We will discuss a brief history of SOC automation leading to the main question of why an automated SOC doesn’t exist yet. In this talk we’ll discuss why it’s impossible to create accurate cyber alerts, why SOC analysts are so important, false positives in real life and how this translates to cybersecurity and the SOC, a shift away from a playbook-only model and how automation can help analysts, and how this tech isn’t coming for your job. Our objective for this talk is to understand how AI technology can be used in modern SOCs and the importance of the analyst role in the SOC. This discussion will be technical yet approachable for all audiences.