Plans from
$999/month
24×7 SOC Monitoring
Powered by ValueMentor
Monitor threats across your wider technology environment — not just your endpoints. Secusy MDR + Managed SIEM combines Elastic-powered security analytics, SentinelOne endpoint protection and 24×7 monitoring by the Encyb security operations team to detect, investigate and help you respond to security threats.
Plans from $999/month.
The definition
$999/month
5–15 GB/day included
30 days included
Regional Hosting + Global SOC
Endpoint security provides one view of an attack. Secusy MDR + Managed SIEM brings security-relevant telemetry from supported endpoint, identity, cloud, network and application systems into a centralized monitoring environment, so analysts can investigate suspicious activity using context from multiple security sources rather than relying exclusively on endpoint alerts.
All onboarded telemetry contributes toward your purchased ingestion allowance.
Both plans include the same 24×7 monitoring, investigation and guided response capabilities. Choose based on the size of your environment and the amount of security telemetry you need to monitor.
Smaller environments
$999/month
Timeline depends on your readiness, scope complexity and team availability.
Growing & mid-market environments
$2,299/month
Timeline depends on your readiness, scope complexity and team availability.
| Feature | MDR Essential | MDR Advanced |
|---|---|---|
| Best for | Smaller environments | Growing & mid-market environments |
| Security log ingestion | 5 GB/day | 15 GB/day |
| Monthly pooled ingestion | 150 GB | 450 GB |
| Log retention | 30 days | 30 days |
| SentinelOne Core | 10 endpoints | 25 endpoints |
| Additional ingestion | $135/GB/day | $120/GB/day |
| Additional endpoints | $5/endpoint/month | $5/endpoint/month |
| Commitment | 12 months | 12 months |
| 24×7 SOC monitoring | ||
| Alert triage | ||
| Security investigation | ||
| Threat detection & correlation | ||
| Guided response | ||
| Incident notification | ||
| Monthly security reporting | ||
| Elastic-powered SIEM |
Additional ingestion is purchased in 2 GB/day increments. Additional endpoints are $5/endpoint/month on either plan.
One-time onboarding: $750. Need more than 31 GB/day or have a complex environment?
You have a smaller environment and expect to send approximately 5–13 GB of security telemetry per day. Essential gives you the full MDR service without requiring you to purchase capacity you don't currently need.
You expect approximately 15–31 GB/day, have more endpoints, or anticipate your security telemetry increasing. Advanced starts with 15 GB/day and 25 protected endpoints and provides lower incremental ingestion pricing as your environment grows.
Larger or more complex environments can be scoped separately.
Secusy MDR + Managed SIEM is built on Elastic Cloud and deployed on supported AWS or Microsoft Azure cloud regions. Cloud provider and hosting region are selected during onboarding based on customer requirements and Elastic Cloud regional availability.
In-country hosting is subject to the availability of an appropriate Elastic Cloud region in the customer's required country.
Your monthly subscription scales predictably with your security telemetry.
| Feature | Recommended Plan | Monthly Price* |
|---|---|---|
| 5 GB/day | Essential | $999 |
| 7 GB/day | Essential | $1,269 |
| 9 GB/day | Essential | $1,539 |
| 11 GB/day | Essential | $1,809 |
| 13 GB/day | Essential | $2,079 |
| 15 GB/day | Advanced | $2,299 |
| 17 GB/day | Advanced | $2,539 |
| 21 GB/day | Advanced | $3,019 |
| 25 GB/day | Advanced | $3,499 |
| 29 GB/day | Advanced | $3,979 |
| 31 GB/day | Advanced | $4,219 |
*Before additional endpoint licenses, extended retention or optional services. More than 31 GB/day? Custom pricing is available.
Security telemetry doesn't necessarily arrive at exactly the same volume every day, so your purchased daily capacity is converted into a monthly pooled ingestion allowance — flexibility for normal variations in daily security log volumes while maintaining your purchased monthly allowance.
