24/7 detection and response, run by our analysts from Doha.
Few organisations can staff a security operations centre around the clock. We run it for you: monitoring your environment, investigating alerts, containing threats and reporting on what happened, using your existing security tools or ours.
Deployment, policy tuning and day-to-day management of your endpoint and extended detection platform.
Deployment and policy configuration
Exclusion and false-positive management
Agent coverage and health monitoring
05
Managed Firewall and Network Security
Rule-base management, change control, health monitoring and periodic policy reviews.
Rule-base management and change control
Health and availability monitoring
Periodic rule reviews and clean-up
06
Continuous Vulnerability Management
Ongoing scanning, risk-based prioritisation and tracked remediation across infrastructure and cloud.
Scheduled authenticated scanning
Prioritisation by exploitability and exposure
Remediation tracking and trend reporting
Outcomes
What you get
24/7 coverage
Defined triage and escalation SLAs
Monthly executive and technical reports
How it works
Our approach
01
Onboard
Agree scope, log sources, escalation contacts and reporting.
02
Tune
Baseline your environment, build use cases and cut the noise.
03
Operate
24/7 monitoring, investigation and response.
04
Improve
Monthly reviews and new detections as threats change.
Standards we work to
Standards we work to
MITRE ATT&CKNIST CSFNCSA National Information AssuranceQCBISO/IEC 27001
Questions
Frequently asked
Can you work with the security tools we already have?
Yes. We integrate with your existing SIEM, EDR and firewall platforms, and recommend or deploy tools only where there are gaps.
Where is our data handled?
Data handling and residency are agreed with you during onboarding, so they meet your regulatory requirements.
What happens when you detect an incident?
Analysts investigate, contain where you have authorised it, and escalate to your named contacts. Serious incidents move straight into our incident response process.
How long does onboarding take?
It depends on the number of log sources and tools. We agree a plan with milestones at the start.