The original post: /r/cybersecurity by /u/Cant_Think_Name12 on 2024-10-09 19:07:18.

Hi all,

Question for those of you who use Ontinue for a 24/7 external SOC, what are your thoughts? (Reference: Cyber Defense Center | Ontinue ION)

What are the pros of it, cons, pricing like?

How do you find their analysts and response/escalation times to be? Are their custom detection rules any good? Do they handle your internal incidents or only their own custom ones?

How is their alert tuning? What’s included in a ‘minimum’ package?

Overall, I’m looking for any feedback on them to decide whether to go for them or not. Any insight would be greatly appreciated.