01

Agentic SOC Readiness Sprint

Exercise the SOC, including failure or manipulation of its own AI agents. Derive and validate the use cases in your environment, set autonomy and kill-switch rules, and map evidence to NIST AI RMF and ISO 42001.

In the engagement

  1. 01

    Exercise the SOC, including failure or manipulation of its own AI agents

  2. 02

    Derive and validate the use cases in your environment

  3. 03

    Autonomy limits and kill-switch rules

  4. 04

    Evidence mapped to NIST AI RMF and ISO 42001

Use cases are mapped to MITRE ATT&CK, ATLAS, and D3FEND. The Sprint is the engagement to start with.

Mapped to

Public MITRE knowledge bases. ATT&CK for adversary behavior, D3FEND for defensive countermeasures, ATLAS for attacks on AI and ML systems.

The practice

Our team has delivered tabletops and war games at Booz Allen Hamilton, EY and AT&T DFIR and built a SOC at Accenture.

We run the exercise, and we write and audit the detections.

Cyber Defense Tactics is a practice of CarbeneAI.