The Managed Security Service Provider (MSSP) and Security Information and Event Management (SIEM) space has a lot more players than it used to, and it leads to confusion, starting with “What are the differences between MSSP and SIEM”? “How do you know which is the better fit”? “Is there a way to get the benefits of both”?
We developed our proprietary ProVision solution to provide the best of both; the power of a tool that can use automation to collect logs from a variety of feeds, quickly apply business rules and generate alerts plus a team of trained security professionals to monitor 24/7, validate findings, apply ongoing proactive research and threat intelligence, keep business rules tuned, and communicate regularly with the clients so they have a deeper understanding of their security and the value of this added protection.
For Resellers there are features that we understood would be important, such as multi-tenancy. If you are offering a solution to your customer base, and want your internal team to be able to use it easily, you want the ability to easily view your customers and any open tickets that they might need your assistance with. Integration with your ticketing system or at least being able to respond to a ticket via email instead of signing into a ticketing system at all. Co-branding when you have built a relationship with your customers and don’t want them to feel like you are handing them off to another provider, but wanting to have separation of duties as well as the expertise needed for cybersecurity.
Our Clients have requirements of their own. Most do not have staff trained in cybersecurity or enough staff to monitor a tool 24/7, yet they want visibility. They typically have solutions from different manufacturers, and they want log correlation. They don’t have information on evolving threats that are happening in their business sector or geographic location, so threat intelligence is an important tool. Speaking of tools, many would love to have the resources needed to fully implement and manage a SIEM, but the licensing cost alone is prohibitive. Managed firewall services that MSSPs offer can ease the burden on internal staff, but who wants to be locked out of their own firewalls? What happens if you detect an incident and need help figuring out what to do next? Does your solution have incident response capabilities that you can actually afford?
These questions are being answered with ProVision.
Recent feedback from Resellers:
From Clients:
We’d love to hear your questions and concerns to see if ProVision can address them too. Contact us (or your Foresite Reseller).