Managed Detection & Response packages
Bronze
- Centralised security monitoring system (SIEM)
- Correlation and automated evaluation of logs
- Access to security information & event management (SIEM) solution
silver
- Central security monitoring system (SIEM)
- Correlation and automated evaluation of logs
- Access to Security Information & Event Management (SIEM) solution
-
- Level-1: Triage of alerts from the security testing platform
- 24x7 hotline support: acceptance and processing of service requests and changes
-
- Service reporting: monthly, automated
Gold
- Central security monitoring system (SIEM)
- Correlation and automated evaluation of logs
- Access to Security Information & Event Management (SIEM) solution
-
- Level-1: Triage of alarms from the security testing platform
- 24x7 hotline support: Acceptance and processing of service requests and changes
-
- Level-2: Incident Response based on findings from Level-1
- Threat Hunting: Proactive
-
- Definition of individual use cases (5 / month)
-
- Service Reporting: Monthly meeting with SOC Analyst
Platinum
- Central security monitoring system (SIEM)
- Correlation and automated evaluation of logs
- Access to Security Information & Event Management (SIEM) solution
-
- Level-1: Triage of alerts from the security testing platform
- 24x7 hotline support: acceptance and processing of service requests and changes
-
- Level-2: Incident response based on the findings from Level-1
- Threat hunting: Proactive and industry-specific
-
- Definition of individual use cases (20 / month)
-
- Incident Respose Retainer & Digital Forensics
-
- Service Reporting: Monthly meeting with SOC Analyst + SOC Manager
Reliable protection
Reliable protection of all digital assets through continuous monitoring of the IT infrastructure.
Minimised attack surface
Modern technologies minimise the attack surface and shorten the response time in the event of security incidents.
Selection
MDR based on AlienVault
MDR based on Microsoft Sentinel