# Analysts

Published articles for Analysts.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## SNAP payment error detection: how Elastic helps US states beat the FY2028 penalty

DevFeed: [SNAP payment error detection: how Elastic helps US states beat the FY2028 penalty](<https://devfeed.tech/articles/snap-payment-error-detection-how-elastic-helps-us-states-beat-the-fy2028-penalty-42104.md>)

Original publisher: [Read original article](<https://www.elastic.co/blog/snap-error-fy2028-penalty>)

Author: Adam Vielbaum

Published: 2026-09-18T00:00:00Z

Content type: article

Language: en

Sources: [Elastic Blog - Elasticsearch, Kibana, and ELK Stack](<https://devfeed.tech/sources/elastic-blog-elasticsearch-kibana-and-elk-stack.md>)

Topics: [Machine Learning & Artificial Intelligence](<https://devfeed.tech/topics/machine-learning-artificial-intelligence.md>), [data](<https://devfeed.tech/topics/data.md>), [audit](<https://devfeed.tech/topics/audit.md>)

Tags: [alerting-fraud-detection-anomaly-detection-agentic-ai](<https://devfeed.tech/tags/alerting-fraud-detection-anomaly-detection-agentic-ai.md>), [analysts](<https://devfeed.tech/tags/analysts.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [data](<https://devfeed.tech/tags/data.md>), [elastic](<https://devfeed.tech/tags/elastic.md>), [fraud](<https://devfeed.tech/tags/fraud.md>), [government](<https://devfeed.tech/tags/government.md>), [machine-learning](<https://devfeed.tech/tags/machine-learning.md>), [payment](<https://devfeed.tech/tags/payment.md>), [platform](<https://devfeed.tech/tags/platform.md>), [platform-security-observability](<https://devfeed.tech/tags/platform-security-observability.md>), [rules](<https://devfeed.tech/tags/rules.md>), [search](<https://devfeed.tech/tags/search.md>), [siem](<https://devfeed.tech/tags/siem.md>)

### AI overview

Elastic describes a layered approach to detecting SNAP payment errors and fraud. The approach combines rules, machine learning, and conversational investigation on a platform that indexes case data, while distinguishing eligibility mistakes from fraud and identifying changes across cases over time.

### Source excerpt

Detecting SNAP fraud requires a layered approach, where rules catch what agencies know to look for, machine learning surfaces what rules miss, and conversational investigation helps analysts act on what the data reveals. Elastic delivers all three.

## Beyond the data: what a Business Analyst does at Nubank

DevFeed: [Beyond the data: what a Business Analyst does at Nubank](<https://devfeed.tech/articles/beyond-the-data-what-a-business-analyst-does-at-nubank-41431.md>)

Original publisher: [Read original article](<https://building.nu.com/beyond-the-data-what-a-business-analyst-does-at-nubank/>)

Author: Nubank Editorial

Published: 2026-09-15T12:14:41Z

Content type: opinion

Language: en

Sources: [Nubank](<https://devfeed.tech/sources/nubank.md>)

Topics: [Data analysis](<https://devfeed.tech/topics/data-analysis.md>), [decision-making](<https://devfeed.tech/topics/decision-making.md>), [dashboards](<https://devfeed.tech/topics/dashboards.md>), [Tech Lead](<https://devfeed.tech/topics/tech-lead.md>), [User Experience](<https://devfeed.tech/topics/user-experience.md>), [Finance](<https://devfeed.tech/topics/finance.md>)

Tags: [analysts](<https://devfeed.tech/tags/analysts.md>), [business-analyst](<https://devfeed.tech/tags/business-analyst.md>), [dashboards](<https://devfeed.tech/tags/dashboards.md>), [data](<https://devfeed.tech/tags/data.md>), [data-analysis](<https://devfeed.tech/tags/data-analysis.md>), [data-analytics](<https://devfeed.tech/tags/data-analytics.md>), [data-science-machine-learning](<https://devfeed.tech/tags/data-science-machine-learning.md>), [decision-making](<https://devfeed.tech/tags/decision-making.md>), [experimentation](<https://devfeed.tech/tags/experimentation.md>), [meetings](<https://devfeed.tech/tags/meetings.md>), [tech-lead](<https://devfeed.tech/tags/tech-lead.md>), [user-experience](<https://devfeed.tech/tags/user-experience.md>)

### AI overview

This article explains how Business Analysts at Nubank connect data analysis, business context, and experimentation to product decisions. It describes their work in multidisciplinary squads, including investigating metrics, evaluating trade-offs, and making decisions under uncertainty.

