Term of the Day
“Security Orchestration, Automation and Response”
Definition — What is SOAR?
SOAR stands for “Security Orchestration, Automation and Response” it’s the set of technologies that allow businesses to collect security threats (alerts) and data from multiple sources in order to identify security incidents within the organization. SOAR performs the remediation process by using both human skills and machine-powered assistance. SOAR also helps to automate, manage security issues and security tools through a single interface. Placing SOAR at the heart of a security platform helps teams extend and maximize value across the ecosystem and to any security process in a coordinated manner. The term SOAR was coined by Gartner in 2017. According to Gartner, the three most important capabilities of SOAR technologies are:
The real-world necessity of SOAR is growing as we speak, and the expectations of SOAR are very promising. Gartner predicts that by the end of 2020, 15% of organizations with a security team of more than five security professionals will leverage SOAR.