Skip to main content
Blue Team
  • Main role: Responsible for defending an organisation's technological infrastructure, implementing security measures to protect it against attacks.
  • Objective: Minimise the impact of cyber attacks by responding to incidents and strengthening the organisation's defences.
  • Activities: Network monitoring, incident response, implementation of preventive security measures.
  • Certification: Certified SOC Analyst. Certification Number: ECC6871920435.

Creation/implementation of a SOC and staff training

A Security Operations Centre is a centralised team or function within an organisation dedicated to improving cybersecurity. Its main objective is to prevent, detect and respond to cyber threats. SOC teams continuously monitor the organisation's environment, analyse security data, investigate incidents and manage regulatory compliance.

Key benefits of having a SOC
Continuous monitoring, threat intelligence, threat detection, incident response, root cause investigation, regulatory compliance management, and resource optimisation.
Tools
SIEM: Splunk Enterprise (paid), WAZUH (free), AlienVault OSSIM (free), ELK (free). IDS: Snort, Suricata. IPS: OSSEC. Honeypot: T-Pod (free)

Implementation of Encryptors

Encryptors are incredibly important tools for keeping data safe. When files are encrypted, they are completely unreadable without the encryption key, so if someone steals them, they cannot actually do anything with them. This will help the company choose between hardware encryptors and software encryptors.

Tools
KeePass Password Safe (free), KeePassXC Password Manager (free), 1Password (paid), LastPass (paid), BitLocker (free)

IDS NXT for video surveillance

IDS NXT is the comprehensive, easy-to-use AI-based machine vision system. It consists of programmable smart cameras and a highly versatile software environment. The system covers the entire workflow, from image capture and labelling for network training to the creation of applications for evaluation and execution. This means that artificial intelligence image processing can be used in a wide variety of applications and sectors, even without prior knowledge of deep learning or application programming.

Tools
Hikvision iDS-7732NXI-I4/X(C) camera, Spynel-X camera system for marine applications, Basic MK2 camera

Hardening (Bastion and fortification equipment)

System hardening is a process of strengthening a system's default security by applying principles such as: Minimum exposure, Defence in depth, Least privilege. Furthermore, network bastioning involves identifying and protecting the most critical points in a network. Each critical point is known as a bastion and is implemented for users who have access to the network. In each bastion, firewalls, network security rules and auditing of implemented changes are configured.

Environments
Windows, Linux, iOS, Android.
Assistance in the stages of hardening
The company will be assisted in all aspects of the bastion, from its planning to its proper operation.
Guidelines that can be implemented
CCN-CERT.CNI and CIS BENCHMARKS

No-obligation quote

You can request a no-obligation quote.

  • Creation/implementation of a SOC and staff training
  • Implementation of Encryptors
  • IDS NXT for video surveillance
  • Hardening