### Source excerpt

Understand how Business Analysts at Nubank use data, context, and experimentation to guide product decisions. The post Beyond the data: what a Business Analyst does at Nubank appeared first on Building Nubank.

## The only perfect Endpoint Prevention and Response (EPR) score in 2026 belongs to Elastic

DevFeed: [The only perfect Endpoint Prevention and Response (EPR) score in 2026 belongs to Elastic](<https://devfeed.tech/articles/the-only-perfect-endpoint-prevention-and-response-epr-score-in-2026-belongs-to-elastic-26916.md>)

Original publisher: [Read original article](<https://www.elastic.co/blog/av-comparatives-epr-test-2026>)

Author: Mia LaVada

Published: 2026-09-15T00:00:00Z

Content type: article

Language: en

Sources: [Elastic Blog - Elasticsearch, Kibana, and ELK Stack](<https://devfeed.tech/sources/elastic-blog-elasticsearch-kibana-and-elk-stack.md>)

Topics: [Endpoint Security & XDR](<https://devfeed.tech/topics/endpoint-security-xdr.md>), [Testing](<https://devfeed.tech/topics/testing.md>), [Security](<https://devfeed.tech/topics/security.md>), [SOC](<https://devfeed.tech/topics/soc.md>)

Tags: [2026](<https://devfeed.tech/tags/2026.md>), [alert-fatigue](<https://devfeed.tech/tags/alert-fatigue.md>), [analysts](<https://devfeed.tech/tags/analysts.md>), [investigation-incident-response-security-compliance-security-analytics-xdr](<https://devfeed.tech/tags/investigation-incident-response-security-compliance-security-analytics-xdr.md>), [obfuscation](<https://devfeed.tech/tags/obfuscation.md>), [persistence](<https://devfeed.tech/tags/persistence.md>), [protection](<https://devfeed.tech/tags/protection.md>), [security](<https://devfeed.tech/tags/security.md>), [security-endpoint-security](<https://devfeed.tech/tags/security-endpoint-security.md>), [soc](<https://devfeed.tech/tags/soc.md>), [techniques](<https://devfeed.tech/tags/techniques.md>), [testing](<https://devfeed.tech/tags/testing.md>), [tooling](<https://devfeed.tech/tags/tooling.md>), [usb](<https://devfeed.tech/tags/usb.md>)

### AI overview

Elastic describes its results in the 2026 AV-Comparatives Endpoint Prevention and Response test, reporting 100% protection scores, zero false alerts, and the lowest modeled operational footprint among tested products. The article explains that Elastic stopped all 50 attack scenarios at the initial phase.

### Source excerpt

Elastic sits at the very top of this year's AV-Comparatives' CyberRisk Quadrant within the 2026 Endpoint Prevention and Response (EPR) test with the highest protection scores at 100%. Learn more.

## Seeking symmetry during ATT&CK® season: How to harness today's diverse analyst and tester landscape to paint a security masterpiece

DevFeed: [Seeking symmetry during ATT&CK® season: How to harness today's diverse analyst and tester landscape to paint a security masterpiece](<https://devfeed.tech/articles/seeking-symmetry-during-att-ck-season-how-to-harness-today-s-diverse-analyst-and-tester-landscape-to-paint-a-security-masterpiece-8340.md>)

Original publisher: [Read original article](<https://www.welivesecurity.com/en/business-security/seeking-symmetry-attck-season-harness-todays-diverse-analyst-tester-landscape-paint-security-masterpiece/>)

Author: Márk Szabó James Shepperd Ben Tudor

Published: 2025-12-10T15:03:51Z

Content type: article

Language: en

Sources: [WeLiveSecurity](<https://devfeed.tech/sources/welivesecurity.md>)

