Asset inventory
An alert means little unless you know what is being monitored. Servers, applications, domains and accounts are kept in one list with an owner and a criticality level.
We watch the logs and alerts from your systems against rules we define together in advance. Which event goes to whom, how quickly, and which step we take is written in the service scope.
An alert means little unless you know what is being monitored. Servers, applications, domains and accounts are kept in one list with an owner and a criticality level.
Off-the-shelf rule sets are usually either too quiet or too noisy. We tune the rules to what is normal for your business and reduce false alarms together in the first weeks.
Every event is recorded with when it was seen, who looked at it and how it was closed. At month end, trends, recurring events and recommendations are gathered in one report.
Every record leaving a source passes four stops; only the meaningful ones reach the team.
We clarify the scope, deliverables and acceptance criteria together in the first meeting. The written quote lists that scope item by item; if the scope changes, the quote is updated as a new version.
Each step ends with something concrete in your hands; we move on with your approval.
Together we put the goal, the boundaries and the acceptance criteria in writing.
We set up tools, access and settings, document the setup and hand it over to you.
We watch the agreed indicators regularly and notify you when something deviates.
We share what was done, the result and the next step in a plain report.
What is included, what we need from you, timing and payment, all in one place. The exact scope and price are set in the written quote.
Tell us what you need; we will define the scope together.
Tell us about your projectAutomatic alerts run continuously at every tier. Human review depends on the tier: in SOC-Lite an expert looks at alerts 24/7; in enterprise SOC the analyst team covers working hours and an on-call expert covers the rest. The scope is written into the contract.
Yes. Only systems you are authorised for and have approved in writing are assessed.
Scope, time window and methods are agreed in advance; risky steps require your separate approval.
Tell us what you need; we will define the scope together.