Only 43% of security pros can respond to critical alerts in less than an hour>
Help Net Security
Deepwatch released the State of the Modern SOC report, which found that most IT security professionals believe they could have stopped business impacting cyber events if equipped with better response capabilities. Many seek more automation and less alert noise to shorten response times.
The report found that 85% of IT security professionals have experienced preventable business impacts resulting from insufficient response procedures, while 97% said that more accurate alerting would increase their confidence in automating threat response actions. More than 300 security professionals, working at U.S. organizations with 1,000 or more employees, were surveyed by Dimensional Research for this report.
93% of security professionals are working to reduce response times, and 99% either believe they need more automation or want to learn more about automating security incident response in their organizations. Automation would significantly benefit organizations strapped for resources. The research found that 38% of security teams for companies with over 1000 employees are still not resourced for 24/7 SOC coverage; of that, 30% have SOC coverage during business hours only, and 8% have no SOC.
Of the 85% of security professionals that reported preventable business impacts insufficient response, 63% reported consequences of blocked access to their systems resulting in downtime, and 47% reported a negative impact on customer experience.
Link: https://www.helpnetsecurity.com/2022/06/10/cyber-events-response-capabilities/