CYBER PULSE SOC ARMED · 04:21 UTC
SOC AS A SERVICE · 24×7 · APAC + EMEA

DETECT.
DEFEND.
RECOVER.

Cyber Pulse is a managed detection and response practice for mid-market companies that have outgrown a single sysadmin but can't justify a 24×7 in-house SOC. We watch your perimeter while you ship.

2.4m
Median time-to-contain
472
Endpoints under watch
99.97%
SLA over 12 mo.
  SOC-CONSOLE · LIVERT-FEED
02 · ACTIVE THREAT MIX

Today's noise
vs. tomorrow's breach.

A live read on what our analysts have triaged in the last 24 hours, by class. The bar throbs to caseload — bigger pulse means more in queue.

CLASS 01 · CREDENTIAL

Phish-mail
burst.

Synthetic Microsoft 365 login pages targeting finance & ops mailboxes. Three families in rotation this week.

+128 caught · 24hP1
CLASS 02 · INFRA

Anomalous
egress.

Network DLP catching Postgres dumps to non-AU regions. Most are misconfigured backup jobs — the ones that aren't, aren't.

14 containedP2
CLASS 03 · IDENTITY

Token
replay.

Stolen refresh tokens from infostealer logs. We rotate on first replay attempt and brief the user before they notice.

62 rotationsP1
CLASS 04 · SUPPLY

Vendor
drift.

Third-party SaaS with newly-published CVEs. We map your stack to the feed and chase your vendors so you don't have to.

22 advisoriesP3
03 · LIVE MAP

Where the fire is
right now.

Each pulse is a real event our platform fingerprinted in the last 30 minutes. Stays on screen for 90 seconds, then fades.

WORLD-FEED · LIVE● 4 ACTIVE
P95 LATENCY · 142 msNODES · 47
P1
Brute-force on bastion · sg-prod
12,840 attempts · 38 IPs · BLOCKED
42s ago
P2
SAML token replay · finance-app
User: m.kovac · ROTATED
2m ago
P3
CVE-2026-1471 advisory · vendor
Patched window opens 04:00 AET
12m ago
OK
Failover drill · au-syd-2
RTO 47s · within budget
26m ago
P2
Anomalous egress · backup-svc
52 GB · S3 → us-west-2 · MISCONFIG
38m ago
P1
Phish landing · fake o365 portal
Domain takedown filed · ESCALATED
54m ago
04 · CAPABILITIES

Six muscles.
One nervous system.

Our analysts work a single console — not nine vendor portals. Detection, response, and recovery feed each other in real time.

A · DETECT

Behavioural
EDR & NDR.

SentinelOne + Vectra-class telemetry stitched into a single timeline. We tune the signal-to-noise ratio per environment, not per logo.

EndpointNetworkCloudIdentity
B · RESPOND

Live
SOC analysts.

Three-tier 24×7 follow-the-sun. Tier 1 triages within 90 seconds; tier 3 takes containment decisions on your behalf, on your runbook.

SOARRunbooksContainmentComms
C · HUNT

Quarterly
threat hunts.

We commit a senior to your environment for two weeks per quarter to chase the things signatures miss. Reports written, not auto-generated.

HypothesisMITREPurple-team
D · DRILL

Game-day
simulations.

We run actual incident drills against actual systems on a Tuesday morning. You, your CFO and your CTO sit in the room. Your runbook gets sharper.

TabletopLive-fireComms-drill
E · RECOVER

Restore
without drama.

Quarterly tested backups, immutable snapshots, and a documented RTO/RPO per app. We rehearse it; your insurer will love that.

ImmutableRTO ≤ 1hInsurer-ready
F · COMPLY

ISO 27001
without a binder.

Evidence collected continuously, mapped to ISO/SOC 2/IRAP, and presented in a clean auditor portal — not exported to PDF the night before.

ISO 27001SOC 2IRAPEssential 8
05 · STACK · WHAT WE WATCH
AWS
Azure
GCP
CrowdStrike
Okta
Entra
GitHub
Atlassian
06 · NUMBERS · 30D

What we're
actually doing this month.

Numbers refresh nightly from our SIEM. Sparklines are real. We do not curate them.

07 · PLANS

Three deployments.
One nervous system.

All plans include analyst access, monthly readouts, and quarterly drills.

A · WATCH

$2.4k/month · up to 50 endpoints

  • EDR + log monitoring
  • SOC tier 1+2 · 24×7
  • Quarterly hunt
  • Monthly readout
Deploy WATCH
B · GUARD

$6.8k/month · up to 250 endpoints

  • Everything in WATCH
  • NDR + identity telemetry
  • Game-day per quarter
  • Containment auto-runbooks
  • ISO 27001 evidence portal
Deploy GUARD
C · STRIKE

$14k+/month · enterprise

  • Everything in GUARD
  • Embedded senior analyst
  • Red-team retainer
  • Insurer / IRAP audit support
Apply for STRIKE
08 · GET ARMED

The first 72 hours
are on us.

We'll deploy our agents, ingest your logs, and produce a posture report. If you don't continue, you keep the report.

← Back to portfolio