Additional Info

CompanySangfor Technologies
Websitehttps://www.sangfor.com/
Company size (employees)5,000 to 9,999
Headquarters RegionAsia
Type of solutionSoftware

Overview

Introducing Cyber Guardian MDR (Managed Detection and Response) service, a Sangfor branded service that leverages human and machine intelligence to help organizations detect and respond to security threats.

– Combine state-of-the-art AI-powered threat detection technologies with the most up-to-date global threat intelligence to detect and identify known and unknown threats
– Employ human logic and professional scepticism in threat analysis to provide context-relevant threat notifications and alerts
– Enhance the effectiveness and value of security operations by leveraging the know-how and expertise of seasoned security professionals to respond to threats
– Gain peace of mind with continuous, round-the-clock threat detection and response operations

This service aims to deliver contextual relevance to our customers, that is, providing accurate and relevant threat notifications and response assistance when credible threats are identified in the customer’s environment. This is achieved through our two-stage service process.

– Pre-service Onboarding: Assessing the environment to understand the context in which the service will be rendered.
– Service Operations: Continuous threat detection and response operations including the necessary reporting and communications between customers and our SOC team.

Key Capabilities / Features

- Threat Analysis and Identification
24x7 threat detection, analysis and verification, leveraging AI-enabled detection capabilities and experienced security professionals to accurately identify and analyse threats and provide notifications promptly.
- Threat Response and Remediation
Context-relevant threat response assistance is rendered remotely by our team of security experts to help customers manage and eradicate detected threats. Covers emergency containment assistance, detection and impact analysis, traceability investigations and hardening recommendations.
- Device Management
Regular assessments and reviews of our security technologies to optimize their effectiveness at securing your environment.
- Asset Tracking
Initial and regular reviews of in-scope assets to track and identify unauthorized changes and provide valuable context to the service.
- Expert Services
A dedicated security professional is assigned to every customer to ensure continuity in communications relating to threat notification, response assistance as well as any related advisory or recommendations included in the service. Quarterly threat-hunting exercises are also conducted by your dedicated security professional.
- Customer Portal
Gain access to a real-time security overview of your environment, including open and closed cases, security view of monitored assets as well as access to regular reports.


How we are different

- Human Machine Intelligence​
Leverage advanced technology and experienced security expertise​
Reduce false positives and get informed on actual, validated threats​
- Custom Use Cases​
Purpose-built use cases tailored to the monitored environment​
Ensure threat detection and response are relevant and bring value to the organization​
- Context-Relevant Response​
Response assistance based on actual customer environment​
Actual actionable advice and not standard responses and documents​
- Threat Intelligence Advisory​
Latest threat intelligence relevant to the customer’s environment​
Get notified on the latest vulnerabilities and viruses and their impact to the environment​
- Proven Track Record
Optimized and finely-tuned platforms and processes for best service quality​
Years of experience serving more than 1000 customers, and analyzing approx. 1.2 billion alerts per day ​