Security incidents are an unavoidable part of daily reality for modern organizations, and their early detection along with the rapid implementation of appropriate reactive measures is essential to minimize the damage caused. Proper evaluation of detected incidents requires constant monitoring of the protected network and a high level of expertise on the part of SOC security monitoring center operators and analysts. Correct determination of the causes of the incident, its detailed investigation and effective coordination of the response to it then places high demands on the knowledge and skills of the CSIRT response team members.
Given the aforementioned high demands on the expertise of members of surveillance centres and response teams - and the associated not inconsiderable costs of running these units - many organisations find it more convenient to secure professional SOC and CSIRT services from a third party than to build these teams within their internal organisational structures. It is for these organisations that the Security Operations service is aimed.
As part of this service, our specialists from the security monitoring centre monitor, detect and evaluate incidents in the customer infrastructure and forward the incidents to the ALEF CSIRT team for detailed analysis. Following their investigation, the team proposes, implements and coordinates further reactive actions according to procedures specific to the customer environment.