At this 12 months’s Cell World Congress in Barcelona, service suppliers confirmed up from all over the world to hitch over 115,000 attendees from 210 international locations. With greater than 3,000 exhibitors, sponsors, and companions on-site, the occasion showcased a transformative array of applied sciences—from the primary sensible functions of 6G and industrial IoT to autonomous, unified safety for an AI-native future.
Watch FNTV interview from the SOC
This marked the second 12 months of the mixed Safety and Community Operations Heart (S/NOC) on the world’s largest mobility and community convention. We leveraged the classes discovered from earlier SOC deployments, including the brand new Safe Firewall 6160which is designed particularly for AI-ready knowledge facilities.


Cisco’s S/NOC centered on innovation, unveiling a set of next-generation options, together with AI-driven predictive networking and autonomous safety operations. Our high-profile media bulletins and reside demonstrations of clever wi-fi infrastructure underscored a steadfast dedication to defining the following period of world digital communications.
The “One Cisco” technique reached its full potential on the world stage, seamlessly unifying networking, safety, observability, and Splunk’s data-driven insights to ship unparalleled enterprise outcomes. This holistic strategy demonstrated precisely how our prospects can construct sovereign, AI-ready knowledge facilities, optimize hyper-distributed workplaces, and obtain whole digital resilience in an more and more advanced panorama.


The core missions of the S/NOC at MWC 2026 have been:
- Shield: Safeguarding the community from inside and exterior threats.
- Educate: Participating attendees by way of immersive SOC excursions, insightful weblog content material, and our newest white paper.
- Innovate: Growing and implementing new integrations, workflows, and automations to set the usual for the long run.


Investigative Workflow
The firewall and Safe Entry DNS logs have been despatched to Splunk Cloud because the S / NOC platform. Detections from safety occasions have been correlated in XDR for Incident era; and Tier 1 triage / Tier 2 investigation. From tons of of 1000’s of alerts, dozens of Incidents have been created for investigation, ranked by precedence / impression. The beta Agentic AI ‘Immediate Assault Storyboard’ was used to assist triage Incidents, for instance this Excel file despatched within the clear contained an embedded PDF file, a standard technique to compromise networks in a phishing assault.


The Prime AI Suggestions included File Evaluation for affirmation. The Tier 1 / Tier 2 analysts have been empowered to pivot into Safe Malware Analytics to examination the file.


Evaluation of the file decided it was not malicious however was a leak of confidential info in clear textual content over the community.


The analyst in XDR had the flexibility to finish the Incident investigation or escalate for a deeper look in Splunk Enterprise Safety (ES) by a Tier 3 Menace Hunter/Incident Responder. The worklog of the XDR analyst, AI generated report and Observables (IP addresses, hash values, consumer knowledge, and so on.), have been robotically despatched to Splunk ES for Investigation, with a easy standing change in XDR.


You possibly can learn extra about this bi-directional integration within the weblog from the SOC group at Cisco Reside EMEA 2026 simply two weeks prior.
The Statistics
Statistics are at all times a well-liked a part of the SOC discussions. Beneath are the stats from this 12 months’s occasion.


| Yr | 2026 |
|---|---|
| Attendees (MWC) | 104,497 |
| Whole logs captured (Splunk) | 580 million |
| Whole distinctive gadgets (Firewall in Splunk) | 40,075 |
| Whole logs written to cloud (Splunk) | 4.3 TBs |
| Peak bandwidth utilization (Firewall) | 3.5 Gbps |
| DNS Requests (Cisco Safe Entry) | 245.5 million / 45.7k would have been blocked |
| Information despatched for malware evaluation (Firewall) | 5 despatched to Safe Malware Analytics
Information have been in comparison with a recognized file database previous to submission |
SOC Findings and Classes Discovered
Dive deeper into the innovation and technical particulars with the next blogs, written immediately by the engineers on the bottom within the MWC SOC:
Acknowledgements
Our appreciation to the engineers whose experience made the first Cell World Congress 2026 SNOC a hit.


Community Operations Heart Liaisons
Cisco Safety and Splunk SOC Group
- Splunk Enterprise Integrations: Christian Cloutier, with Ivan Berlinson
- Firewall / Cloud Management: Christopher Grabowski, with Adam Kilgore
- Consumer Safety Suite / DNS: Apostolos Kouloukourgiotis
- XDR / Duo Listing: Adi Sankar
We’d love to listen to what you suppose! Ask a query and keep related with Cisco Safety on social media.
Cisco Safety Social Media
