You Need Some Neurosparkle In Your SOC @FIRSTdotorg
You Need Some Neurosparkle In Your SOC  @FIRSTdotorg
Uploaded August 2026 | Updated September 2026, 11 hours ago
Carson Zimmerman (Microsoft, US), Megan Roddie-Fonesca (Datadog, US)

Neurodivergent minds bring brilliant pattern matching, insightful results, and glorious weirdness to your cybersecurity team. This talk shows how to harness it all — no pity party required. Expect laughs, lived experience, and practical strategies for building teams that truly work.

---

Carson Zimmerman is the Chief Architect of Microsoft’s Security Operations Center (SOC), where he leads strategic initiatives to advance global threat detection and response. He is co-author of 11 Strategies of a World-Class Cybersecurity Operations Center, a widely adopted guide available freely at mitre.org/11Strategies. Previously at MITRE, Carson’s career spans the full spectrum of SOC roles—from tier 1 analyst, to engineer, to investigator, to SOC team lead.

Megan Roddie‑Fonseca is a Security Engineer at Datadog specializing in digital forensics, incident response, and threat hunting. She holds multiple GIAC certifications and is a graduate of the SANS Technology Institute. Beyond her technical expertise, Megan advocates for mental health in the security community as CFO of Mental Health Hackers and mentors through Cyber Patriot. She has contributed to OpenSOC Blue Team CTF events at DEFCON, BSides, and other conferences, bringing a blend of hands‑on SOC experience and community leadership to her work.
You Need Some Neurosparkle In Your SOCNavigating the Threat Actor Maze: A Tool for Mapping Names, Families and InsightsStepping up the ENISAs role in Support of EU Vulnerability ServicesFrom Zero to Prepared: Implementing a Weekly Incident Response Drill ProgramIndicator Message eXchange (IMX): Enabling Structured Cyber Threat Intelligence SharingEpisode 57: Vijay Sarvepalli and Christopher Cullen, FIRSTCON26 SpeakersImproving Security Across Nations with FIRST: Éireann Leverett, FIRST LiaisonTechnical Recovery Plan (TRP) Exercise in a Cloud-Native Environment: Practical Lessons ...CVE Decaf: Brewing Better and More Actionable Data QualityLeveraging AI to Review and Strengthen Your Incident Response Plan: A Proof of ConceptWho Did It? Getting Started with Threat Actor ProfilingFIRSTCON26 Event Recap
FIRST |

You Need Some Neurosparkle In Your SOC

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER