Insights / Research Brief / Large SOCs Take a Multifaceted Approach to Optimizing Security Operations
May 21, 2025

Large SOCs Take a Multifaceted Approach to Optimizing Security Operations

Dave Gruber
Principal Analyst, Ransomware, SecOps & Services

Emily Marsh
Associate Research Director

Bill Lundell
Senior Director, Sponsored and Syndicated Research

Market Topics

Cybersecurity

Security operations is a core function of cybersecurity, requiring a combination of skilled people, refined processes, and scalable technologies. While once focused on more reactive security functions, modern security operations centers (SOCs) are increasingly responsible for more proactive security functions, including monitoring security posture and status, managing threats and exposure, and analyzing threat intelligence, while continuing to triage, investigate, and respond to suspicious or malicious behavior. Recent research by Enterprise Strategy Group investigated how the size of a SOC impacts the adoption of technologies such as GenAI, leveraging third-party services and increasing organizations’ spending to better support their security operations and fortify their security posture.

Already an Enterprise Strategy Group client? Log in to read the full report. If you are not yet a Subscription Client but would like to learn more about accessing this report, please contact us

Unparalleled insights from analysts with an "insider" perspective

From strategy and product development to competitive insights and content creation, we deliver high-quality, actionable support services.