Every MDR plan includes SentinelOne Core endpoint protection. MDR Essential includes 10 SentinelOne Core licenses, MDR Advanced includes 25 — additional endpoints cost $5 per endpoint/month on either plan. Both plans include 30 days of log retention; extended retention is available as an add-on, priced per GB, for security investigations, compliance or internal requirements.
Both MDR Essential and MDR Advanced include Level 2 Guided Response. The level of security monitoring and response does not change based on the plan you select.
Security telemetry is continuously monitored for suspicious activity and potential threats.
Encyb SOC analysts review security alerts and available context to identify activity requiring further investigation.
Relevant telemetry from onboarded systems is analyzed to understand the nature and available scope of suspicious activity.
Validated incidents requiring action are escalated to your designated contacts.
Our analysts provide containment and remediation recommendations and work with your IT or security team through the response process.
Significant incidents and available findings are documented for follow-up.
Your organization remains responsible for executing containment, remediation and recovery actions unless separately agreed.
Scope boundaries
MDR + Managed SIEM is not a replacement for a full digital forensics or incident response engagement. When an incident requires additional expertise, ValueMentor's incident response capabilities can be separately engaged.
Elastic provides the underlying security analytics platform used to centralize, search, correlate and analyze security telemetry.
SentinelOne Core provides endpoint protection and security telemetry. Licenses are included with both MDR plans, with additional endpoints available for $5 per endpoint/month.
The Encyb security operations team provides 24×7 security monitoring, alert triage, investigation, escalation and guided response.
Secusy provides the digital purchasing and service experience backed by ValueMentor's broader cybersecurity testing, assurance, advisory, incident response and managed security capabilities.
How it works
Standard onboarding: $750 one-time. Custom integrations or complex environments may require additional onboarding services.
Select MDR Essential or MDR Advanced based on your expected security telemetry.
Choose additional ingestion capacity, endpoints and retention if required.
Provide the required information about your environment, systems, security technologies and escalation contacts.
We configure the agreed supported integrations and SentinelOne endpoints.
Our team validates telemetry flow and establishes the monitoring environment.
Your environment transitions into continuous security monitoring, investigation and guided response.
Secusy MDR is designed for organizations that need continuous security monitoring across more than just endpoints but don't want to build and operate an internal 24×7 SOC.
Not every organization needs a SIEM. If your primary requirement is endpoint protection and endpoint security monitoring, Secusy Managed EDR provides a lower-cost entry point.
| Feature | Managed EDR | MDR + Managed SIEM |
|---|---|---|
| Endpoint protection | ||
| SentinelOne Core | ||
| 24×7 monitoring | ||
| Endpoint investigation | ||
| Guided response | ||
| Centralized SIEM | — | |
| Identity monitoring | — | |
| Cloud monitoring | — | |
| Firewall/network monitoring | — | |
| Application/security logs | — | |
| SIEM log retention | — | 30 days |
| Starting price | $9/endpoint/month | $999/month |
Secusy gives you a structured digital path for purchasing and managing 24×7 SIEM monitoring. Encyb security operations and ValueMentor's broader cybersecurity capabilities power the engagement.
Bring endpoint, identity, cloud, network and other supported security telemetry into one monitoring operation.
Security analysts continuously monitor alerts rather than leaving your internal team to watch another security console.
Our analysts triage and investigate suspicious activity before escalating incidents requiring customer action.
When you need capabilities beyond MDR, the service is backed by ValueMentor's wider cybersecurity expertise.
When an incident is validated, our team helps your IT or security team understand the issue and determine appropriate containment and remediation actions.
See how much your MDR service costs based on your security telemetry and endpoint requirements.
Start at 5 GB/day and expand as your infrastructure and security requirements grow.
Questions
$999/month
$2,299/month
Larger environment or complex integration requirements? Get custom pricing.