SOC Foundation (8×5)
From Rp 45 million / month
- Wazuh deployment, or onboarding to your existing SIEM
- Baseline detection use cases and an operations dashboard
- Triage and escalation runbook
- Weekly reports and a monthly review
SOC & security monitoring
No SIEM yet? We build the SOC on Wazuh. Already running a SIEM or EDR? We monitor and improve it where it is, with no platform change. The focus is a SOC process that is ready to run with measurable KPIs, not just installing software.
01
01
SOC design, monitoring coverage, roles and escalation paths.
02
Installation and normalisation of priority log sources, in the cloud or on premises.
03
If you already run Microsoft Sentinel, Google SecOps (Chronicle), FortiSIEM, Elastic, or EDR/XDR such as Palo Alto Cortex XDR, SentinelOne and Trellix, we monitor, review and tune it on that platform.
04
Detection rules mapped to MITRE ATT&CK for your organisation’s risks.
05
Rule tuning so analysts focus on the alerts that matter.
06
Triage, containment and escalation procedures for critical scenarios.
07
MTTA, MTTR, detection coverage and response effectiveness.
02
Prices depend on log volume, number of assets, hours of coverage and the complexity of your cloud or on-premises environment.
From Rp 45 million / month
From Rp 85 million / month
By proposal
03
04
Centralised threat monitoring, faster detection and a measurable incident response process, without commercial SIEM licence fees.
Yes. We work in Microsoft Sentinel, Google SecOps (Chronicle), FortiSIEM, Elastic, or EDR/XDR such as Palo Alto Cortex XDR, SentinelOne and Trellix. We can monitor alerts on your platform, tidy up detection use cases, reduce false positives and write response playbooks, with no migration needed.
Yes. It is designed both for organisations starting a SOC and for those maturing an existing one.
It depends on the scope: the number of assets, the variety of log sources, the detection use cases needed and how ready the infrastructure is. We give a time estimate after scoping.
Yes. Every package includes triage, containment and escalation runbooks and playbooks so your team responds consistently.
05
We support you from the initial assessment, through a Wazuh deployment or strengthening your existing SIEM, to day-to-day incident response.
Book a SOC discussionRelated services