Everyone in security has answers. We have questions.
59 MDR vendors. 59 versions of the same answer. We’d rather start somewhere more useful: with a better question. In fact, we host regular Democasts so we can hear your questions.
A good security question is usually
one you’d rather not answer.
Avoiding the question doesn’t make it go away. It just means someone else gets to answer it for you.
HARD QUESTIONS
Nobody agrees on these. Good.
Whether you run a SOC or work the front line, some debates never quite settle. That’s fine. We just think the arguing is the point.
Is it people or AI?
One side says AI is the only way to handle volume. The other says a machine can’t be held accountable for a call that matters. Both are right about something.
Does more data make you safer?
More visibility means fewer blind spots, so collect everything. But it’s mostly noise, right? There’s a thin line between coverage and clutter.
Where does expertise come from?
Buy the platform, and the expertise is built in. Or does the software only scale where judgment already exists? After all, you can’t buy your way to good analysts. Or can you?
Is good security slow by design?
Harden the environment and people adjust. But make it painful enough and your own users adapt faster than attackers. The friction might be self-defeating.
WHY EXPEL?
We started with a question, too.
Expel exists because a few people wouldn’t stop asking why security had to work the way everyone accepted. That question is still the job.