TrustCSI MSS

Managed Security Service

 

TrustCSI Managed Security Services offer:

SIEM Log Correlation and Classification Technology

1a.

Raw event logs will be sent to China Entercom LEC for Filtering and Aggregation. They will then be passed to China Entercom.
1b.

The Vulnerability Scanner will scan the selected assets periodically and deliver the scanning results which will be stored in the knowledgebase.
2.


China Entercom SOC will then make use of the SIEM (Security Information and Event Management) engine for correlation between the meta-log and the knowledgebase.  The correlated results will be classified in the appropriate category and attributed a risk level.
3.



If China Entercom’s security specialists in the SOC find out that the severity of the correlated event is higher than the agreed level with the customers, they will activate the incident response mechanism. Customers can get a full picture on their security status through the dashboard.
4.


Through the online TrustCSI MSS portal, customers not only obtain the latest RSS news feed all over the world, but also get a full picture on their security status in real time, including detailed security event handling information.