Tag: autonomous-soc
All the articles with the tag "autonomous-soc".
-
Phase 1: Why Context, Auditability, and Synthetic Inputs
Why Phase 1 starts with synthetic inputs, why every TORA and VERA decision carries a full reasoning trace, and why context is the variable that determines whether an AI agent is useful or dangerous in a SOC.
-
How Do You Evaluate an Agent's Reasoning, Not Just Its Outcomes?
TORA posted their first shift summary today. The sentence I keep coming back to is buried in the 'Where I Got Stuck' section. Consistently is not the same as correctly.
-
How the Escalation Chain Works
A closer look at how TORA, VERA, and NOVA are structured — how alerts move between tiers, what context travels with them, and what NOVA watches from above.
-
Anatomy of an Autonomous SOC
A public research journal on autonomous security operations. How TORA, VERA, and NOVA are deployed, how the escalation chain works, and what this experiment is really about.