Topics: [Endpoint Security & XDR](<https://devfeed.tech/topics/endpoint-security-xdr.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Resilience](<https://devfeed.tech/topics/resilience.md>), [Detection engineering](<https://devfeed.tech/topics/detection-engineering.md>), [Threat Research](<https://devfeed.tech/topics/threat-research.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [analysts](<https://devfeed.tech/tags/analysts.md>), [article](<https://devfeed.tech/tags/article.md>), [attacks](<https://devfeed.tech/tags/attacks.md>), [business-security](<https://devfeed.tech/tags/business-security.md>), [ciso](<https://devfeed.tech/tags/ciso.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [endpoint-security](<https://devfeed.tech/tags/endpoint-security.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [incident](<https://devfeed.tech/tags/incident.md>), [industry](<https://devfeed.tech/tags/industry.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [practitioner](<https://devfeed.tech/tags/practitioner.md>), [report](<https://devfeed.tech/tags/report.md>), [resilience](<https://devfeed.tech/tags/resilience.md>), [security](<https://devfeed.tech/tags/security.md>), [testing](<https://devfeed.tech/tags/testing.md>)

### AI overview

The article explains how security practitioners can interpret and connect cybersecurity reports and tests from analyst firms and independent testing labs. It focuses on endpoint security, including product evaluations, feature testing, broader market analyses, and assessments against known advanced adversary attacks, to support more informed protection-stack and purchasing decisions.

### Source excerpt

Interpreting the vast cybersecurity vendor landscape through the lens of industry analysts and testing authorities can immensely enhance your cyber-resilience.

## Gremlin's unofficial reliability track for Gartner IOCS 2025

DevFeed: [Gremlin's unofficial reliability track for Gartner IOCS 2025](<https://devfeed.tech/articles/gremlin-s-unofficial-reliability-track-for-gartner-iocs-2025-11581.md>)

Original publisher: [Read original article](<https://www.gremlin.com/blog/gremlins-unofficial-reliability-track-for-gartner-iocs-2025>)

Author: Gavin Cahill

Published: 2025-12-01T00:00:00Z

Content type: article

Language: en

Sources: [Gremlin Blog](<https://devfeed.tech/sources/gremlin-blog.md>)

Topics: [SRE](<https://devfeed.tech/topics/sre.md>), [incident](<https://devfeed.tech/topics/incident.md>), [Critical Infrastructure](<https://devfeed.tech/topics/critical-infrastructure.md>), [AI Agent](<https://devfeed.tech/topics/ai-agent.md>), [genai](<https://devfeed.tech/topics/genai.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [agentic-ai](<https://devfeed.tech/tags/agentic-ai.md>), [analysts](<https://devfeed.tech/tags/analysts.md>), [critical-infrastructure](<https://devfeed.tech/tags/critical-infrastructure.md>), [gartner](<https://devfeed.tech/tags/gartner.md>), [incident](<https://devfeed.tech/tags/incident.md>), [site-reliability](<https://devfeed.tech/tags/site-reliability.md>), [talks](<https://devfeed.tech/tags/talks.md>), [team-topologies](<https://devfeed.tech/tags/team-topologies.md>)

### AI overview

Gremlin presents an unofficial reliability-focused track for Gartner IOCS 2025, highlighting sessions on software-update risks, critical dependencies, SRE team structures, and the future of reliability in an AI agent world.

### Source excerpt

Check out the Gremlin-curated unofficial track of reliability talks at Gartner IOCS 2025.

## 4 Chaos Engineering recommendations from Gartner

DevFeed: [4 Chaos Engineering recommendations from Gartner](<https://devfeed.tech/articles/4-chaos-engineering-recommendations-from-gartner-11557.md>)

Original publisher: [Read original article](<https://www.gremlin.com/blog/4-chaos-engineering-recommendations-from-gartner>)

Author: Gavin Cahill

Published: 2025-07-11T00:00:00Z

Content type: article

Language: en

Sources: [Gremlin Blog](<https://devfeed.tech/sources/gremlin-blog.md>)

Topics: [Chaos Engineering](<https://devfeed.tech/topics/chaos-engineering.md>), [Resilience](<https://devfeed.tech/topics/resilience.md>), [genai](<https://devfeed.tech/topics/genai.md>), [Testing](<https://devfeed.tech/topics/testing.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [analysts](<https://devfeed.tech/tags/analysts.md>), [chaos-engineering](<https://devfeed.tech/tags/chaos-engineering.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [generative-ai](<https://devfeed.tech/tags/generative-ai.md>), [resilience](<https://devfeed.tech/tags/resilience.md>), [test](<https://devfeed.tech/tags/test.md>), [testing](<https://devfeed.tech/tags/testing.md>)

### AI overview

The article presents four Gartner recommendations for adopting Chaos Engineering, including testing generative AI API fallback patterns and using scenario-based GameDays to evaluate outage response and identify reliability risks.

