zuruck zur Themenseite

Articles and background information on the topic

Security Operations Center module

Andreas Mühlbauer,

When cyber attacks reach production

Adlon is further developing its Security Operations Center and adding another module to the existing Managed SOC for Microsoft 365 environments (based on Managed XDR): Managed SOC Advanced.

The management of Adlon: Sebastian Eberle (left) and Sven Hillebrecht. © Adlon

In addition to cloud and identity scenarios, the service now also protects production-related infrastructures, networks and OT systems. This allows companies to benefit from end-to-end detection and response to security incidents: From the digital workplace to production.

Why a second SOC module is now necessary

Companies are faced with the challenge of securing hybrid IT landscapes and increasingly networked production systems at the same time. Attack scenarios no longer only affect employees in the office, but also machines, control systems and internal networks. With the new module, Adlon is responding to this development and specifically closing the gap between Microsoft 365 Security and the protection of infrastructure, networks and applications.

Advertisement

The Managed SOC Standard provides structured detection and assessment of security incidents in Microsoft 365 environments, covering endpoints, identities, cloud apps and Office 365 applications. The response is both automated and manual; possible measures include device isolation, user blocking and mail quarantine. All activities are documented in a traceable manner and evaluated on a monthly basis. Support in the event of escalation is unlimited and comes at no additional cost.

Enhanced security for infrastructure and OT

With Managed SOC Advanced, Adlon now also monitors networks, production-related systems and company applications. The service detects atypical communication patterns between clients and servers, IT and OT, prioritizes security-relevant events and takes coordinated response measures. This enables companies to reliably protect their value chains from attacks with even greater visibility.

Automation and AI as a digital employee 24/7

Both SOC modules use AI-supported analysis methods and automated response mechanisms to detect and contain attacks more quickly. Microsoft Defender brings behavior-based anomaly detection, threat intelligence data and correlations to the Microsoft Security Graph. Adlon supplements this basis with customer-specific detection rules and response options. UEBA optionally extends the analysis to include user- and system-based pattern recognition.

"The expansion allows us to offer our customers a SOC that covers the entire digital workplace - from the cloud to production. In this way, we not only secure data and identities, but also operational value creation," explains Sven Hillebrecht, General Manager at Adlon. "Many SOC services only issue warnings. We react as a team, together with the customer. This continues to apply without additional costs for incident response and now, for the first time, also for scenarios outside the M365 environment," emphasizes Tizian Kohler, Head of Security at Adlon.

One SOC - two modules and full flexibility

With the introduction of Managed SOC Advanced, Adlon is focusing on a modular security concept. Companies can expand their Security Operations Center according to their needs and have cloud environments as well as infrastructure and OT environments protected centrally.

  • Xing Icon
  • LinkedIn Icon
Advertisement
Back to topic page
Advertisement

You might also be interested in

Advertisement

NIS2

From risk to resilience

NIS2 significantly increases the requirements for industrial security concepts. In addition to cyber resilience, physical access protection is becoming increasingly important.

read more...
Advertisement
Advertisement
Advertisement
Advertisement
Advertisement
Advertisement

Safety

Protect Ethernet interfaces

Pilz is expanding its portfolio of operating and signaling devices with the control element PIT oe ETH. It is equipped with an Ethernet port that can be activated and protects freely accessible Ethernet interfaces in industry against unauthorized...

read more...
Subscribe to our newsletter
Advertisement
Back to home