Close Menu
TechCentralTechCentral

    Subscribe to the newsletter

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    Facebook X (Twitter) YouTube LinkedIn
    WhatsApp Facebook X (Twitter) LinkedIn YouTube
    TechCentralTechCentral
    • News

      MultiChoice may unbundle SuperSport from DStv

      12 June 2025

      MVNO boom is reshaping South Africa’s mobile market

      12 June 2025

      South African law is failing gig-economy workers

      12 June 2025

      MultiChoice’s TV empire shrinks – but its ‘side hustles’ are holding strong

      12 June 2025

      MultiChoice is bleeding subscribers

      11 June 2025
    • World

      Qualcomm shows off new chip for AI smart glasses

      11 June 2025

      Trump tariffs to dim 2025 smartphone shipments

      4 June 2025

      Shrimp Jesus and the AI ad invasion

      4 June 2025

      Apple slams EU rules as ‘flawed and costly’ in major legal pushback

      2 June 2025

      Mark Zuckerberg has finally found a use for his metaverse

      30 May 2025
    • In-depth

      Grok promised bias-free chat. Then came the edits

      2 June 2025

      Digital fortress: We go inside JB5, Teraco’s giant new AI-ready data centre

      30 May 2025

      Sam Altman and Jony Ive’s big bet to out-Apple Apple

      22 May 2025

      South Africa unveils big state digital reform programme

      12 May 2025

      Is this the end of Google Search as we know it?

      12 May 2025
    • TCS

      TechCentral Nexus S0E1: Starlink, BEE and a new leader at Vodacom

      8 June 2025

      TCS+ | The future of mobile money, with MTN’s Kagiso Mothibi

      6 June 2025

      TCS+ | AI is more than hype: Workday execs unpack real human impact

      4 June 2025

      TCS | Sentiv, and the story behind the buyout of Altron Nexus

      3 June 2025

      TCS | Signal restored: Unpacking the Blue Label and Cell C turnaround

      28 May 2025
    • Opinion

      Beyond the box: why IT distribution depends on real partnerships

      2 June 2025

      South Africa’s next crisis? Being offline in an AI-driven world

      2 June 2025

      Digital giants boost South African news media – and get blamed for it

      29 May 2025

      Solar panic? The truth about SSEG, fines and municipal rules

      14 April 2025

      Data protection must be crypto industry’s top priority

      9 April 2025
    • Company Hubs
      • Africa Data Centres
      • AfriGIS
      • Altron Digital Business
      • Altron Document Solutions
      • Altron Group
      • Arctic Wolf
      • AvertITD
      • Braintree
      • CallMiner
      • CYBER1 Solutions
      • Digicloud Africa
      • Digimune
      • Domains.co.za
      • ESET
      • Euphoria Telecom
      • Incredible Business
      • iONLINE
      • Iris Network Systems
      • LSD Open
      • NEC XON
      • Network Platforms
      • Next DLP
      • Ovations
      • Paracon
      • Paratus
      • Q-KON
      • SkyWire
      • Solid8 Technologies
      • Telit Cinterion
      • Tenable
      • Vertiv
      • Videri Digital
      • Wipro
      • Workday
    • Sections
      • AI and machine learning
      • Banking
      • Broadcasting and Media
      • Cloud services
      • Contact centres and CX
      • Cryptocurrencies
      • Education and skills
      • Electronics and hardware
      • Energy and sustainability
      • Enterprise software
      • Fintech
      • Information security
      • Internet and connectivity
      • Internet of Things
      • Investment
      • IT services
      • Lifestyle
      • Motoring
      • Public sector
      • Retail and e-commerce
      • Science
      • SMEs and start-ups
      • Social media
      • Talent and leadership
      • Telecoms
    • Events
    • Advertise
    TechCentralTechCentral
    Home » Company News » Introducing SOAR as a service

    Introducing SOAR as a service

    By Port4431 April 2022
    Twitter LinkedIn Facebook WhatsApp Email Telegram Copy Link
    News Alerts
    WhatsApp

    The next-generation security operation centre’s (SOC’s) response to cyberattacks requires an intimate coupling of three primary platforms and disciplines: security automation and orchestration (SAO), security incident response (SIRP) and threat intelligent platforms (TIP). The introduction of the SOAR — security orchestration, automation and remediation — facilitates automated containment and remediations to automated attacks.

    The efficacy of the traditional manual response to effective containment and remediation has reduced significantly with an inversely proportional increase in the costs associated to manage, let alone the difficulty of finding these key skills.

