The Vigil SOC community is growing, and so is the conversation around AI-native security operations. This blog is the place for that conversation.

What you’ll find here

This is a community-driven space. We’re not publishing polished marketing content — we’re sharing what we’re learning as we build and operate AI-native security systems in the open. That means:

  • Research & findings from detection engineering and threat analysis
  • Build logs from contributors working on agents, workflows, and integrations
  • Tutorials for getting started with Vigil and its components
  • Community updates on workshops, working sessions, and releases

How to contribute

Every post here comes from a pull request. If you have something worth sharing — a detection technique, a post-mortem, a tutorial, or a perspective on the future of security operations — we want to read it.

The process is straightforward:

  1. Fork the vigil-soc.github.io repository
  2. Add a markdown file to the _posts/ directory following the naming convention: YYYY-MM-DD-your-title.md
  3. Include the required front matter (title, date, author, category, excerpt)
  4. Open a pull request

Full instructions are in CONTRIBUTING.md.

What’s next

We have workshops, working sessions, and some interesting detection research in the pipeline. Watch the community page for upcoming events, and watch this space for write-ups.

If you’re building in the AI SOC space, we’d like to hear from you.

— The Vigil SOC Team