Target Defense
According to the Gartner report, “Automated moving target defense (ATMD)...
Blog
1 min read
EMA Names Netenrich a Leading Security Visionary and “Must See” Vendor at RSA 2023
Wondering what to see and who to visit at RSA 2023? Enterprise Management...
Blog
4 min read
3 Digital Transformation Questions CIOs Must Ask and Answer in 2023
Heading into 2023 with digital transformation still top of mind for most...
Blog
3 min read
SIEM vs. SOAR: The Right Security Tool
Security information and event management (SIEM) and security orchestration,...
Blog
4 min read
SIEM 101 – Best Practices for Implementation
Security information and event management (SIEM) is about collecting,...
Blog
3 min read
UEBA, It's Just a Use Case
"UEBA, it’s just a use case." – Netenrich CISO Chris Morales
He’s not wrong....
Blog
4 min read
Want to Optimize Threat Detection & Response? 5 Patterns vs. 500 Rules
One vendor uses 5 patterns, the other uses 500 rules. What’s better?
Anyone...
Blog
2 min read
Amp up Security: MITRE’s SOC Strategies Go to 11. But Can We Go Higher?
MITRE strategy 10 says measure performance to improve performance. It’s...
Blog
3 min read
How to Improve Cross-functional Collaboration Between the SOC and IT?
As MITRE points out in strategy 9 of its 11 Strategies of a World-class...
Blog
4 min read
7 Steps to Smart Security Operations: RiskOps Resolutions for 2026
Digitalization initiatives evolved faster than digital operations in 2020, and...
Videos & Webinars
1 min read
Driving Secure Operations with Data Efficacy and Analytics
Raju Chekuri, CEO and Chairman of Netenrich, talks about security challenges...
Case studies
4 min read
Smarter Security, Faster Response: Inside Nuvama’s SOC Reinvention
Securing What Matters in Modern Finance
Case studies
5 min read
Citrix and Cloud Software Group Transforms Security Operations with Netenrich
Cloud Software Group (CSG), a $4.5 billion global software leader, embarked on...
Case studies
4 min read
Rebuilding Trust: A Digital-First Marketing Giant’s Security Transformation
Facing a crisis of trust after its MDR vendor failed to disclose a security...
Case studies
2 min read
Modernizing Security for a Prominent Regional Bank
A prominent regional bank with over 80 branches across Southern California,...
Case studies
2 min read
Supercharging Security Operations for Health Tech Organization
A major healthcare technology company, with over $800M in revenue had relied on...
Case studies
3 min read
Life Sciences Leader & Large US County Set Up New Security Platform in Hours
Resolution Intelligence Cloud™ operationalizes security at service-provider...
Case studies
3 min read
How did MultiCare improve its Digital Infrastructure?
Discover how Netenrich's Resolution Intelligence Cloud helps MultiCare with its...
Case studies
2 min read
SysTools boosts security, changes mindsets with Resolution Intelligence Cloud
Read how Resolution Intelligence Cloud™ transformed SysTools, a cybersecurity...
Data Sheets
4 min read
Netenrich Adaptive MDR™ for Google SecOps
Because a One-Size-Fits-All MDR ... Fits No One!
Not all businesses operate the...
Data Sheets
2 min read
Resolution Intelligence Cloud™ for Managing Business Risk
Resolution Intelligence Cloud is a cloud-native data analytics platform for...
From The CEO Desk
4 min read
From CMDB to CAASM: Operationalizing Asset Intelligence
Aug 20, 2026 by Raju Chekuri
The gap between where most enterprises are on asset intelligence - a CMDB with...
4 min read
Why Divergent Teams Drive True Security Collaboration
Aug 18, 2026 by Raju Chekuri
When people ask me what makes the Resolution Intelligence Cloud different from...
4 min read
Detecting Advanced Persistent Threats (APT) via Sequences
Aug 13, 2026 by Raju Chekuri
Sophisticated adversaries design their individual actions to be unremarkable. A...
Agentic SOC
7 min read
The 3-minute Heist: Securing Modern Environments against Cloud Data Exfiltration.
Jun 9, 2026 by Suma Ballal
Modern cloud environments have fundamentally changed how enterprise data is...
7 min read
Non-Human Identity Security: Why Defending NHIs Requires Detection and Posture Working Together
Jun 9, 2026 by Suma Ballal
Non-Human Identities (NHIs)—service accounts, automation tokens, CI/CD pipeline...
5 min read
Revolutionizing Telemetry: Announcing Praxis Intelligent Data Pipeline Management by Netenrich for Google SecOps
Jun 5, 2026 by Netenrich
As modern enterprises scale, their security operations inevitably face a...
Threat Research
19 min read
Subverting the Source: Source Code & Software Production Attacks
Aug 21, 2026 by Asritha Narina
Part 1 covered core supply chain concepts; Part 2 analyzed npm dependency...
24 min read
CI/CD Pipeline Hijacking: 5 Attack Vectors & Threat Hunting
Aug 6, 2026 by Asritha Narina
Deconstructing automated build runner exploitation, real-world case studies,...
15 min read
Deconstructing npm Registry & Supply Chain Attacks | Netenrich
Jul 31, 2026 by Asritha Narina
Modern JavaScript/TypeScript development relies on composing applications...
As seen on
Subscribe for updates
The best source of information for Agentic SOC and Cyber Risk Operations best practices. Join us.


