The 2019 SANS SOC Survey attempted to quantify the problem of security operations center tool overload. IBM and McAfee launched the Open Cybersecurity Alliance (OCA) in October 2019. The OCA’s motives are purely economic: Enterprise buyers are frustrated by tools that can’t talk to each other and require substantial time and money to integrate fully in their SOCs. A growing suite of open-source security tools, like the Security Onion stack and The Hive, together offer a free, fully interoperable “SOC in a box””]

