What a Security Operations Center Does
A security operations center monitors and analyzes activity on networks, servers, endpoints, databases, applications, websites, and other systems, looking for anomalous activity that could be indicative of a security incident or compromise.
SOC is responsible for ensuring that potential security incidents are correctly identified, analyzed, defended, investigated, and reported. Additional capabilities of SOC can include advanced forensic analysis, and malware reverse engineering to analyze incidents.