Cloud Security Podcast by Google

EP264 Measuring Your (Agentic) SOC: Two Security Leaders Walk into a Podcast

13 snips
Feb 23, 2026
Michael Sinno, Director of Detection & Response at Google, leads engineering-led SOC practices. Alexander Pabst, Global Deputy CISO at Allianz, runs large-scale security operations and compliance. They debate whether time-based metrics still matter, unpack the Maturity Triangle and AI-driven automation, and explore measuring toil reduction, unit economics, auditability, and what boards actually care about.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Mean Metrics Break When Automation Dominates

  • Mean-based metrics like MTTD and MTTR are losing value as automation drives many incidents to seconds, skewing averages.
  • Focus instead on outliers and the subset that gets stuck where automation fails, since a single long incident can mask problems.
ANECDOTE

Call Center Lessons Teach Metric Gaming Risk

  • Anton recounts call-center lessons: strict time targets teach people to game metrics and sacrifice quality.
  • That lived experience motivates pairing time metrics with quality SLOs and automated ticket reviews.
ADVICE

Measure Quality Alongside Speed

  • Pair time metrics with quality checks so fast responses don't become low-quality answers.
  • Use AI to auto-review tickets and reopen or kick back ones that fail SLOs rather than just rewarding speed.
Get the Snipd Podcast app to discover more snips from this episode
Get the app