### Source excerpt

Gartner recently published their 2025 Hype Cycle for Infrastructure Platforms. Here are four key recommendations from them for adopting Chaos Engineering.

## How to build effective runbooks for your SOC

DevFeed: [How to build effective runbooks for your SOC](<https://devfeed.tech/articles/how-to-build-effective-runbooks-for-your-soc-11804.md>)

Original publisher: [Read original article](<https://incident.io/blog/how-to-build-effective-runbooks-for-your-soc>)

Author: Tom Wentworth

Published: 2025-03-11T20:16:00Z

Content type: tutorial

Language: en

Sources: [The incident.io Blog](<https://devfeed.tech/sources/the-incident-io-blog.md>)

Topics: [Security Operations Center](<https://devfeed.tech/topics/security-operations-center.md>), [Incident response](<https://devfeed.tech/topics/incident-response.md>), [Security](<https://devfeed.tech/topics/security.md>)

Tags: [analysts](<https://devfeed.tech/tags/analysts.md>), [audits](<https://devfeed.tech/tags/audits.md>), [documentation](<https://devfeed.tech/tags/documentation.md>), [guide](<https://devfeed.tech/tags/guide.md>), [guides](<https://devfeed.tech/tags/guides.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [incident](<https://devfeed.tech/tags/incident.md>), [incident-channel](<https://devfeed.tech/tags/incident-channel.md>), [incident-management](<https://devfeed.tech/tags/incident-management.md>), [incident-response](<https://devfeed.tech/tags/incident-response.md>), [onboarding](<https://devfeed.tech/tags/onboarding.md>), [outage](<https://devfeed.tech/tags/outage.md>), [post-mortem](<https://devfeed.tech/tags/post-mortem.md>), [security-operations-center](<https://devfeed.tech/tags/security-operations-center.md>), [slack-incident](<https://devfeed.tech/tags/slack-incident.md>), [soc](<https://devfeed.tech/tags/soc.md>), [training](<https://devfeed.tech/tags/training.md>)

### AI overview

A practical guide to creating effective SOC runbooks that standardize incident response, reduce errors, accelerate resolution and analyst onboarding, and support audits and continuous improvement.

### Source excerpt

Learn how to create clear, practical runbooks that help your SOC respond faster and with fewer errors. A step-by-step guide for building, maintaining, and improving runbooks that actually get used.

## Reducing false positives with automated SIEM investigations from Elastic and Tines

DevFeed: [Reducing false positives with automated SIEM investigations from Elastic and Tines](<https://devfeed.tech/articles/reducing-false-positives-with-automated-siem-investigations-from-elastic-and-tines-4823.md>)

Original publisher: [Read original article](<https://www.elastic.co/blog/false-positives-automated-siem-investigations-elastic-tines>)

Author: Aaron Jewitt

Published: 2024-05-31T00:00:00Z

Content type: article

Language: en

Sources: [Elastic Blog - Elasticsearch, Kibana, and ELK Stack](<https://devfeed.tech/sources/elastic-blog-elasticsearch-kibana-and-elk-stack.md>)

Topics: [SIEM, Security](<https://devfeed.tech/topics/siem-security.md>), [SOC](<https://devfeed.tech/topics/soc.md>), [Security](<https://devfeed.tech/topics/security.md>), [elasticsearch](<https://devfeed.tech/topics/elasticsearch.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Software as a service](<https://devfeed.tech/topics/saas.md>), [API](<https://devfeed.tech/topics/api.md>)

Tags: [analysts](<https://devfeed.tech/tags/analysts.md>), [api](<https://devfeed.tech/tags/api.md>), [automated-threat-protection-anomaly-detection-cybersecurity-network-visibility-security-analytic](<https://devfeed.tech/tags/automated-threat-protection-anomaly-detection-cybersecurity-network-visibility-security-analytic.md>), [aws](<https://devfeed.tech/tags/aws.md>), [blog-post](<https://devfeed.tech/tags/blog-post.md>), [elastic](<https://devfeed.tech/tags/elastic.md>), [endpoint-security-security](<https://devfeed.tech/tags/endpoint-security-security.md>), [false-positives](<https://devfeed.tech/tags/false-positives.md>), [logs](<https://devfeed.tech/tags/logs.md>), [security](<https://devfeed.tech/tags/security.md>), [server](<https://devfeed.tech/tags/server.md>), [soc](<https://devfeed.tech/tags/soc.md>), [token](<https://devfeed.tech/tags/token.md>), [workflows](<https://devfeed.tech/tags/workflows.md>)

