SOAR
Security Orchestration, Automation, and Response
SOAR platforms automate repetitive security tasks and orchestrate responses across multiple tools. They use playbooks to standardize incident response steps and reduce manual workload.
Cómo se usa en ciberseguridad
Incident responders build playbooks that automatically enrich alerts with threat intelligence and isolate compromised hosts. SOC analysts use SOAR to reduce response times from hours to minutes. Security engineers integrate SOAR with SIEM, EDR, and ticketing systems to create end-to-end workflows.
Término relacionado en el glosario: soar
Las definiciones son explicaciones originales escritas con fines de desarrollo profesional. Para definiciones técnicas autorizadas, consulta NIST, ISO o el organismo de normalización correspondiente.