Security Operation Center

Services

Improve your organizations cybersecurity knowledge to improve safety

External Security Operations Center (SOC)

NOD Baltic SOC

Cyber threats are a constant threat—are you detecting them in time?
Ensure your company’s security by leveraging our professional team and tools—choose NOD Baltic’s external Security Operations Center (SOC).

Compliance

Helps ensure compliance with the Cyber Security Act

Expert guidance

Within 2 hours
during working hours 10AM-5PM

Storage of log entries

90 days
in EU data centers

Service Model

12-month contract

An external security operations center focused on providing real-time visibility into cyber threats and enabling rapid response

External Security Operations Center (SOC) operating in Latvia and Lithuania. The service includes continuous monitoring of IT infrastructure security, centralized log collection, analysis, and identification of cybersecurity incidents. Automated monitoring of the IT infrastructure is performed 24/7.

Cyber incidents are identified in accordance with the criteria of the Cyber Security Law (CSL), with the SOC service provided during business hours using a 10/5 response model.

Log records are stored for a minimum of 90 days.

Reaction

We identify critical incidents and notify you within 2 hours during business hours (10AM – 5PM)

Comprehensive visibility

SIEM + XDR provides comprehensive visibility into the IT infrastructure and network perimeter.

Portal and Reports

A self-service portal where you can view your organization’s cybersecurity status in real time. Monthly reports are provided, along with recommendations from experts.

Compliance and Costs

We help you comply with NIS2 and conserve internal human resources.

Service Packages

The final price depends on the number of workstations and the scope of other IT infrastructure.

SOC (Surveillance and Notification)

from 1000 €/month + VAT

  • 24/7 monitoring
  • Notification of significant events within 4 hours (10/5)
  • Log recording, analysis, and storage (SIEM)
    (in EU data centers)
  • Monthly reports
    Integration with your incident management system
  • Expert assistance during implementation

SOC + MDR (Active Management)

from 2000 €/month + VAT

  • All the listed benefits of a SOC
  • Proactive threat identification and prevention
  • Security consulting and recommendations
  •  Optimization of false positive events
  • Incident investigation and recommendations
  • Real-time information viewing on the self-service portal

The Process

How does the collaboration work?

1. Preparation and installation

The client provides a list of managed resources. The necessary infrastructure is set up, including the Log Collector solution for secure data transfer.

2. Monitoring and identification

24/7 automated monitoring and security incident detection.

3. Response

Under Model 10-5, notifications regarding security incidents are issued within 2 hours.

4. Incident investigation

Investigation of the incident, analysis of root causes, prevention.

5. Reporting and Improvement

Monthly reports and their review with an IT expert.
The ability to monitor security analytics in real time via the self-service portal.

Service Provision

  • Monitoring: 24/7 automated.

  • Response: 10/5, notification within 2 hours (via email/phone).

  • Security incidents are analyzed by a team of experienced specialists working according to clearly defined levels of responsibility.

  • The service is provided with or upon purchase of ESET solutions.

  • A 12-month contract is signed

Why companies choose NOD Baltic SOC

✓ We are an official partner of ESET, an international cybersecurity company, in Latvia and Lithuania.

✓ We have been working in the field of cybersecurity for over 20 years. We are trusted by more than 20,000 clients in Lithuania and Latvia.

✓ For SOC delivery, we use software that complies with SOC 2, ISO 27001, ISO 27701, and ISO 27017 standards.

✓ For our XDR solution, we use ESET technology, which has been evaluated by G2 Grid® and KuppingerCole.

✓ Our team includes cybersecurity experts with over 10 years of practical experience and CISSP certification.

✓ NOD Baltic’s information security management systems comply with the most stringent requirements of the ISO 27001:2022 standard.

Frequently Asked Questions

What is NOD Baltic's external SOC?

NOD Baltic’s external SOC is a service that provides continuous monitoring of IT infrastructure security, centralized log collection and analysis, and the identification of cybersecurity incidents, based on ESET Inspect (XDR) and SIEM solutions.

What is the difference between SOC and SOC + MDR?

The SOC service includes security monitoring, event identification, SIEM analysis, notification, and reporting.

SOC + MDR additionally provides active threat management—proactive detection, prevention, incident investigation, and security

rekomendacijas.

Does the SOC service help ensure compliance with the requirements of NIS2 and the Cybersecurity Act?

The SOC service helps organizations comply with the NIS2 Directive and the requirements of the Latvian Cyber Security Law regarding continuous security monitoring, incident detection, and response.

The service ensures automated 24/7 infrastructure monitoring, identification of security incidents, and timely notification, thereby contributing to the implementation of security measures required by law.

How much do SOC and SOC + MDR services cost?

The cost of SOC (Security Operations Center) services depends on the selected package and the scope of the organization’s other IT infrastructure.

The standard SOC (monitoring and notification) plan starts at €1,000/month, while SOC + MDR (active threat management) starts at €2,000/month.

The final price may vary depending on the number of workstations, the complexity of the IT environment, and the scope of integrations.

How long does it take to report security incidents?

The customer is notified of security incidents within two business hours, using a 10/5 response model.

Are log records stored in the European Union?

Log records are stored in European Union (EU) data centers for at least 90 days. This ensures compliance with TIS2 and the Cybersecurity Act.

Is access to the self-service portal provided?

Yes, the customer is granted access to a self-service portal that provides real-time security monitoring data, charts, and event history. The portal enables IT professionals and organizational leaders to maintain constant visibility into infrastructure security and manage risks more effectively.

What are the terms and conditions for providing SOC services?

SOC is provided for a period of 12 months. It is available with the purchase or existing subscription of ESET solutions.

Are you interested? Get a quote!

Please submit a request, and we will determine which package is best suited to the size of your infrastructure, the number of workstations, and your specific needs.

Shopping Cart
Scroll to Top