Blue Team Handbook: SOC, SIEM, and Threat Hunting: Practical Techniques for Security Operations and Threat Hunting Teams

Blue Team Handbook: SOC, SIEM, and Threat Hunting: Practical Techniques for Security Operations and Threat Hunting Teams book cover

Blue Team Handbook: SOC, SIEM, and Threat Hunting: Practical Techniques for Security Operations and Threat Hunting Teams

Author(s): Don Murdoch (Author)

  • Publisher Finelybook 出版社: O’Reilly Media
  • Publication Date 出版日期: October 13, 2026
  • Edition 版本: 1st
  • Language 语言: English
  • Print length 页数: 488 pages
  • ASIN: B0FVDWMVVZ
  • ISBN-13: 9798341662292

Book Description

As cyberthreats become more sophisticated and alert volumes rise, security teams need more than just tools—they need strategy, structure, and field-tested guidance. Following the success of the original edition, this updated edition of Blue Team Handbook: SOC, SIEM, and Threat Hunting is still the essential resource for building, optimizing, and managing modern detection engineering practices and security operations centers.

This practical guide distills over 20 years of frontline cybersecurity experience into an actionable playbook for analysts, SOC managers, architects, detection engineers, and threat hunters. Author Don Murdoch delivers expert insights designed to help teams improve quickly. Whether you’re refining your current operations or launching a SOC from scratch, this book empowers you with proven, real-world techniques to defend against today’s most persistent threats.

  • Build and organize SOC teams for maximum operational impact
  • Understand how to launch and execute a comprehensive telemetry, audit data, and SIEM deployment strategy
  • Create effective SOC use cases
  • Develop and apply meaningful metrics to evaluate SOC effectiveness, analyst performance, and SIEM utility
  • Identify advanced threats using real-world threat hunting techniques

Editorial Reviews

Editorial Reviews

About the Author

Don Murdoch, GSE, MBA is a leading information security professional with over 20 years in cyber response and digital defense. His experience is in non profit, academic, and Fortune 500 settings. He has taught CISSP, Security Architecture, and intrusion analysis courses for the SANS Institute, and is both the NICCS Incident Response course lead and the ISSAP course lead for ExpandingSecurity.com. Don has numerous InfoSec IT certifications – CISSP, ISSAP, 33 SANS certifications, a GSE, is a chartered SABSA security architect, and also is certified as a TOGAF Enterprise Architect.

View on Amazon

下载地址

PDF, EPUB | 19 MB | 2026-10-08
打赏
未经允许不得转载:finelybook » Blue Team Handbook: SOC, SIEM, and Threat Hunting: Practical Techniques for Security Operations and Threat Hunting Teams

评论 抢沙发

觉得文章有用就打赏一下文章作者

您的打赏,我们将继续给力更多优质内容

支付宝扫一扫

微信扫一扫