// guides
Guides
Practical guides to the questions organisations work through before choosing a security provider: what a SOC actually does, the first hour of an incident, and what Amendment 13 means in practice.
These do not sell anything. They are the answers we give on a first call, written down.
When does an organisation need a managed SOC, and when is the IT team enough?
The difference between what an IT team does and what a SOC does, three signs you have hit the limit, and why buying another security product does not solve it.
Read the guideWhat is the difference between a managed SOC, MDR and an MSSP?
Three terms the market uses interchangeably, what actually separates them, and the one question that establishes what you are being offered.
Read the guideWhat happens in the first hour of a cyber incident?
Why the first hour decides so much, four mistakes made in the opening minutes that destroy the evidence, and what is worth having ready in advance.
Read the guideAmendment 13 to the Israeli Privacy Protection Law — what does it mean in practice?
What changed in the approach to enforcement, who it applies to, and what it means in practice for a mid-sized organisation holding customer or employee data.
Read the guideHow do you choose a cyber incident response provider?
Why you choose beforehand rather than during, seven questions that establish whether a provider has actually done this, and red flags that are easy to miss.
Read the guide// next step
Not sure what the right next step is?
Use the short assessment to identify the areas worth reviewing, or tell us what changed and we will start from there.
Do not send passwords, credentials, API keys, logs or sensitive incident material through the web form.