Managed Microsoft Sentinel Service
Bechtle delivers a fully managed SIEM/SOAR service built on Microsoft Sentinel, operated by our Service Factory and SOC, with 24×7 monitoring, detection, investigation, and response. The service combines Sentinel with Microsoft’s unified XDR platform (e.g., Defender), automation, and AI to run a modern SOC for you.
Features
- 24/7 Monitoring
- Centralised visibility
- Incident Response and Automation
- Compliance and Reporting
- Cost optimisation
Benefits
- Advanced Threat Hunting
Pricing
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
9 4 6 5 9 1 0 1 3 0 1 2 0 4 2
Contact
BECHTLE LIMITED
Public Sector
Telephone: 01249 467900
Email: publicsector.uk@bechtle.com
About your service
- Service categories
-
Application Development and Deployment
Data management
Data integration and intelligence
- Data Ingestion and Transformation Software
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- Yes
- What software services is the service an extension to
- Microsoft licensing
- Cloud deployment model
- Hybrid cloud
- Service constraints
- Data ingestion can be costly if not configured correctly.
- System requirements
- Microsoft licensing
User support
- Email or online ticketing support
- Yes
- Support response times
- 1 hour SLA
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
- Subject to what is required by the client, can be tailored to suit their needs.
- Support available to third parties
- No
Onboarding and offboarding
- Getting started
- The onboarding process for Bechtle’s Managed Microsoft Sentinel Service typically follows a structured approach to ensure smooth integration and readiness for 24×7 monitoring
- Service documentation
- No
- End-of-contract data extraction
- They own their data
- End-of-contract process
- Access to their Microsoft tenant is withdrawn.
Using the service
- Web browser interface
- No
- Application to install
- Yes
- Compatible operating systems
- Windows
- Designed for use on mobile devices
- No
- Service interface
- Yes
- User support accessibility
- None or don’t know
- Description of service interface
- Microsoft portal
- Accessibility standards
- None or don’t know
- Description of accessibility
- Via Microsoft tenant
- Accessibility testing
- N/A
- API
- No
- Customisation available
- No
Scaling
- Independence of resources
- Great question! Bechtle ensures that service performance and user experience remain unaffected by demand from other customers through several architectural and operational measures.
Analytics
- Service usage metrics
- Yes
- Metrics types
- Service user metrics for Bechtle’s Managed Microsoft Sentinel Service typically focus on measuring SOC performance, user engagement, and security outcomes
- Reporting types
-
- API access
- Real-time dashboards
- Regular reports
- Resource tagging
- No
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Reseller providing extra features and support
- Organisation whose services are being resold
- Microsoft
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- Another external penetration testing organisation
- Protecting data at rest
- Other
- Other data at rest protection approach
- Bechtle protects data between the buyer’s network and our managed service network using a combination of secure transport, encryption, and isolation controls.
- Data sanitisation process
- No
- Equipment disposal approach
- A third-party destruction service
Data importing and exporting
- Data export approach
- It's owned by them.
- Data export formats
- Other
- Data import formats
- Other
Data-in-transit protection
- Data protection between buyer and supplier networks
- Other
- Other protection between networks
- Bechtle protects data between the buyer’s network and our managed service network using a combination of secure transport, encryption, and isolation controls.
- Data protection within supplier network
- Other
- Other protection within supplier network
- Bechtle protects data between the buyer’s network and our managed service network using a combination of secure transport, encryption, and isolation controls
Availability and resilience
- Guaranteed availability
- 1 hour SLA to respond.
- Approach to resilience
- The service is designed for high resilience through a combination of cloud-native architecture, redundancy, and operational safeguards
- Outage reporting
- Bechtle’s Managed Microsoft Sentinel Service reports outages through a multi-layered communication and monitoring process to ensure transparency and rapid response.
Identity and authentication
- User authentication needed
- Yes
- User authentication
- Multi-Factor Authentication (MFA)
- Access restrictions in management interfaces and support channels
- Bechtle enforces strict access control measures for both management interfaces (e.g., Microsoft Sentinel portal) and support channels to prevent unauthorized access and maintain security
- Access restriction testing frequency
- At least once a year
- Management access authentication
- Multi-Factor Authentication (MFA)
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- Bechtle follows strict information security policies and processes for its Managed Microsoft Sentinel Service, aligned with industry standards and internal governance.
- Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Configuration and change management approach
- Bechtle’s configuration and change management processes for the Managed Microsoft Sentinel Service are designed to maintain security, stability, and compliance
- Vulnerability management type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Vulnerability management approach
- Bechtle’s vulnerability management process for the Managed Microsoft Sentinel Service is structured to proactively identify, assess, and remediate security weaknesses across customer environments and the service infrastructure
- Protective monitoring type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Protective monitoring approach
- Bechtle’s protective monitoring processes are designed to ensure continuous visibility, threat detection, and compliance across customer environments and the managed service infrastructure
- Incident management type
- Undisclosed
- Incident management approach
- Bechtle’s incident management process for the Managed Microsoft Sentinel Service is structured to ensure rapid detection, containment, and resolution of security incidents while maintaining compliance and transparency.
- Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- POC
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0.01%
- Between £250,000 and £500,000
- 0.01%
- Between £500,001 and £1,000,000
- 0.5%
- Between £1,000,001 and £2,500,000
- 0.5%
- Between £2,500,001 and £5,000,000
- 1%
- Over £5,000,001
- 2%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- British Assessment Bureau
- ISO/IEC 27001 accreditation date
- Tuesday 4 February 2025
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- Yes
- Who accredited the ISO 9001 certification
- British Assessment Bureau
- ISO 9001 accreditation date
- Tuesday 4 February 2025
- What the ISO 9001 doesn’t cover
- N/A
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 1558ec47-32b1-40ed-b801-d45188947349
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 96b7d157-8818-433b-b7f5-60dfc598a1ec
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
- Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
-