// Comparison

Applied Network Security Monitoring vs Le Security Operations Center au cœur de la cybersécurité: Which Should You Read?

Two cybersecurity books on Detection, compared honestly: who each is for, what each does best, and which to read first.

Intermediate
4/52013
Applied Network Security Monitoring

Collection, Detection, and Analysis

Chris Sanders, Jason Smith

A practitioner's walkthrough of building an NSM capability end to end, from deciding what to collect through detection and the analysis workflow that ties it together. The tooling is dated, but the way it teaches you to think about monitoring is not.

Intermediate
4/52026
Le Security Operations Center au cœur de la cybersécurité

La nécessaire constante évolution du SOC

Thomas Le Bourlot

Thomas Le Bourlot, nine years into operationalizing SOCs, delivers a systemic approach to the Security Operations Center that combines technology and governance, from supervision fundamentals through cloud, AI, and SOC-as-a-service models.

Read this if

SOC analysts and aspiring detection engineers who want a structured mental model for collection, detection, and analysis rather than a pile of disconnected tooling tutorials.
Analysts, managers, and anyone involved in a SOC who wants a complete, progressive view: attack types, tooling (SIEM, EDR, SOAR) and how they complement each other, then the central role of human teams (CSIRT, red/blue/purple teams) and their collaboration.

Skip this if

Anyone hoping for a current toolkit. Skip this if you want hands-on Zeek/Suricata/Elastic configs you can paste today, the commands here have aged out.
Readers looking for a hands-on configuration manual for a specific SIEM or EDR product; this book treats SOC organization and governance as a system, not product-by-product setup.

Key takeaways

  • Collection is a deliberate decision, not a default. Decide what data matters before you drown in everything.
  • The book's split of detection into signature, anomaly, and statistical approaches still maps cleanly onto how modern stacks work.
  • Analysis is a discipline with a workflow, not improvised packet-staring, and that framing is the most durable thing here.
  • No dedicated SOC book existed in this catalog until now, filling a real gap for blue-team and analyst careers.
  • Treats the human factor and collaborative models as just as decisive as the tooling for SOC effectiveness.
  • Gives a forward-looking view of the modern SOC: cloud, artificial intelligence, and as-a-service models, not just the status quo.

How they compare

Applied Network Security Monitoring and Le Security Operations Center au cœur de la cybersécurité are both rated 4/5 in our catalog. Pick by topic preference and reading style rather than by rating.

Both books target intermediate-level readers, so the choice is about topic, not difficulty.

Applied Network Security Monitoring and Le Security Operations Center au cœur de la cybersécurité both cover Detection, Defensive, so reading them in sequence reinforces the same material from different angles.

Keep reading

Related topics