Home > Services > Security Operations

igxglobal collects security information from specified security devices on an ongoing basis. This information is communicated via Syslog securely and with encryption. Upon collection this information will be normalize it and present the client with a overview of their security status through a client portal site which is updated hourly. The role of the igxglobal SOC will be that of the Security Liaison and the client that of Risk Manager as defined in the Operating Security White Paper.
- Threat Analysis - igxglobal will also analyze the clients threat status with the unique approach defined in the Operating Security White Paper on a basis specified in the client agreement.A client may agree to threat status analysis in varying increment form mostly based on their ability to respond to recommendations and confirm actionable response.
- Threat Reporting - igxglobal analyze the threat data and present the client with a report that separates Noise events, questionable activities (possible noise) as well as threats with a recommendation of action. The client will verify and spell out which response scenarios and what activity they want implemented. At this point a client may choose to implement the solution themselves or if the managed client igxglobal will implement the policy change.
- Threat Categorization - igxglobal will deem events as Noise, Suspicious or Threat based on the face value and existing understanding of the client environment. Any research or investigation into event activity, application or behavior is billable at the client's hourly rate.
|