Axendit logo

SOC & SIEM Implementation (SOCaaS)

hand shake

We offer contracted Security Operation Center as a Service for customers seeking 24/7/365 availability monitoring of their critical IT assets and networks and we can also setup and implement SOCs Infrastructure for organizations in need of one.

We have a strong track record building SOCs & CERTs – Our experts took part in creation, development, training and operations of the following SOCs/CERTs around the world.
A few of the many are:

  • CERT.TG / Togo under the Cyber Defense Africa Joint Venture Project,
  • GEANT CERT / United Kingdom
  • CERT Polska, MIL-CERT, CERT.GOV.PL, CERT BIK, CERT ENERGA, CERT mBank, CERT OPL, CERT PKO BP, CERT PSE, CERTALL, ComCERT.PL, PGE CERT / Poland
  • EGI CSIRT, KPN-CERT / Netherlands

Some of our standard SOC offerings include:
  • Service Level Agreements – 24/7/365 Availability
  • Remote Incident Response
  • On-Site Incident Response
  • Cyber Threat Intelligence
  • Vulnerability Scanning
  • Real time threat analysis & Response
  • 24/7/365 security incident handling

The human team that participates in our projects is made up of Security Engineers with certification in different areas of technology led by Certified CISA (Certified Information Systems Auditors) and/or CISM (Certified Information Security Managers)

SOC – Certifications

Our Security Operations Center has AENOR certifications that guarantee proper operation, assuring our clients of adequate compliance with set quality levels.
Our SOC is managed by CISA and CISM certified personnel.

SOC – Flexible Operating Procedures

Our SOC operations are supported by ITIL procedures, defined to minimize response time and guarantee results.
Our intervention services for security incidents are registered and supervised according to established internal and external SLAs.
More than 60 internal KPI´s are established to guarantee the correct operations of the SOC

SOC – Advanced Tools

Platforms from multiple manufacturers aimed at detection, analysis and mitigation of security incidents

Alien Vault, Nessus, Nagios, PRTG, Wazuh, Paladion, Whatsup Gold, Kali tools, iTOP, Watchguard

  • Ticketing systems with CMDB control
  • SNMP Management System
  • SIEM platforms
  • Vulnerability Analysis Systems
  • Pentesting toolbox
  • Secured logs repositories
  • Threat hunting platforms
  • OSINT (Open-Source Intelligence) tools
  • Feeds from different manufacturers & organizations
  • Source code analyzers


SIEM IMPLEMENTATION (Security Information & Events Management)

Our SIEM Implementation is one of our of best and most requested services as we help organizations who need a platform to aggregate logs and monitor the events of their many endpoints and to assist with proper and quick detection of incidents.
Our SIEM Implementation includes:
  • Delivery of QRadar / NetWitness / Splunk / Wazuh and/or other SIEM solutions together with hardware appliances for the estimated sizing required (number of events per second - EPS). We are vendor Agnostic when it comes to which SIEM we implement.
  • Implementation service at client/customer side
  • Fine tunning of existing correlation rules
  • On-site SIEM trainings for administrators and analysts.
  • Hypercare assistance in running the SIEM
  • Warranty service for 3 Years
cyber

Here's why organizations reach out to us for our SIEM implementation.

  • Rapid detection of security events and incidents
  • Propose improvements to the architecture and configuration of the ICT systems necessary to protect customer information services
  • Assist in decision-making for the application of security policy changes required to protect operational continuity
  • Assist with the commitment of IT security