The Cybersecurity Pulse (TCP)

The Cybersecurity Pulse (TCP)

Share this post

The Cybersecurity Pulse (TCP)
The Cybersecurity Pulse (TCP)
πŸŽ„ TCP #69: SecOps in 2025; Hacker Mindset and Product News
Copy link
Facebook
Email
Notes
More
User's avatar
Discover more from The Cybersecurity Pulse (TCP)
The insiders’ edge on security innovation, funding, and GTM plays. Be first, not last.
Over 5,000 subscribers
Already have an account? Sign in

πŸŽ„ TCP #69: SecOps in 2025; Hacker Mindset and Product News

Security Product News | Dec 11th - Dec.18th, 2024

Darwin Salazar's avatar
Darwin Salazar
Dec 18, 2024
6

Share this post

The Cybersecurity Pulse (TCP)
The Cybersecurity Pulse (TCP)
πŸŽ„ TCP #69: SecOps in 2025; Hacker Mindset and Product News
Copy link
Facebook
Email
Notes
More
Share

Welcome to Issue 69 of The Cybersecurity Pulse! I'm Darwin Salazar, PM at Monad and former Detection Engineer. Each week, I explore the latest security product innovation and industry news. Stay ahead of security trends and themes by subscribing below to receive weekly digests directly to your inbox. Share with a friend if already sub’d! πŸ“©

Share

We're on the cusp of holidaysπŸŽ„ which means that naturally, things are slowing down and we're about to be blitzed with endless (and obvious) yearly predictions. Many of these predictions have been predicted for the past decade and have actually already realized. Take predictions with a huge grain of salt and always ask yourself if the β€˜predictor’ has an agenda or something to sell as that helps provide more context into why they’re predicting what they’ve predicted. Lastly, predictions from CISOs and practitioners should hold most weight as they often don’t have anything to sell you and are simply stating the trends they’re seeing take place in the trenches.

That said, let’s cyber! πŸ•ΊπŸ½

Interested in sponsoring TCP and connecting with over 4,700 security professionals across 100+ countries? 🌎 2025 slots are filling up!

Learn more here!

Picks of the Week🎯

SANS Book of the Year: Cyber for Builders

Cyber for Builders is a MUST read for anyone building security products or looking to get a grasp on the business side of security. The book has many nuggets of wisdom that can help founders avoid common pitfalls and learn how to best bring their product to market.

To me, it’s no surprise that it won the SANS DMA Book of the Year award. Huge kudos to my dear friend,

Ross Haleliuk
, who undoubtedly has been a huge difference maker in the security industry over the past several years! πŸ‘πŸΌ

If you don't own a copy yet, grab one here and thank me later!


Security Operations in 2025 and Beyond

Palo Alto Networks has made major strides in the SecOps space this year with their SIEM offering, XSIAM. They've recently released a few predictions for 2025 which may hint at XSIAM's product direction in the coming year. Below are their predictions:

  1. Convergence of CNAPP and SIEM - "Code to Cloud to SOC" πŸ€”

  2. The SOC will increasingly leverage AI for exposure management.

  3. AI SOC solutions will redefine the human analyst's role.

While its fairly obvious that the latter two will gain more traction next year, the first one feels like a stretch. A CNAPP is basically 5-7 tools in one unified platform if done right. Not all CNAPP findings are time-sensitive or require real-time monitoring which is where SIEMs excel. Merging the two would create more noise and management overhead for SecOps teams.

Will be interesting to see how Palo will try to pull this off.


Cultivating a Hacker Mindset in Cybersecurity Defense

This post argues that the hacker spirit is dying out as the security industry becomes more professionalized. I agree and do believe that the most successful blue teamers have spent some time doing offensive security or studying red team tradecraft. Spending time on red enables you to understand attacker motives and attack chain patterns which in turn helps with building detections and in incident response.

If you're a practitioner or a people leader, I highly encourage reading this post and finding ways to instill the hacker DNA within your team(s).


Product News πŸ“°

Pretty light this week on product news so we’ll be covering some interesting fundraising that’s taking place to close out the year.


AI Security

AIMon raises $2.3M to tackle AI Hallucinations

development stages with AIMon for llm apps

One of the biggest challenges AI adoption has faced is ✨hallucinations✨. While models have gotten more accurate over time, it's still a concern in cybersecurity, military operations, medical diagnostics and other use cases. There’s just very little to no room for inaccurate results in mission-critical operations.

Great to see that there are startups hyperfocusing on solving this and ultimately, increasing human trust in AI. Learn more about AIMon here.


