AI-Powered SOC: Why Security Operations Need to Evolve in the Age of AI-Driven Threats
A phishing email can now be written with near-perfect grammar, a fake executive voice can sound familiar enough to trigger trust,
Oleh Patricia A. Pramono • Studio 1080, Diterbitkan pada Desember 29, 2025
As 2025 comes to a close, we see how cybersecurity has now become a boardroom conversation, a regulatory concern, a business differentiator, and increasingly, a shared responsibility across all industries.
At Cisometric, 2025 wasn’t just about responding to cyber incidents or tracking threats. It was about building understanding, strengthening capability, and growing together with the ecosystem, from business leaders and policymakers to the new generation of talents preparing to enter the cyber workforce.
So, in the spirit of a year-end wrap-up, here’s a look back at what 2025 looked like for us, the conversations we sparked, the communities we engaged, and the lessons that stayed with us.
With #CyberTalks, we turned regulation and strategy into in-depth discussions.
Data protection and privacy continued to dominate cybersecurity conversations in Indonesia this year, especially with the increasing enforcement expectations around the Personal Data Protection Law (UU PDP).
In response, Cisometric organized two CyberTalks sessions in 2025 with our partners, designed not just to explain regulations, but to unpack what they actually mean in practice.
#CyberTalks – Managing Data Privacy: Principles and Practice – May 2025
This session brought together legal and cybersecurity perspectives, featuring:
The discussion centered on bridging theory and execution of how privacy principles translate into real governance, risk management, and operational controls inside organizations.
Read the full recap and insights: #Cybertalks: Managing Data Privacy — Principles and Practice
#CyberTalks – Data Privacy at Scale: From Strategy to Systems – October 2025
As organizations grow, privacy challenges also multiply. This session explored how companies can operationalize privacy at scale, featuring:
What stood out was a shared realization: privacy maturity is not about tools alone, but about leadership, alignment, and long-term commitment.
Read the full recap and insights: Cybertalks: Data Privacy at Scale – From Strategy to Systems, Supported by OneTrust
Together with Biznet Gio Cloud, we organized a Cybersecurity Webinar Series, running from October through December 2025. Across six webinar sessions, we covered a wide range of foundational and advanced cybersecurity topics, from phishing awareness and ransomware to red teaming, packet capture, and secure code evaluation.
These sessions weren’t designed only for seasoned professionals. They were intentionally inclusive, welcoming:
The consistent turnout reaffirmed something we strongly believe in, that cybersecurity education works best when it’s practical, accessible, and continuous.

IndoSec 2025
In October, Cisometric took part in IndoSec 2025, held on 13–14 October 2025 at The Ritz-Carlton Jakarta.
Beyond being part of the exhibition, our CEO Hana Abriyansyah also joined a panel discussion titled: Cybersecurity 2.0: The Road Ahead in AI, Automation, and Evolving Threat Models.
The panel explored a critical tension that defined much of 2025, discussing how AI is accelerating security capabilities, but it is also expanding the attack surface.
This mirrors broader global discussions, where AI-driven attacks, deepfake social engineering, and automated exploitation are becoming increasingly common (ENISA, 2024; World Economic Forum, 2025).
Read the full recap and insights: Highlights from IndoSec 2025: Redefining Cybersecurity in the AI Era
National Cybersecurity Connect 2025
Later in the same month, Cisometric also participated in National Cybersecurity Connect 2025, held on 29–30 October 2025 at Hotel Bidakara, Jakarta, in collaboration with PT PERKOM.
At this event:
A recurring theme across discussions revolved around how technology alone cannot solve trust problems. Governance, ethics, and human judgment remain essential.
Read the full recap and insights: Cisometric at NCSC 2025: How AI Is Reshaping the Future of Cyber Defense
One of the most rewarding things we saw in 2025 was how learning at the academy started to come full circle.
Cisometric Academy continued to grow this year, not just in size, but in clarity of purpose.
