CERN Computing Seminar

Designing a large-scale Security Operations Centre

by Liviu Valsan (CERN)

Vidyo: Computing Seminars (CERN)

Vidyo: Computing Seminars




This presentation will address the design principles behind the implementation of a large scale Security Operations Centre (SOC), able to process TBs/day of security data. Key components and recommendations to build an appropriate computer security monitoring and detection system will be presented, as well as means to obtain and share relevant and accurate threat intelligence information.

Various lessons learnt from building and operating the CERN SOC will be presented. This presentation also gives an update on the work performed in the WLCG Security Operations Center Working Group that aims to provide a scalable reference design applicable for a range of HEP sites.

About the speaker

Liviu Valsan is a member of the CERN Computer Security Team, leading the design and implementation of the CERN SOC.

Organized by

Stefan Lüders/CERN and Vincenzo Ciaschini‎/CNAF

Logistics: Miguel Angel Marquina - IT Department
CERN Computing Seminars and Colloquia

NOTE: In order to prevent spurious disturbances, participants joining via Vidyo are kindly invited to keep their camera and microphone muted until the Q&A part after the presentation. When it will be your turn, enable to pose your comments/questions, then mute again