The Good Tech Companies - Fig Grows Its Platform to Cover Every Stage of SecOps Engineering, Making Resilience the Default
Episode Date: July 22, 2026This story was originally published on HackerNoon at: https://hackernoon.com/fig-grows-its-platform-to-cover-every-stage-of-secops-engineering-making-resilience-the-default. ... Fig launches a complete CI/CD platform for SecOps, helping security teams build, test, deploy, and continuously validate detections and security infrastructure. Check more stories related to undefined at: https://hackernoon.com/c/undefined. You can also check exclusive content about #secops-cicd-platform, #security-operations-engineer, #detection-engineering-platform, #secops-infrastructure, #siem-migration-automation, #fig-security-platform, #security-data-lineage-graph, #good-company, and more. This story was written by: @jonstojanjournalist. Learn more about this writer by checking @jonstojanjournalist's about page, and for more stories, please visit hackernoon.com. Fig has expanded its platform into a complete engineering lifecycle for Security Operations, introducing CI/CD workflows for detection engineering, security configurations, and infrastructure changes. Built on a deterministic security data lineage graph, the platform enables teams to simulate, validate, deploy, and continuously monitor SecOps changes while accelerating SIEM migrations and improving operational resilience.
Transcript
Discussion (0)
This audio is presented by Hacker Noon, where anyone can learn anything about any technology.
FIG grows its platform to cover every stage of SECOPs engineering, making resilience the default,
by John Stoy and journalist.
FIG grows its platform to cover every stage of SECOP's engineering, making resilience the default
state security operations teams are under constant pressure to keep pace with an environment
that changes every day.
New data sources, cloud services, detections, and automations are continually introduced,
while upstream systems evolve without warning. Even seemingly minor updates can disrupt detection
pipelines, creating gaps that leave organizations vulnerable to threats. To address that challenge,
FIG has announced what it describes as the first complete engineering life cycle for security
operations, secops, giving security teams the ability to build, deploy, and continuously monitor
changes using a workflow modeled after modern software development. The company says the platform
introduces the first true C, CD approach for SECOPs, allowing engineers to develop, chip,
and observe security operations changes with greater confidence. Bringing modern engineering practices to the
society. At its core, FIG is giving SECOps something it has never had, a complete engineering
life cycle for detections and configurations. Rather than manually connecting multiple systems and
workflows, engineers describe the change they want, while FIG analyzes the live security environment and
generates a proposed implementation. According to FIG, every proposed change is simulated and
tested before reaching production. Once validated, the update can be deployed with version control
and rollback capabilities, while continuous observability verifies that both existing and newly
introduced detection flows continue operating as intended. The approach aims to bring the same
development principles that software engineering teams have relied on for years into the
Security Operations Center, SOC, where infrastructure changes often.
often carry significant operational risk.
Data lineage is the foundation.
The platform is built on what FIG describes as a
deterministic graph of security data lineage.
This graph maps every detection, data source,
and the connections between them into a single flow,
providing a comprehensive view of how security operations
function across the environment.
Because the platform understands relationships
throughout the SECOP stack,
FIG can analyze infrastructure in detail before proposing changes.
The company positions this
visibility as the foundation for maintaining resilience, even a substream or downstream systems
evolve over time. Continuous verification is intended to ensure that detection pipelines remain
operational after every deployment, reducing the likelihood that infrastructure changes silently
disrupts security coverage. Accelerating security operations workflows. Beyond managing day-to-day
changes, the new capabilities are designed to accelerate several common SECOPs tasks. According to
to FIG, security teams can convert threat reports into detections and queries much faster,
enabling organizations to respond to emerging risks without waiting through lengthy engineering
cycles. The platform is also intended to simplify seam migrations by allowing organizations
to complete transitions in weeks rather than months while maintaining operational security throughout
the process. FIG also says teams gain greater control over the data plane,
enabling them tow manage data ingestion and storage costs without affecting live detections.
The company summarizes the model simply, security engineers provide the detection logic while the
platform handles the underlying operational complexity. Customer perspective, Jamie Hancock,
head of security operations and engineering at App Loven, described the impact the platform has had on
his team's workflow. With Figwe build and ship accurate detection changes in minutes instead of weeks,
without the endless plumbing, said Jamie Hancock, head of security operations and engineering at App Loven.
My team builds with a confident.
we've never had, and yeah, we've even started, vibe parsing. The comment reflects one of the
central themes of the announcement, reducing the engineering overhead traditionally associated with
maintaining modern security operations. Building toward more resilient security operations. The launch
builds on FIG's broader focus on security operations resilience, Anorea the company has emphasized
since emerging from stealth. Earlier this year, the company announced $38 million in funding from
Team 8, 1011 Ventures, and Crosspoint Capital, became a finalist in the RSAC innovation sandbox,
and said its platform has been deployed across dozens of Fortune 500 organizations.
Founded by veterans of Google SecOps and C-EMPLIFI, FIG says its platform was developed
to address operational failures that often occur as security environments grow more complex.
Rather than treating infrastructure changes as isolated events, the company aims to ensure
every modification is designed with context, validated before deployment, and continuously monitored
afterward. Security teams shouldn't have to choose between moving quickly and maintaining confidence
in their SECOP infrastructure, said Gal Sheffir, co-founder and CEOF FIG. Greater than FIG gives
SecOps engineers the same modern engineering workflow that software greater than developers have long
relied on. They can design changes with complete context, greater than prove those changes work before
deployment, and continuously verify that their greater than security operations remain resilient
as their environments evolve. This story was distributed as a release by John Stoyen under
Hackernoon Business Blogging Program. Thank you for listening to this Hackernoon story,
read by artificial intelligence. Visit hackernoon.com to read, write, learn and publish.
