
CANCOM’s Co-Managed SOC: The art of sharing. For greater transparency, expertise and security
CANCOM SOC: Outsource your IT security entirely?
If you have to take your car to the TÜV – “Pickerl!” – then you’ll probably have everything done there. Check the brakes, test the lights , measure the exhaust emissions. After all, you’ve probably neither completed a car mechanic’s apprenticeship nor have a brake test bench at home (it takes up an awful lot of space , after all). Or you might say: I’ll just get to grips with the technology myself and save some of the TÜV fees. It’s a lot of work, but it’s possible. As far as your IT and IT security are concerned, you’re in a very similar situation: You won’t be able to manage your IT security entirely on your own, unless your company is well versed in IT. However, you can certainly handle some of the complex tasks yourself , provided you have the necessary resources. This is a particularly good option if maintaining control is important to you and you’d like to know exactly what your SOC is up to. Until now, companies have generally outsourced their IT security entirely. The reasons are obvious: a lack of in-house technical expertise, no specialist staff, and a lack of time and organisational resources. However, more and more companies now want insight into the SOC managed by a service provider such as CANCOM. What actually goes on there? What about incidents? What about our data? Greater transparency is required, and a co-managed SOC from CANCOM makes this possible.
CANCOM’s co-managed SOC
CANCOM takes charge of the management, operation and security of individual IT areas or entire infrastructures. This is tailored to your company’s needs. It’s about technology on the one hand, but also about how services can be strategically developed and optimised through a collaborative process. Co-managed services are ideal when in-house IT support is required, when specialist expertise or additional capacity is needed, and when you want to maintain control over your IT whilst also being able to scale flexibly. CANCOM’s Managed Security Operation Centre – via the CANCOM Cyber Defence Centre – offers transparency and control over IT infrastructures, providing an efficient solution for detecting and analysing security incidents in real time and initiating immediate countermeasures. The SOC detects critical incidents before significant damage occurs and enables a rapid incident response. Our scope of services also includes root cause analysis as the basis for remediation, identifying the scope of an attack and verifying data exfiltration. All in all, a holistic security solution that combines security incident management, monitoring and automation to efficiently protect internal and external clients and continuously enhance information security. Modular in design and flexibly scalable. Featuring Network Security Monitoring (NSM), Endpoint Detection and Response (EDR) and Log Management.
Joint model: the in-house IT team and CANCOM work hand in hand
Division of responsibilities: CANCOM handles monitoring and security, whilst the in-house IT team is responsible for strategic projects. Organisations retain control and in-house expertise, whilst gaining additional capacity and specialist knowledge.
- Advantage: high flexibility, cost optimisation, knowledge development within the organisation.
- Disadvantage: Coordination, roles
A comparison of both models.
Full outsourcing: IT responsibility fully outsourced to CANCOM.
Less transparency and control, less flexibility, the company’s own IT resources are hardly necessary, costs are higher but predictable, and in-house IT expertise tends to decline.
Ideal for: Organisations without their own IT or IT security team.
CANCOM Co-Managed Model:
Greater transparency and control, high flexibility, the client’s own IT resources remain active and are expanded and optimised, lower costs, in-house IT expertise is maintained and grows.
Ideal for: Companies with a small or overburdened IT or IT security team.