Everything an organisation needs to be defended

Ten services organised in three directions: detecting and handling incidents, preventing them, and complying with regulations. They can be contracted individually or as a package, depending on the organisation's needs.

Detection and responsePrevention and preparednessCompliance and strategy

How we respond to a security incident

Seven stages, from the first alert to the final report. We tailor them with each client, before they are needed.

  1. Detection and notification

    Events from endpoint protection, network equipment, logs and cloud services reach our analysts, who confirm whether a real incident is under way.

  2. Triage

    Alerts are classified by severity and potential impact, so that critical ones are handled immediately and false alarms do not consume the team's time.

  3. Investigation

    We establish which systems and data are affected, how access was obtained and since when. Findings are documented as we go.

  4. Containment

    We limit the spread of the incident by isolating affected workstations, accounts or network segments, in coordination with the client's team.

  5. Eradication

    We remove the attacker's access, persistence mechanisms and any malicious components left in the systems.

  6. Recovery

    We restore systems from verified backups and confirm with the client that normal operation has resumed.

  7. Post-incident review

    We produce a report describing the course of the incident, its causes and the measures recommended to prevent a recurrence.

Contact

To discuss your organisation's needs, call us or write to us. We reply within the same business day.