
Cloud Security Podcast by Google EP264 Measuring Your (Agentic) SOC: Two Security Leaders Walk into a Podcast
13 snips
Feb 23, 2026 Michael Sinno, Director of Detection & Response at Google, leads engineering-led SOC practices. Alexander Pabst, Global Deputy CISO at Allianz, runs large-scale security operations and compliance. They debate whether time-based metrics still matter, unpack the Maturity Triangle and AI-driven automation, and explore measuring toil reduction, unit economics, auditability, and what boards actually care about.
AI Snips
Chapters
Transcript
Episode notes
Mean Metrics Break When Automation Dominates
- Mean-based metrics like MTTD and MTTR are losing value as automation drives many incidents to seconds, skewing averages.
- Focus instead on outliers and the subset that gets stuck where automation fails, since a single long incident can mask problems.
Call Center Lessons Teach Metric Gaming Risk
- Anton recounts call-center lessons: strict time targets teach people to game metrics and sacrifice quality.
- That lived experience motivates pairing time metrics with quality SLOs and automated ticket reviews.
Measure Quality Alongside Speed
- Pair time metrics with quality checks so fast responses don't become low-quality answers.
- Use AI to auto-review tickets and reopen or kick back ones that fail SLOs rather than just rewarding speed.
