Many SOCs collect a lot of data but detect little that matters. We map your detection coverage against the attack techniques relevant to your sector and test how alerts are triaged and escalated.
For outsourced SOCs, we also review the contract, service levels and reporting so you can hold the provider to account.
Why it matters
How the engagement runs
- 1InterviewSOC team, management and provider
- 2MapLog sources and detections against techniques
- 3TestSample alerts and escalation paths
- 4PlanMaturity scoring and roadmap
What you receive
- SOC maturity report
- Detection coverage map
- Use-case improvement backlog
- Target operating model