More data security product news ⬇️

  1. AWS post-quantum cryptography migration plan

  2. Orca Expands DSPM Capabilities With Support For Snowflake

  3. BigID Releases Data Activity Monitoring to Extend DDR, Detect Malicious Actors, and Strengthen Data Security Posture


Data Security

Keepit Raises $50 Million for SaaS Data Protection Solution

The data security space remains hot and will continue to for the next gazillion years. Keepit is a Denmark-based startup focusing on SaaS data security + backups which is a much tighter scope than DSPM or DDR solutions on the market today.

I think Keepit is a great acquisition target for large vendors looking to expand their data security offerings. Hyperfocusing on a niche of a much larger problem is a great way to build a moat against the rest of the market. Will be interesting to see what Keepit does next!

Email Security

Sublime Snags $60M Series B for Email Security Tech

Sublime has quickly emerged as a leader in the crowded email security space. Their solution is used (and loved) by Reddit, Netflix, Brex and many more. I haven't fully dug into what sets them apart but the security community loves their product and I'm bullish on their leadership + design team.

Will be great to see what they've got up their sleeves next!


More Email Security product news ⬇️

  1. Fortinet Acquires Perception Point Reportedly for $100 Million


Offensive Security

Kali Linux 2024.4 released

The latest version of Kali comes with 14 new tools including 4 for Windows pen testing. Most compelling to me is BloodyAD which can perform LDAP calls to domain controllers to perform privilege escalation.


More OffSec product news ⬇️

  1. Unwrapping BloodHound v6.3 with Impact Analysis


Security Operations

Rubrik introduces Turbo Threat Hunting for faster breach recovery

A huge issue in breach or ransomware recovery is finding the last clean backups across impacted assets. Rubrik recently released a feature that turns this process from weeks/days to minutes. Turbo Threat Hunting can scan up to 75K backups in seconds using pre-computed hashing which eliminates the need for file-by-file scanning to identify altered files. #Innovation


More SecOps product news ⬇️

  1. Arctic Wolf acquires Cylance from BlackBerry for $160 million

  2. Intezer’s Autonomous SOC Platform Now Available in the Microsoft Azure Marketplace

Let's Grow Together!πŸ«±πŸ½β€πŸ«²πŸ»

Are you looking to boost your brand's visibility? Partner with us! Sponsoring TCP not only helps us continue to bring you the latest in security innovation, but it also connects you to a dedicated audience of over 4,600 CISOs, practitioners, founders, and investors across 100+ countries 🌎

Find out more here!

Bye For Now!

That’s all for this week… Β‘Nos vemos la prΓ³xima semana! πŸ‘‹πŸ½

Share

Nitish Deshpande's avatar
Nimrod Ben-Em's avatar
6 Likes
6

Share this post

The Cybersecurity Pulse (TCP)
The Cybersecurity Pulse (TCP)
πŸŽ„ TCP #69: SecOps in 2025; Hacker Mindset and Product News
Copy link
Facebook
Email
Notes
More
Share

Discussion about this post

User's avatar
Wiz’s $32B GTM Playbook: Unpacking the Formula (Part I)
From Finding PMF to Nailing Branding
Mar 25 β€’ 
Darwin Salazar
21

Share this post

The Cybersecurity Pulse (TCP)
The Cybersecurity Pulse (TCP)
Wiz’s $32B GTM Playbook: Unpacking the Formula (Part I)
Copy link
Facebook
Email
Notes
More
4
Wiz’s $32B Sales Engine: From Founder-Led to Channel-Led Growth (Part II)
Inside Wiz’s transition to 100% channel sales, global blitzscaling, and how a top-down sales strategy helped them conquer the Fortune 100.
Apr 9 β€’ 
Darwin Salazar
15

Share this post

The Cybersecurity Pulse (TCP)
The Cybersecurity Pulse (TCP)
Wiz’s $32B Sales Engine: From Founder-Led to Channel-Led Growth (Part II)
Copy link
Facebook
Email
Notes
More
2025 RSAC Innovation Sandbox Finalists Announced
A look at this year's RSAC Innovation Sandbox Finalists
Apr 8 β€’ 
Darwin Salazar
5

Share this post

The Cybersecurity Pulse (TCP)
The Cybersecurity Pulse (TCP)
2025 RSAC Innovation Sandbox Finalists Announced
Copy link
Facebook
Email
Notes
More
2

Ready for more?

Β© 2025 Darwin Salazar
Privacy βˆ™ Terms βˆ™ Collection notice
Start writingGet the app
Substack is the home for great culture

Share

Copy link
Facebook
Email
Notes
More

Create your profile

User's avatar

Only paid subscribers can comment on this post

Already a paid subscriber? Sign in

Check your email

For your security, we need to re-authenticate you.

Click the link we sent to , or click here to sign in.