The Ultimate Guide to Security Operations Centres
A curated Kiwi edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Security Operations Centres (SOCs).
What to know about Security Operations Centres
A Security Operations Centre (SOC) serves as the critical hub for monitoring, detecting, and responding to cybersecurity threats within organisations. Covering a wide spectrum of digital environments, SOCs integrate advanced technologies such as AI, machine learning, and automation tools to enhance threat detection and incident response capabilities.
Exploring recent developments in this field reveals insights on evolving challenges like alert fatigue, skills shortages, and the increasing complexity of cyberattack surfaces. Readers can learn how organisations leverage innovations in SOC-as-a-Service, AI-driven threat hunting, and next-generation platforms to build adaptable, efficient security operations tailored to their needs.
Whether you are an IT professional, security analyst, or business leader, following stories under the 'Security Operations Centre' tag offers valuable perspectives on managing cyber risk, improving operational efficiency, and preparing your organisation for the dynamic cybersecurity landscape ahead.
Kiwi Security Operations Centres News
Regional stories with direct local relevance
SSS launches managed security service in New Zealand
Public bodies and mid-market firms in New Zealand can now use a single managed cyber service to cut tool sprawl and relieve overstretched IT teams.
Securecom appoints Head of Cyber Security & promotes Kolver
Sharp New Zealand's backing is accelerating Securecom's growth as it adds senior cyber expertise and broadens product and commercial leadership.
iSANZ finalists highlight New Zealand cyber sector shift
Finalists span corporates, councils and start-ups as New Zealand's cyber work shifts towards resilience, behaviour and AI, iSANZ says.
QuizFlight adds knowledge tags to security training
Security teams can now pinpoint training gaps by topic as QuizFlight's tagging system measures understanding, not just course completion.
Spectrum partners with Arctic Wolf on cyber services
New Zealand firms can now outsource 24x7 threat monitoring as Spectrum adds Arctic Wolf's managed detection and response to its resilience stack.
From biometrics to zero trust secures physical-digital divide
Organisations are pairing biometrics with layered access controls as cyber and physical threats converge inside data centres and other sensitive facilities.
Analyst Insights
Research and market analysis connected to Security Operations Centres
Exabeam adds AI tools for agentic security operations
NCC Group named in Forrester MDR services landscape
Netskope launches control to block risky AI agent actions
DigiCert launches AI Trust Manager for agent control
Thrive bolsters NextGen platform with Elastic, Cato
Featured News
AI demands network agility and better operational governance
Governance gaps are leaving most organisations exposed as AI traffic surges and networks struggle to keep pace with machine-speed demands.
Zscaler takes zero trust beyond the corporate network
Critical infrastructure operators are using cellular links to secure distributed assets as outages and spoofing raise the stakes for resilience.
Filigran: Does your CISO know enough?
CISOs are under pressure to answer boardroom questions on exposure in minutes, as Filigran pushes CTEM and open-source validation tools.
AI transforming physical security into enterprise data solution
AI and cloud tools are turning cameras into live operational data sources, helping firms cut costs, spot errors and manage fleets centrally.
Mimecast CEO: Agentic AI threat novel but not entirely new
Hidden AI risks are already widespread in workplaces, with Mimecast saying users are driving shadow tools and most exposure still starts with people.
Trusted identity cuts across physical and logical systems
Unified identity systems can cut admin overhead and shrink attack surfaces as remote work and cyber threats blur physical and digital access.
Apple's Unified Memory powers Kiraa AI's rapid automation
Australian firms can speed month-end processing from days to an hour by running Kiraa AI on Macs instead of costly cloud servers.
AI models expose new attack surfaces through misconfiguration
Misconfigured models are giving attackers a fresh route into cloud systems, raising the risk of data theft and service compromise.
Check Point CTO on AI's double-edged sword
AI is shrinking the gap between vulnerability disclosure and real-world exploitation to hours, forcing security teams to adapt fast.
SonicWall boosts endpoint security for SMBs and mid-market
SMBs and mid-market firms facing AI-driven attacks are set for tighter device controls as SonicWall prepares a new endpoint security product.
Resilience over prevention as AI reshapes security landscape
Rising ransomware speed is pushing ANZ firms to increase spending on recovery strategies as AI gives attackers new ways in.
