Home · Services · SOC, detection and response
SOC, detection and response

SIEM/SOAR architecture and value review

Log sources, ingestion, parsing, cost, detection and automation

What this assessment covers

Log sources, ingestion, parsing, cost, detection and automation

Main deliverables

  • Onboarding plan
  • use case backlog
  • cost actions

Standards & references

Primary assessment basis

NIST CSF 2.0ISO/IEC 27002

Supporting / conditional references

MITRE ATT&CKvendor guidance

Related assessments

TA-054

SOC maturity assessment

Coverage, staffing, triage, escalation, tooling and intelligence

SOC, detection and response