This presentation from AWS re:Invent 2025 discusses the evolution of security operations in the cloud, focusing on how organizations can leverage AI-powered security solutions to build a modern, cloud-native Security Operations Center (SOC). The speaker highlights the limitations of traditional Security Information and Event Management (SIEM) systems and outlines a strategic approach to transitioning from SIEM to an AI-driven SOC on AWS.
Data Aggregation and Normalization:
AI-Powered Threat Detection:
Automated Incident Response:
Threat Hunting and Investigation:
Security Orchestration and Automation: