kyndryl

Kyndryl launched its first Cyber Defense Operations Center (CDOC) in Bengaluru, India, positioning the new hub as a command center that unifies network operations (NetOps) and security operations (SecOps) under a single operating model.

The IT infrastructure services company is aiming to collapse the divide between network and security operations with the center, which will provide continuous monitoring, threat detection, incident response, and network performance management for global customers.

According to Kyndryl’s 2025 Readiness Report, only 31% of organizations are prepared for external business risks, with technology complexity cited as a primary barrier to scaling AI initiatives. The center reflects mounting enterprise pressure to maintain always-on digital services while managing that rising complexity, amplified by the rise of agentic AI, autonomous systems operating across cloud, data center, and edge environments.

Agentic AI blurs traditional traffic patterns and increases the attack surface, according to Paul Savill, global cybersecurity, resiliency, network, and edge practice leader at Kyndryl. And in that environment, siloed NetOps and SecOps teams can slow detection and response times.

“As AI adoption surges and hybrid IT environments become more distributed, enterprises face faster, more intelligent cyber risks – and a growing shortage of skilled talent to manage them,” Savill said in a statement.

Breaking down operational silos

The CDOC is designed to create a single operational view across networking and security telemetry. Integrated into Kyndryl Bridge, the company’s AI-powered open integration platform, the center aggregates insights from across customer environments to improve visibility and accelerate coordinated response.

Kyndryl said the facility combines advisory, design, implementation, and managed services into one operating framework. Key capabilities include:

  • AI-enabled assessment services: The Kyndryl Agentic AI Framework is embedded into network security assessments to identify operational and security gaps and prioritize remediation.

  • Role-based dashboards: Persona-driven views tailored for executives, security teams, network engineers, and incident commanders aim to streamline collaboration and decision-making.

  • Automated end-to-end operations: Integrated runbooks, playbooks, and consolidated toolsets are intended to reduce manual handoffs and alert fatigue, while supporting zero-trust architectures.

The integrated model builds on Kyndryl’s existing global footprint of security operations centers (SOCs) and network operations centers (NOCs) across North America, Europe, Asia-Pacific, and Latin America. By formally merging the two domains into a unified command structure, the company is aligning with a broader industry trend toward convergence – especially as secure access service edge (SASE), edge networking, and cloud-native security architectures demand tighter coordination.