    With the ever-increasing consumption of cloud-based services, consuming what you need as and when you need it is not a new concept. We believe that cybersecurity should and could be readily available to all. The democratisation of security is made possible through the “as a service” model. And SOAR “as a service” is core to everything we do at Port443.

    SOAR ‘as a service’ is core to everything we do at Port443

    In most ICT estates, there is a plethora of security controls from an ever-increasing vendor landscape. Ensuring that these controls are “state aware” and can trigger each other requires platforms that can integrate across these technologies. The inherent integration and automation capability of SOAR’s provides significant benefits:

    • Traditional SOC operations generally have a bias towards containment, incident response and remediation, with less focus on the hardening of the existing controls, and ensuring they remain hardened. Using the power of automations inherent in a SOAR, one can be assured of a more defensive approach with continual adherence to best practice and appropriate framework conformance such as NIST, CIS and PCI.
    • It is only through the integration across multiple controls, that one can immediately move to containment when automations are triggered as a result of indicators of compromise (IOCs).
    • The contextualisation of threats with supplementary threat intelligence allows for a quicker response for validation, supported with AI and machine-learning capabilities.
    • Visibility into the threat landscape, incidents and what has been immediately contained is inherent in most Soar platforms.

    A SOAR platform should not be the exclusive domain of large Managed Security Service Providers. Any company that has invested in security controls should be the beneficiary of the capabilities that a SOAR has to offer. However, the traditional assumption is that the investment in a SOAR, where a company only requires minimal functionality is not really worth it. Further to this, the skills required to build effectively on a SOAR are very difficult to come by. A combination of software dev, security and operational skills is not readily available.

    It is for these reasons that we believe the capabilities and benefits of a SOAR should be extensible to all companies, irrespective of size and industry. If as a company you deem your information to be valuable and a breach of some sort could be debilitating, ensuring your security estate is effectively configured to best practice should not be a question of affordability. Neither should the opportunity to have your core assets constantly monitored for potential IOCs.

    Aligned

    Many organisations have spent a fortune on various cybersecurity controls, from various vendors. Our approach is to make sure you sweat those assets by validating the configurations on a continual basis — essentially maintaining a posture that is aligned with your business risk appetite. We do this using the automations developed on the SOAR, at a price point that is affordable. Further to this, we use the automations of the SOAR to ensure that your security controls are all mindful of each other’s state at any point in time. And when an IOC is picked up, the automations immediately trigger the various controls locking down the estate by ensuring immediate containment. Thereafter, with additional threat intelligence, an orchestrated decision can be made either to retract the policies that were automatically implemented or allow for them to remain in place. All the while taking comfort that the threat has been contained.

    Our belief is that cybersecurity needs to be affordable, consumed as a service and focusing on a continual defensive approach, all while sweating your existing assets.

    About Port443
    Port443 is a cybersecurity company operating across the Middle East and Africa offering services to all market segments. We believe that security should be readily accessible, affordable and always ahead of the ever-evolving threat landscape. Our core platform is a SOAR (security orchestration, automation and remediation) platform on top of which we offer automations “as a service” across multiple security controls and across multiple security technologies. The automations augment security engineering teams, introducing efficiency and speed in reacting to IOCs and a focus on continual hardening of the existing security controls.

    Port443 has extensive experience in identifying candidates for automation and building these automations, so they can be consumed “as a service”.

    Contact us on [email protected] or via our via our website www.port443.co.za. Alternatively, find us on LinkedIn.

    • This promoted content was paid for by the party concerned


    Port443 SOAR
    Subscribe to TechCentral Subscribe to TechCentral
    Share. Facebook Twitter LinkedIn WhatsApp Telegram Email Copy Link
    Previous ArticleSouth Africa to stay on analogue TV until 2037
    Next Article Watch | Just like the weather, the cloud is always changing

    Related Posts

    How automation can help fix the cybersecurity skills void

    11 April 2023

    Port443: providing automated visibility, insight and validation

    7 March 2023

    Cybersecurity: It’s how you react that matters

    25 January 2023
    Add A Comment

    Comments are closed.

    Company News

    Building a cyber-resilient culture from the boardroom to the front lines

    12 June 2025

    How South Africa’s municipalities are finally getting smart

    12 June 2025

    Ransomware roulette: pay up or power through?

    11 June 2025
    Opinion

    Beyond the box: why IT distribution depends on real partnerships

    2 June 2025

    South Africa’s next crisis? Being offline in an AI-driven world

    2 June 2025

    Digital giants boost South African news media – and get blamed for it

    29 May 2025

    Subscribe to Updates

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    © 2009 - 2025 NewsCentral Media

    Type above and press Enter to search. Press Esc to cancel.