Common questions about our services, support, and how we work with clients.
Our MDR service provides 24/7 monitoring of your endpoints, cloud infrastructure, and network. Our analysts review alerts, investigate indicators of compromise, and escalate confirmed threats to your team with full context. You receive a monthly risk report and threat hunting reports.
Critical incidents are responded to 24/7/365. Our security operations center maintains continuous coverage, and on-call analysts are available for immediate escalation. You receive a direct escalation number during onboarding for urgent situations.
Typical onboarding spans 2-4 weeks depending on your environment complexity. This includes system assessment, sensor deployment, authentication integration, team training, and initial tuning. We work around your operational schedule to minimize disruption.
Yes. We provide security engineering and operational support for AWS, Azure, and GCP environments. We design for cloud-specific security controls, identity architecture, and can manage a hybrid on-premises and cloud infrastructure.
During an incident, our team manages the technical response while your designated contacts handle communication and decision-making. We follow pre-established escalation playbooks you help us develop during onboarding. Executive updates and forensic findings are delivered according to your preferred cadence.
We conduct regular restoration testing for critical systems—typically monthly or quarterly depending on your criticality matrix. We test actual recovery procedures, document findings, and provide evidence of successful restoration for compliance audits.
Contracts specify service scope (which systems and services), monitoring hours, response times by severity, monthly reporting cadence, team access and privileges required, and change management procedures. We also define escalation contacts and review meetings.
You receive monthly executive reports covering detection volume, response times, threat trends, and remediation recommendations. We also provide detailed technical reporting for your security and infrastructure teams, and can integrate with your existing dashboards or SOC tooling.
We provide standardized questionnaires tailored to risk level, conduct on-site assessments when needed, and help establish control baselines. We also track vendor remediation plans and report on closure status, reducing the burden on your procurement team.
Yes. Our practices align with HIPAA, PCI-DSS, SOC 2, and other regulatory frameworks. We help you maintain compliance evidence, prepare for audits, and document your security operating model to meet regulatory requirements.
During the discovery phase, we need access to your environment for assessment, documentation of existing tools and processes, and introduction to your key technical and business stakeholders. We handle the rest, but your participation in initial reviews is important for accuracy.
We work with clients on 1-year agreements with renewal options. Many of our clients engage us for multiple years as they build maturity. Some use us for specific projects (cloud migration, incident readiness) and transition to managed services based on results.
Reach out and we'll help clarify anything about our services or how we work.
Get in Touch