Building an internal security function means a SOC, a tooling stack and people willing to work nights. For most Australian organisations that is neither affordable nor necessary. REDD runs the whole program as a managed service, from monitoring and response through to the risk work that keeps the alerts rare.
What is included
Tailored to your risk profile rather than sold as a fixed bundle.
Live monitoring of endpoint, identity, network and cloud by analysts who can act, not just alert.
See MDR →Continuous vulnerability scanning and exposure profiling, prioritised every day rather than once a year in an audit.
Structured training and simulated phishing, with reporting your board can read.
See awareness training →Why it is bought
Round-the-clock coverage needs several analysts, not one hire. Add the detection tooling, the tuning and the turnover in a tight security job market, and the cost lands well beyond what a mid-sized Australian organisation can justify for a function that is quiet most weeks and decisive once.
The managed alternative spreads that team across many organisations. You get the coverage and the pattern recognition that comes from watching more than one environment, and you get it as an operating cost you can plan.
Attacks are timed for when nobody is looking: evenings, weekends and the week between Christmas and New Year.
A technique used against one client informs the detection protecting the rest.
If REDD also runs your technology, detection and remediation are the same team rather than two vendors pointing at each other.
Insurers, auditors and customers all want to know what is monitored. A managed program can answer in writing.
Foundations
Close the gaps the ACSC says matter most, and measure the maturity level you can evidence.
See Essential Eight →Patching, identity and backup run properly are the difference between a quiet SOC and a busy one.
See managed technology →Common questions
It is the security function of an organisation delivered as a service: monitoring and response from a Security Operations Centre, vulnerability and risk management, and security awareness training, run by a provider rather than by staff you employ.
A Security Operations Centre is the team and facility that watches your environment around the clock. SOC as a service means using an established one rather than building it. The question worth asking is whether the SOC can act on what it sees, or only report it.
Yes, and it is common. Co-managed arrangements leave your team on the work that needs to know the business, while REDD carries the out of hours monitoring and the security specialisation that is hard to hire for.
REDD is based in Milton in Brisbane and supports organisations across Australia and New Zealand. Monitoring and response are delivered remotely, with people on the ground in South East Queensland when it is needed.
Thirty minutes on what you monitor today, what you do not, and what an appropriate program looks like for an organisation your size.
Get in touch
Send the basics and a REDD engineer will come back to you within one business day. Prefer to talk? Call 1300 697 333.