Detect attacks automatically
SIEM (Security Information Event Management)

How can we detect potential attacks automatically? A SIEM recognises unwanted activities in IT networks automatically and in the shortest possible time.

SIEM is the management solution of choice for identifying and defending against attacks on IT systems in order to prevent major damage.

 

 

What exactly is a SIEM?

Management solution for continuous, automated log and event monitoring.

Learn more

SIEM strategy/ concept

Define objectives and requirements for a rapid response to security incidents.

 

 

 

 

Learn more

Frameworks (Use-Cases/ Mitre Attack)

Recognise typical use cases (cyber attacks) in the company.

Learn more

SIEM with ConSecur

For ConSecur, operating a CDC is not just about maintaining and servicing software. For us, it means intensively analysing the IT landscapes to be monitored, the IT assets they contain and their communication relationships with each other so that the CDC infrastructure can work stably and effectively. Only a stable infrastructure allows us to implement the necessary SIEM logic that provides targeted alerts.

Before a CDC can be introduced, there are many questions that need to be clarified and set out in a concept. We create this SIEM concept together with your requirements and expectations and our many years of experience in the CDC environment.

Our services:

  • CDC strategy and concept
  • Development: Requirements analysis
  • Decision: Make or buy. Subsequent support for the implementation or outsourcing project.
  • Decision: Tool selection, sizing and implementation
  • Development: CDC processes and roles
  • Development: Use case framework (MITRE ATT&CK, risk-orientated, compliance)

Your benefits from using a SIEM system at a glance

  • Rapid detection of internal and external threats
  • Rapid response to incidents and prevention of damage
  • Fulfilment of legal requirements (compliance)
  • Storage of security-relevant events
  • Side effects
  • Improvement of the IT infrastructure
  • Standardised reporting
  • Consolidation of the log user interfaces
  • Support for audits

Frequently asked questions about the Cyber Defence Centre

FAQ

What exactly is a Cyber Defence Centre (CDC)?

A Cyber Defence Center monitors company infrastructures - 24/7 if required - and is responsible for the early detection, analysis and defence against cyber threats.

A SIEM is the heart of a cyber defence centre. It is a tool that can be used to identify threats in real time.

Learn more

For which companies is a Cyber Defence Centre suitable?

Depending on the size and complexity of the company infrastructure. Not necessarily required for small companies with few IT workstations.

Feel free to contact us

Do you have any questions about our cyber defence solutions or do you need advice on CDC?
Our team of experts will be happy to help!

Book a consultation

Stephan Ilic

CDC-Manager