Solid SOC
A managed AI-SOC with a privacy lawyer on board
Continuous monitoring, detection and response across your network, endpoints, cloud and identities, supported by an AI analyst that triages and investigates alerts. Unlike most SOC providers, we include the legal groundwork for your logging as standard.
What Solid SOC does
24/7 monitoring
Network traffic, endpoints, cloud workloads, identities and email are watched continuously by analysts and AI agents working together.
SIEM & log management
Central collection and correlation of logs, custom detection rules and high-fidelity alerts.
AI-driven triage
An agentic AI analyst performs behavioural analysis, assesses alerts and prepares a response. Analysts stay in control.
Threat hunting
Proactively searching for indicators of compromise that have not triggered an alert.
Incident response & forensics
Containment, investigation and recovery, including digital forensics and evidence preservation.
Compliance reporting
Reports aligned with GDPR breach notification, BIO, NIS2 and DORA, usable for boards, auditors and regulators.
The difference: logging that holds up legally
A SIEM processes personal data, from login records to employee behaviour. Without preparation you take on risks that SOC providers rarely address. That is why we arrange the following up front:
- A DPIA on the monitoring, with a clear legal basis and purpose limitation
- Proportionality: which logs, how long they are retained and who has access
- Works council consent for employee monitoring systems (Article 27 of the Dutch Works Councils Act)
- Data processing agreements and contractual data location
- A breach procedure that links SOC detection to the 72-hour notification
Packages
Monitor
Monitoring and detection with AI triage, monthly reporting and escalation to your own IT team.
Respond
Everything in Monitor, plus active incident response, threat hunting and a dedicated incident contact.
Pricing depends on the number of endpoints, log sources and required response times. You will receive a tailored quote.
Implementation in four steps
- Scoping & legal review. Log sources, risks, DPIA and works council process.
- Onboarding. Connecting log sources, aligning detection rules and escalation paths.
- Tuning. Removing noise, keeping relevant alerts, and agreeing on response times.
- Operations & reporting. Continuous monitoring, periodic reporting and improvement.
Frequently asked questions
Do we have to replace our existing SIEM?
Not necessarily. Where possible we connect to your existing tooling, and we tell you honestly when replacement delivers more.
Does the AI make decisions on its own?
The AI analyst triages, investigates and proposes actions. Disruptive response actions follow pre-agreed playbooks under human oversight.
Where is our log data processed?
We agree this contractually in advance. We discuss the options during scoping, including any transfer outside the EEA and the safeguards that come with it.
See Solid SOC in your environment
Book a demo or request a tailored quote.
