
Le Security Operations Center au cœur de la cybersécurité
La nécessaire constante évolution du SOC
Thomas Le Bourlot, nine years into operationalizing SOCs, delivers a systemic approach to the Security Operations Center that combines technology and governance, from supervision fundamentals through cloud, AI, and SOC-as-a-service models.
As an Amazon Associate we earn from qualifying purchases. The link above is sponsored.
- Authors
- Thomas Le Bourlot
- Published
- 2026
- Publisher
- Éditions ENI
- Pages
- 316
- Language
- French
Read this if
Analysts, managers, and anyone involved in a SOC who wants a complete, progressive view: attack types, tooling (SIEM, EDR, SOAR) and how they complement each other, then the central role of human teams (CSIRT, red/blue/purple teams) and their collaboration.
Skip this if
Readers looking for a hands-on configuration manual for a specific SIEM or EDR product; this book treats SOC organization and governance as a system, not product-by-product setup.
Key takeaways
- No dedicated SOC book existed in this catalog until now, filling a real gap for blue-team and analyst careers.
- Treats the human factor and collaborative models as just as decisive as the tooling for SOC effectiveness.
- Gives a forward-looking view of the modern SOC: cloud, artificial intelligence, and as-a-service models, not just the status quo.
Notes
Pairs with Applied Network Security Monitoring and The Practice of Network Security Monitoring for the underlying detection technique, and with Cybersecurity Tabletop Exercises to test the readiness of the SOC team this book builds. Published in Éditions ENI's Epsilon collection.
Beginner · 2019
Foundations of Information Security
Jason Andress' compact tour of the field: confidentiality / integrity / availability, identification and authentication, network and OS controls, written for newcomers and adjacent disciplines.
Beginner · 2021
How Cybersecurity Really Works
Sam Grubb's gentle, exercise-driven introduction for non-specialists who need a working mental model of attacker behaviour and basic defence.
Intermediate · 2013
The Practice of Network Security Monitoring
Richard Bejtlich's NSM playbook: how to deploy collection sensors, validate that you actually see what you think you see, and build detection workflows around open-source tools.
Advanced · 2015
Sécurité et espionnage informatique
A technical French guide to advanced persistent threats and cyber-espionage — how APT campaigns work, how to detect them, and how to defend — by one of France's APT specialists.
Advanced · 2010
Tableaux de bord de la sécurité réseau
A practitioner's manual for measuring and steering network security — metrics, dashboards, monitoring and risk indicators — for the people who run security operations.
Intermediate · 2013
The Practice of Network Security Monitoring
Richard Bejtlich's NSM playbook: how to deploy collection sensors, validate that you actually see what you think you see, and build detection workflows around open-source tools.
Explore similar books
Alternatives to Le Security Operations Center au cœur de la cybersécurité →Intermediate · 2013
The Practice of Network Security Monitoring
Richard Bejtlich's NSM playbook: how to deploy collection sensors, validate that you actually see what you think you see, and build detection workflows around open-source tools.
Intermediate · 2017
Network Security Through Data Analysis
Michael Collins on building situational awareness from network telemetry: collection architecture, statistical baseline-setting, and the analytic patterns that turn raw flows into detection.
Intermediate · 2013
Applied Network Security Monitoring
A practitioner's walkthrough of building an NSM capability end to end, from deciding what to collect through detection and the analysis workflow that ties it together. The tooling is dated, but the way it teaches you to think about monitoring is not.