### AI overview

Elastic's InfoSec team uses Tines to automate initial SIEM alert investigations, helping reduce false positives and analyst fatigue. The workflow queries Elasticsearch using alert data such as source.ip, closes alerts associated with trusted devices or known benign activity, and escalates cases that cannot be resolved automatically.

### Source excerpt

Discover how Elastic's InfoSec team saves thousands of hours per month by using Tines to automate SIEM alert investigations while reducing false positives and detect compromised accounts.

## Snyk users don't have to worry about NVD delays

DevFeed: [Snyk users don't have to worry about NVD delays](<https://devfeed.tech/articles/snyk-users-don-t-have-to-worry-about-nvd-delays-8176.md>)

Original publisher: [Read original article](<https://snyk.io/blog/snyk-users-dont-have-to-worry-about-nvd-delays/>)

Author: Hadas Bloom; Tal Dromi

Published: 2024-03-13T17:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [snyk-open-source](<https://devfeed.tech/topics/snyk-open-source.md>), [Security](<https://devfeed.tech/topics/security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Database](<https://devfeed.tech/topics/database.md>), [Machine Learning, Security Attacks](<https://devfeed.tech/topics/machine-learning-security-attacks.md>)

Tags: [analysts](<https://devfeed.tech/tags/analysts.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [cves](<https://devfeed.tech/tags/cves.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [machine-learning](<https://devfeed.tech/tags/machine-learning.md>), [nvd](<https://devfeed.tech/tags/nvd.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk](<https://devfeed.tech/tags/snyk.md>), [snyk-security-intel](<https://devfeed.tech/tags/snyk-security-intel.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>)

### AI overview

The article explains why delays in the National Vulnerability Database (NVD) do not compromise Snyk's security intelligence. Snyk's Vulnerability Database is maintained through analyst review, proprietary research, multiple vulnerability sources, and AI-supported validation, so Snyk open-source advisories can be assessed independently of--and sometimes before--NVD analysis.

### Source excerpt

Learn why NVD delays do not compromise the integrity or efficacy of Snyk's security intelligence, including the Snyk Vulnerability Database.

## Merge Data Challenge Results

DevFeed: [Merge Data Challenge Results](<https://devfeed.tech/articles/merge-data-challenge-results-17043.md>)

Original publisher: [Read original article](<https://blog.ethereum.org/en/2022/12/05/merge-data-challenge-results>)

Author: Rodrigo Vasquez

Published: 2022-12-05T00:00:00Z

Content type: release

Language: en

Sources: [Ethereum Foundation Blog](<https://devfeed.tech/sources/ethereum-foundation-blog.md>)

Topics: [Ethereum](<https://devfeed.tech/topics/ethereum.md>), [data](<https://devfeed.tech/topics/data.md>), [Monitoring](<https://devfeed.tech/topics/monitoring.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>)

Tags: [analysis](<https://devfeed.tech/tags/analysis.md>), [analysts](<https://devfeed.tech/tags/analysts.md>), [ecosystem-support-program](<https://devfeed.tech/tags/ecosystem-support-program.md>), [ethereum](<https://devfeed.tech/tags/ethereum.md>), [event](<https://devfeed.tech/tags/event.md>), [monitoring](<https://devfeed.tech/tags/monitoring.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [performance-analysis](<https://devfeed.tech/tags/performance-analysis.md>)

### AI overview

The Ethereum Foundation announces the winners of the Merge Data Challenge, which ran for about nine weeks around the Merge. Participants submitted 45 blog posts containing data, analyses, tools, and visualizations, with continuing work needed to monitor and understand Ethereum's proof-of-stake network.

### Source excerpt

The Ethereum Foundation is excited to announce the winners of the Merge Data Challenge 🐼. The challenge ran for ~9 weeks surrounding the Merge, allowing for data analysts to gather and review information both before and after the big event. Participants submitted a treasure trove of data and analysis...