Techzine TV podcast
In the Techzine TV podcast we analyze B2B IT solutions, strategies, and trends. IT companies are happy to invite us to talk about what they are working on and what they are going to bring to market. We visit them all around the world, and in some cases, they visit us in our office.
We have a good understanding of how technologies work, or how they should work. We also hear a lot from the market about what companies need or where things go wrong. This gives us the ability to have really in-depth conversations on technology, strategies, and products, but we always try to keep it practical and easy to understand.
We explain innovations, interpret new IT concepts, and use practical examples to make complex technology understandable for everyone. Where necessary, we bring in experts to clarify matters further. The goal is to help IT professionals, decision makers, and other listeners better understand IT developments, but also to help them in their search for new solutions for their business and not get stuck on buzzwords and one-liners.
The Techzine TV podcast is an evolution of the previous Techzine Talks on Tour series. We still bring a lot of conversations and interviews from events to this series. We record so many video interviews nowadays, so we can select the best ones for this podcast series.
The topics still vary greatly, as Coen and Sander attend a total of 50 to 60 events each year, ranging from open-source events like KubeCon to events hosted by Cisco, IBM, Salesforce and ServiceNow, to name only a few. With a lot of experience in many walks of IT life, Coen and Sander always manage to produce an engaging, in-depth discussion on general trends, but also on technology itself.
So follow the Techzine TV podcast and stay in the know. We might just tell you a thing or two you didn't know yet, but which might be very important for your next project or for your organization in general. Stay tuned and follow Techzine TV.
Techzine TV podcast
Why your SOC needs a ROC
Sumedh Thakar, CEO of Qualys, discusses the company's evolution from vulnerability management to comprehensive risk operations. He explains why organizations need a Risk Operations Center (ROC) separate from their SOC, focusing on proactive risk management rather than reactive breach detection.
Thakar talks about how Qualys is standardizing risk scores across vulnerabilities, misconfigurations, and identities to give organizations a single view of their security posture. He also addresses the balance between prevention and detection, the role of AI in accelerating security operations, and why profitability matters as much as growth in cybersecurity.
Key Takeaways:
• ROC focuses on proactive risk management while SOC handles reactive breach detection
• Standardized risk scoring helps organizations prioritize what actually matters to their business
• AI and agentic automation can help defenders match attacker speed
• Consolidation is possible without abandoning best-of-breed tools
• Risk management ultimately comes down to money: potential loss vs. mitigation cost
Chapters:
0:05 - ROCon Conference Introduction
0:27 - What is ROC (Risk Operations Center)
1:52 - Why ROC is different from SOC
3:43 - Rethinking prevention and detection
4:59 - Standardizing risk scores
8:54 - True Risk Score and prioritization
14:15 - Qualys Business strategy
16:05 - AI and agentic automation in security
Interview recorded at Qualys ROCon 2024