The academy was designed as a long-term learning pipeline, where students don’t just gain skills, but gradually grow into practitioners, collaborators, and eventually, contributors to the cybersecurity ecosystem itself.
In 2025, that vision started to take form more clearly. Cisometric Academy Batch 2 and Batch 3 ran with a focus on two core tracks:
Across both batches:
But one of the clearest signs of growth this year was seeing how learning began to come in full circle:
For example, one of our students transitioned directly into a full-time role after graduating. Another joined as an intern, then continued as a full-time team member. This progression matters, as it creates:
What mattered was continuity. The academy was no longer just a place to enter, but a place to return to, contribute to, and grow within. This dynamic created a learning environment that felt more open and engaging. Students were more willing to ask questions, test ideas, and learn from mistakes, because the people guiding them had once been in the same position.
For us, this became one of the strongest validations of Cisometric Academy’s approach.
Read more: Learning and Growing: Testimonials from Cisometric Academy Students
As Cisometric Academy matured, learning became less about memorizing theories and more about preparing students for the kind of security work they would actually face.
1. Offensive Security: Learning Through Structured Practice
In the Offensive Security program, hands-on learning has always been central. But starting from Batch 2 this year, that hands-on approach became more structured with the introduction of CisoLabs.
Through this platform, student work could be tracked consistently over time. Progress was visible, performance could be reviewed, and students gained a clearer sense of how they were developing relative to expectations. This helped them build discipline, manage priorities, and understand that cybersecurity work often requires persistence as much as technical skill.
That structure led naturally into the capstone project. Students were required to conduct penetration testing on a minimum of five IPs provided by instructors. Under guidance, they went through the full assessment flow, from reconnaissance and testing to analysis and reporting. The emphasis was on understanding what real assessments feel like, how findings are documented, and how technical decisions must be explained clearly.
2. IS Audit: Learning to Think Beyond Tools
For the IS Audit program, the learning focus was different, but equally deliberate.
Here, the capstone project emphasized how security is evaluated, justified, and communicated in an audit context. Students were trained to think beyond tools and controls, and instead focus on:
This helped reinforce an important perspective that cybersecurity is not only about identifying weaknesses, but about translating technical realities into insights that organizations can act on as well.
Read more: Inside Cisometric Academy: A Closer Look at the Programs
Across both programs, teaching methods and assessment criteria were continuously refined throughout the year.
These updates were driven by changes in the threat environment, industry expectations, and feedback from previous batches, ensuring the academy remains relevant as cybersecurity itself continues to evolve.
By the end of 2025, four students had continued into internship roles at Cisometric, carrying forward not just technical skills, but an understanding of how cybersecurity work fits into real organizational contexts.
Looking back, 2025 reminded us of a few important truths:
As we prepare to enter 2026, Cisometric remains committed to:
To everyone who joined our events, webinars, classrooms, panels, and conversations this year, thank you for being part of the journey.
Here’s to another year of learning, resilience, and building a safer digital future together. Through collaboration, education, and real-world impact, we remain committed to securing tomorrow, starting with what we do today.
As we move into 2026, there’s more to explore, discuss, and build together. Follow our social media for updates, insights, and perspectives on how organizations can stay resilient in the year ahead:
LinkedIn: Cisometric
Instagram: @cisometric
Youtube: @Cisometric
A phishing email can now be written with near-perfect grammar, a fake executive voice can sound familiar enough to trigger trust,
Linux is widely used across modern business infrastructure. It runs on cloud servers, workstations, network appliances, security tools, cont...
The Federal Bureau of Investigation (FBI) Atlanta Field Office and the Indonesian National Police (INP) have successfully concluded a multi-...
Cari Artikel Berdasarkan Kategori
Kami menggunakan cookie untuk meningkatkan pengalaman menjelajah, menganalisis lalu lintas situs, dan menyajikan konten yang relevan. Pilih cookie mana yang Anda izinkan. Kebijakan Privasi