In the event of a security incident, our Rapid Response Force is available 24/7.
Formind’s SOC services enable companies to monitor their information systems (using some of the most powerful SIEM, EDR and NDR solutions on the market) and detect attacks extremely quickly, while eliminating false positives.
20 %
of companies are victims of ransomware.
*CESIN 2023 barometer
Attacks are becoming more complex, and hacker networks are multiplying and becoming more organized. It is becoming increasingly difficult to detect these attacks using conventional SOC tools and operating methods.
An SOC is set up using a tiered approach based on the scope of coverage: endpoints (EDR), infrastructure equipment (SIEM), SaaS security tools (API connector), network (NDR); while limiting the number of technologies to harness their full potential.
Deploying the Formind SOC enables you to obtain initial results in less than 2 months, compared to a standard SOC which often takes 6 months. As these results are accessible via the Security Cockpit, you are informed in real time of the status of your alerts and incidents, so you can take appropriate protective action.
The Formind SOC orchestrates your security solutions and enables you to :
Adaptability
The Formind SOC can interface with the majority of technologies on the market. We can interface our tools to yours (Azure Sentinel, Splunk, Logpoint, Elastic,…), EDR (Microsoft, Crowdstrike, Sentinel One, Harfanglab, Cybereason, Trellix, CheckPoint,…) thanks to our expertise in the various solutions on the market and the design of the Formind SOC architecture.
True positive billing
Invoicing is based on the number of security incidents handled by the SOC. This approach has several advantages :
Proximity
Often, the findings of other SOC partners’ services highlight a lack of visibility on alert and incident management, and a lack of scalability to take account of changes in the customer’s organization. Formind is convinced of the need for its SOC experts to support you in your threat monitoring and detection issues, thanks to regular, operational monitoring points.
To achieve this, we have decided to set up bi-monthly steering committees and operational improvement committees (30 minutes every two weeks).
Our aim: to help your teams improve their security skills and enhance the protection of your information systems.
SOC Next Gen
The concept of SOC as Code, industrialized within our SOC, responds to several issues: the constant evolution of the threat, obtaining ROI and concrete, rapid results. To this end, SOC as code enables :
Quick and easy integration:
Thanks to proven technological choices and developments, SOC deployment is packaged and adapts to all environments:
A unified view of alerts :
You haven’t deployed an SOC yet? Formind does it for you, with the best technologies on the market and access to the associated expertise: Microsoft Sentinel as your alert orchestrator and an EDR adapted to your environment.
Do you have existing technologies? Formind concatenate on all your alerts in the Azure Sentinel orchestrator and pilots your security tools.
A SOC project is perceived as long and costly. How does SOC Formind meet this challenge?
We can rapidly deploy our SOC using your technologies, or by deploying proven technologies that are easy to integrate. We scale the service as precisely as possible, using automation to reduce SOC costs.
How do I set up an SOC?
We recommend a gradual increase in technologies, starting with EDR, followed by infrastructure log collection, NDR and DLP.
Do I own anything in this SOC service?
Our standard SOC allows you to work in your own environment, including your O365 tenant, and with your own security tools, or those deployed by us.
Do you commit to remediation when incidents are detected?
We are committed to tracking the entire incident: from notification as an alert in our SIEM to incident closure.
Our experts can provide you with ongoing support for your cyber issues. Do you have a question? You’ve come to the right place, and we’ll get back to you within 24 hours!