Listing Thumbnail

    Cloud Security Operations Center (CSOC) Service by MetanetX

     Info
    Sold by: MetanetX 
    MetanetX's cloud security control service that monitors, analyzes, and responds to cloud threats. It provides onboarding, tuning detection rules, incident response, and operational reporting.

    Overview

    1. AWS Cloud Optimized Security Control Services

    MetanetX Cloud Security Operations Center CSOC Service is a cloud security control service designed to continuously monitor security events in AWS environments, analyze threats, and support rapid escalation and response through the customer’s response process.

    MetanetX integrates SIEM and SOAR platforms with AWS security services such as Amazon GuardDuty, AWS Security Hub, AWS CloudTrail, AWS Config, Amazon Security Lake, and AWS WAF. Through this integration, MetanetX detects and analyzes security threats across customer cloud workloads, accounts, networks, and applications.

    Beyond basic event monitoring, MetanetX enhances cloud security visibility and response capability by providing environment specific detection scenarios, log collection validation, threat prioritization, response criteria, and operational reporting.

    1. Security Event Onboarding, Detection Rule Configuration, and Continuous Tuning

    At the initial stage of the service, MetanetX analyzes the customer’s AWS account structure, enabled security services, log collection scope, network architecture, and application environment. Based on this assessment, controlled logs and events are defined, and detection scenarios are configured according to the customer’s security policy and business characteristics.

    Key monitoring areas may include signs of AWS account compromise, privilege misuse, abnormal API calls, malicious IP communication, WAF detection events, network anomalies, vulnerable resource exposure, suspected data leakage, and security events linked to endpoints or SaaS services.

    During operation, MetanetX continuously improves detection accuracy by reviewing recurring false positives and excessive alerts. Detection rules and response procedures are also updated to address new threat patterns and changes in the customer environment.

    1. 24 by 365 Security Monitoring and Incident Response Support

    MetanetX provides 24 by 365 monitoring through its security control organization. For detected events, MetanetX performs initial analysis, false positive review, impact assessment, severity classification, customer notification, and escalation.

    Security events are handled according to pre agreed response processes and runbooks. MetanetX also supports incident response activities such as account blocking, access review, network blocking, evidence collection, log analysis, and recommendations for follow up actions.

    Key events and processing status are shared through regular reports and operational meetings, enabling customers to systematically review their security posture, major threats, recurring issues, and remediation tasks.

    1. Improving Cloud Security Operations Maturity

    MetanetX CSOC Service is designed to improve long term cloud security operations maturity, not only to provide short term monitoring.

    MetanetX helps customers enhance detection scenarios, expand log collection coverage, improve security policies, design automated response processes, and strengthen dashboards and reports. This enables customers to identify and respond to cloud threats more quickly and effectively.

    Through this service, customers can improve cloud security visibility, reduce response time for security events, ease the operational burden on internal security teams, and establish a reliable foundation for secure cloud business operations.

    Highlights

    • 24x365 monitoring service specialized for AWS cloud security: Continuously monitors and analyzes cloud threats based on key AWS security services such as AWS GuardDuty, Security Hub, CloudTrail, Config, Security Lake, and WAF.
    • Tune customized detection scenarios and rules for your environment: Establish and continuously advance detection standards for your environment, including account theft, abuse of authority, abnormal API calls, malicious communications, and suspected data leakage.
    • Provide incident response and operational reporting schemes: Improve customer visibility and responsiveness to cloud security operations through security event analysis, severity classification, escalation, response recommendations, and periodic reporting.

    Details

    Sold by

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. To get a custom quote for your needs, request a private offer.

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Support

    Vendor support

    MetaNetX operates a dedicated support channel for customers using the Cloud Security Operations Center (CSOC) Service. Service inquiries, technical assistance, requests and failure responses will be received and processed through the channel below.

    Email: cloudsoc@metanetx.com  Phone number: 02-3704-6644 Support Hours: 24*365 Support Control service operation: 24x365 security control can be provided depending on the scope of the contract

    After you purchase the service, MetaNetX's security control and cloud security experts provide the following support for your environment.
    1. Initial Onboarding Support: After the purchase is confirmed, a dedicated person will be assigned to conduct a kick-off meeting and analyze the customer's AWS account structure, security service usage, log collection scope, control requirements, and more.

    2. Establish security control scope and operating system: Define control targets, event classification criteria, severity criteria, notification and escalation procedures, and response runbooks for your environment.

    3. Configure log collection and detection scenarios: Configure security event collection schemes with AWS security services and SIEM/SOAR links, and apply rules and scenarios for cloud threat detection.

    4. 24x365 Monitoring Security Events: Always monitor security events according to the contracted scope of service, conducting surveillance and false analysis, impact determination, customer notification, and response recommendations.

    5. Operational reporting and remediation activities: regularly report key security events, repeat detection types, action status, remediation challenges, and continuously improve detection rules and response processes.

    6. Support for troubleshooting failures and issues: Support email and wire troubleshooting of technical issues within the scope of service delivery.