Historical Data Analysis in Security Operations

This essay was written by Sergey Soldatov, Kaspersky’s Head of Security Operations Center. It explores the unique role of threat hunting in detecting advanced persistent threats (APTs) that evade automated security solutions, positioning it as a critical component of a modern SOC’s detection and response strategy. Drawing from real-world detection practices, it outlines how threat hunting complements alert-driven SOC operations through retrospective analysis and hypothesis-driven investigation, using telemetry data such as EDR/NDR logs.

Complete this form to
Download the webinar

Historical Data Analysis in Security Operations

@Jolt Digital

Subscribe To Our Newsletter

Join our email list to get the exclusive unpublished content right in your inbox