Organizations are struggling to timely detect & respond to cyber security incidents. This could be due to issues with technology, people or available intelligence. Managed detect and respond will allow you to focus on your core business while we focus on the security incidents within your organization. Managed detect and respond expertise leverages our security analysts to continuously monitor your IT environment by analyzing data streams, correlating events and detecting suspicious behavior within your organization.
In the first phase tools are deployed and the following is an example of the tooling we support: Windows Defender ATP, Sentinel and other ATP services provided by Microsoft. Our technology experts build an overall architecture for security monitoring and advise what features will be deployed for an optimal coverage.
In a second phase our the service delivery model will be defined, so that our managed detect and respond service is integrated within your organization. In order to hit the ground running, we have a predefined delivery model which will be tailored to your organization and plugged into existing processes at your end (e.g. vulnerability management, incident response process,)
Once the architecture has been defined and a service model has been agreed upon, we will help you implement the proposed architecture and start delivering the service. While “running” the service, our analysts will continuously analyze your environment for security incidents.
Managed 'detect and respond' continuously monitors your security exposure, our analysts will manage your assist you in detecting and responding on real security incidents.
Detect & Response. Starting from €25 per endpoint per month, with a minimum of 100 endpoints
- Monthly event report
- Continuous monitoring
- Respond or immediate mitigation
- Excluding Windows Defender ATP license