{"id":50797,"date":"2022-08-18T09:38:00","date_gmt":"2022-08-18T01:38:00","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=50797"},"modified":"2022-08-18T07:39:36","modified_gmt":"2022-08-17T23:39:36","slug":"sophos-announces-sophos-x-ops","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2022\/08\/18\/sophos-announces-sophos-x-ops\/","title":{"rendered":"Sophos announces Sophos X-Ops"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"> <\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong><a href=\"https:\/\/www.sophos.com\/en-us.aspx\">Sophos<\/a>, a global player in next-generation cybersecurity, recently announced <a href=\"https:\/\/www.sophos.com\/en-us\/x-ops\">Sophos X-Ops<\/a>, a new cross-operational unit linking SophosLabs, Sophos SecOps and Sophos AI, three established teams of cybersecurity experts at Sophos, to help organizations better defend against constantly changing and increasingly complex cyberattacks. Sophos X-Ops leverages the predictive, real-time, real-world, and deeply researched threat intelligence from each group, which, in turn, collaborate to deliver stronger, more innovative protection, detection and response capabilities.<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Sophos is also issuing \u201c<a href=\"https:\/\/news.sophos.com\/ooda-x-ops-takes-on-burgeoning-sql-server-attacks\">OODA: Sophos X-Ops Takes on Burgeoning SQL Server Attacks<\/a>,\u201d research about increased attacks against unpatched Microsoft SQL servers and how attackers used a fake downloading site and grey-market remote access tools to distribute multiple ransomware families. Sophos X-Ops identified and thwarted the attacks because the <a href=\"https:\/\/news.sophos.com\/%E2%80%8Ebehind-the-research-the-making-of-ooda-x-ops-takes-on-burgeoning-sql-server-attacks\">Sophos X-Ops teams combined<\/a> their respective knowledge of the incidents, jointly analyzed them, and took action to quickly contain and neutralize the adversaries.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cModern cybersecurity is becoming a highly interactive team sport, and as the industry has matured, necessary analysis, engineering and investigative specializations have emerged. Scalable end-to-end operations now need to include software developers, automation engineers, malware analysts, reverse engineers, cloud infrastructure engineers, incident responders, data engineers and scientists, and numerous other experts, and they need an organizational structure that avoids silos,\u201d said Joe Levy, chief technology and product officer, Sophos. \u201cWe\u2019ve unified three globally recognized and mature teams within Sophos to provide this breadth of critical, subject matter and process expertise. Joined together as Sophos X-Ops, they can leverage the strengths of each other, including analysis of worldwide telemetry from more than 500,000 customers, industry-leading threat hunting, response and remediation capabilities, and rigorous artificial intelligence to measurably improve threat detection and response. Attackers are often too organized and too advanced to combat without the unique combined expertise and operational efficiency of a joint task force like Sophos X-Ops.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Speaking in March 2022 to the Detroit Economic Club about the <a href=\"https:\/\/www.fbi.gov\/news\/speeches\/fbi-partnering-with-private-sector-to-counter-the-cyber-threat-032222\">FBI partnering with the private sector to counter the cyber threat<\/a>, FBI Director Christopher Wray said, \u201cWhat partnership lets us do is hit our adversaries at every point, from the victims\u2019 networks back all the way to the hackers\u2019 own computers, because when it comes to the FBI\u2019s cyber strategy, we know trying to stand in the goal and block shots isn\u2019t going to get the job done.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cWe\u2019re disrupting three things: the threat actors, their infrastructure and their money. And we have the most durable impact when we work with all of our partners to disrupt all three together.\u201d Sophos X-Ops is taking a similar approach: gathering and operating on threat intelligence from its own multidisciplinary groups to help stop attackers earlier, preventing or minimizing the harms of ransomware, espionage or other cybercrimes that can befall organizations of all types and sizes, and working with law enforcement to neutralize attacker infrastructure. While Sophos\u2019 internal teams already share information as a matter of course, the formal creation of Sophos X-Ops drives forward a faster, more streamlined process necessary to counter equally fast-moving adversaries.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cEffective cybersecurity requires robust collaboration at all levels, both internally and externally; it is the only way to discover, analyze and counter malicious cyber actors at speed at scale. Combining these separate teams into Sophos X-Ops shows that Sophos understands this principle and is acting on it,\u201d said Michael Daniel, president and CEO, <a href=\"https:\/\/cyberthreatalliance.org\/\">Cyber Threat Alliance<\/a>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a><\/a>Sophos X-Ops also provides a stronger cross-operational foundation for innovation, an essential component of cybersecurity due to the aggressive advancements in organized cybercrime. By intertwining the expertise of each group, Sophos is <a href=\"https:\/\/news.sophos.com\/en-us\/2021\/11\/15\/the-ai-driven-soc\/\">pioneering the concept of an artificial intelligence (AI)<\/a> assisted Security Operations Center (SOC), which anticipates the intentions of security analysts and provides relevant defensive actions. <a href=\"https:\/\/news.sophos.com\/building-the-ai-assisted-soc-sophos-5-year-perspective\">In the SOC of the future<\/a>, Sophos believes this approach will dramatically accelerate security workflows and the ability to more quickly detect and respond to novel and priority indicators of compromise.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cThe adversary community has figured out how to work together to commoditize certain parts of attacks while simultaneously creating new ways to evade detection and taking advantage of weaknesses in any software to mass exploit it. The Sophos X-Ops umbrella is a noted example of stealing a page from the cyber miscreants\u2019 tactics by allowing cross-collaboration amongst different internal threat intelligence groups,\u201d said Craig Robinson, IDC research vice president, Security Services. \u201cCombining the ability to cut across a wide breadth of threat intelligence expertise with AI assisted features in the SOC allows organizations to better predict and prepare for imminent and future attacks.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">To learn more about <a href=\"https:\/\/news.sophos.com\/%E2%80%8Ebehind-the-research-the-making-of-ooda-x-ops-takes-on-burgeoning-sql-server-attacks\">Sophos X-Ops and its groundbreaking threat research<\/a>, subscribe to the <a href=\"https:\/\/news.sophos.com\/en-us\/\">Sophos X-Ops blogs<\/a> and follow <a href=\"https:\/\/twitter.com\/sophosxops\">Sophos X-Ops on Twitter<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Sophos X-Ops leverages the predictive, real-time, real-world, and deeply researched threat intelligence from each group, which, in turn, collaborate to deliver stronger, more innovative protection, detection and response capabilities.<\/p>\n","protected":false},"author":6,"featured_media":46775,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[54,206,96,2727,1656],"class_list":["post-50797","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-security","tag-sophos","tag-technology","tag-technology-adaption","tag-technology-investment"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/50797","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=50797"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/50797\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/46775"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=50797"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=50797"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=50797"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}