Check Point: Be the best, or get out the way
Rising AI-driven attacks are compel security buyers to cut vendor sprawl, though Check Point warns over-consolidation can still raise risk.
Check Point: Hackers are already in. Act accordingly
Hackers are exploiting vulnerabilities in hours or minutes, leaving many organisations compromised before defenders spot the breach.
Reviews
Expert Columns
Integrated video security - a must for modern preschools
In the AI era, channel value is being redefined
Cybersecurity finds problems. AI can accelerate remediation
Cybersecurity is operating on the wrong clock
The autonomous SOC takeover
How security leaders should measure AI SOC performance
AI closes vulnerability window as zero-day exploits surge
Collective cyber defence will be won or lost in how we act together
Machine vs. machine: The new reality of cybersecurity in ANZ
The future of autonomous security
Interviews
Interviews and video coverage from the networkRecent Security Operations Centres News
NETSCOUT launches AI copilot for outage investigations
It aims to help operations teams pinpoint outage causes faster by turning packet data into plain-language answers, evidence and follow-up prompts.
ThreatBook acquires CyberStrikeAI in red team push
The deal gives security teams a widely used AI testing tool with on-premises controls, as vendors race to speed up offensive defence.
TrendAI adds Claude session visibility for security teams
Security teams can now trace prompts, responses and tool calls from Claude Code and Cowork alongside other enterprise signals.
Keeper & SailPoint link up to automate access control
The link should cut manual offboarding and audit work for security teams by tying SailPoint approvals directly to Keeper-managed privileges.
Most organisations lack mature 24x7 security operations
Many firms are still exposed to faster AI-driven attacks, with Logicalis finding 64 per cent lack mature round-the-clock security operations.
Sectigo launches quantum readiness tool for enterprises
Governments and standards bodies are pushing firms to map cryptography now, as missing assets could leave them exposed to post-quantum risks.
TCS launches custom chip design for software-led cars
Bespoke chips are becoming central to vehicle performance and safety as automakers race to build software-defined cars.
Hexnode XDR adds macOS support & faster remediation
MacOS users can now be covered by Hexnode's XDR as the update aims to cut alert overload and speed up threat response for IT teams.
Quest expands identity security for AI agent threats
The update is aimed at speeding recovery and containing breaches as AI agents gain access to corporate identity systems.
Keeper & SailPoint link identity governance with PAM
It automates provisioning and revocation of privileged access, helping organisations cut manual updates and reduce compliance risk.
Arctic Wolf details post-exploit NetScaler attacks
Affected organisations may still face unauthorised access after patching, as researchers found attackers using scripts and reverse shells on NetScaler devices.
Keeper & SailPoint link governance to privileged access
By automating access changes end to end, the tie-up aims to cut delays and audit gaps when users move roles or leave an organisation.
Quorum Cyber to acquire Ontinue in Microsoft security deal
The merger is set to give Microsoft customers broader AI-led threat detection, response and recovery support across North America, the UK and DACH.
eSentire acquires AI security startup for Atlas AIDR
Security teams are gaining real-time audit trails and controls as eSentire folds the stealth startup's AI monitoring module into Atlas.
Eve Security raises USD $7.5 million for AI agent tools
Growing concern over autonomous AI systems has helped the Austin-based startup secure fresh backing to expand sales and revenue growth.
Fleet joins Anthropic project to test AI for security
With attackers exploiting flaws within hours, the firm will test whether AI can help IT teams patch faster across mixed device fleets.
Security leaders worry AI agents outpace governance
Many security chiefs expect to curb AI agent use within 18 months as fears grow over unauthorised access and weak audit trails.
AI tops cybersecurity spending as CISOs boost budgets
Tight security budgets are tilting towards AI, with 69% of Chief Information Security Officers making it their top priority for new spending.
Red Heron exploits Gitea flaw, uncovers SIXZUT rootkit
Attackers turned a newly disclosed Gitea flaw into automated intrusions within days, hitting systems in five countries and exposing source code and secrets.
Tech Race Summit explores personalisation, AI and cybersecurity
AI and personalisation are reshaping Softswiss's product, engineering and security priorities as the group warns of higher cyber risk and tighter data demands.