Cisco Security and Splunk Security have released their findings report from the Security Operations Center (SOC) at RSAC 2026, marking the 10th year of the initiative. Key themes include: tighter integration between Cisco XDR and Splunk Enterprise Security enabling efficient triage and investigation; automation via Splunk SOAR reducing analyst toil by over nine hours during the event; Cisco Firewall's Encrypted Visibility Engine detecting threats in encrypted traffic without decryption; and Cisco AI Defense providing visibility into generative AI usage and protecting on-premises AI models. The report covers real investigations including credential exposure, phishing, malware, and misconfigured services, serving as a field report from a live high-pressure environment.

4m read timeFrom blogs.cisco.com
Post cover image
74 Impressions