Incident Response
Our Incident Response service includes emergency IR and a more extensive retainer service which includes the option to use time for non-IR activities such as purple teaming, tabletops, response planning and maturity, threat hunting and even live-range activities to ensure your business is prepared for any circumstance.
Features
- Incident Response Retainers
- Emergency Incident Response
- Threat Hunting
- Incident Response, Business Continuity and Disaster Recovery Planning
- IR Runbooks and Playbooks
- Tabletops and live-range / Cyber-range activities
- IR Training and Awareness
- Purple Teaming (Red + Blue Team) exercises
Benefits
- 24/7 on-call initial response support - 1 hour responsetime
- 18 hour travel-reaction time for us to be en-route
- Immediate leadership and support for any confirmed cyber incident
- Improved organisation and communication skills internally through simulated exercises
- Human led investigations backed by industry leading tools and experience
- Increased staff knowledge and preparedness through standard operating procedures
- Post incident analysis and reports to allow for follow-up activities
- Full suite of proactive and reactive IR capabilities
- Support from our industry-leading managed SOC and pentesting teams
- All UK-based, security cleared staff
Pricing
£12,000 a unit a year
- Education pricing available
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
6 1 0 6 1 9 3 8 8 2 5 8 3 1 1
Contact
Cyber Security Associates Ltd
Commercial and Sales Team
Telephone: +44 (0) 300 3034691
Email: commercial@csacyber.com
Planning
- Planning service
- No
Training
- Training service provided
- No
Setup and migration
- Setup or migration service available
- No
Quality assurance and performance testing
- Quality assurance and performance testing service
- No
Security testing
- Security services
- Yes
- Security services type
-
- Security strategy
- Security risk management
- Security design
- Cyber security consultancy
- Security testing
- Security incident management
- Security audit services
- Other
- Other security services
-
- Managed Security Operations Centre (SOC) and MDR Service
- Vulnerability Scanning and Assessment
- Supplier Assurance
- Cyber Security Assessment
- Penetration Testing
- PCI-DSS Consultancy
- Red Team Cyber Engagement
- ISO 27001 Certification
- Certified security testers
- Yes
- Security testing certifications
-
- CHECK
- CREST
Ongoing support
- Ongoing support service
- No
Service scope
- Service constraints
-
Services can be provided remotely or in-person, dependent on the clients needs. Our services are priced to include all aspects of delivery including oversight, project management, operations and quality assurance to ensure there are no hidden costs.
Emergency IR where no retainer is in place is subject to availability.
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
- Our SLA's can be found within the Service Definition document, these SLA's are indicative but can be tailored to suit our Client needs.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.1 AA or EN 301 549
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- Web chat
- Web chat support availability
- 24 hours, 7 days a week
- Web chat support accessibility standard
- WCAG 2.1 AA or EN 301 549
- Web chat accessibility testing
- Our CSA Team remain agnostic in terms of web chat/IM services required by our Clients, and are able to use dedicated assistive technology tools requested by users.
- Support levels
-
Our support levels are dependent on the specific package purchased and include account managers and technical consultants available to support with queries related to the service.
Typically: We aim to answer a retained IR request within 1 hour, and we aim to be on the road to you within 18 hours.
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Security Clearance (SC)
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- Alcumus ISOQAR
- ISO/IEC 27001 accreditation date
- 15/08/2022
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- Yes
- Any other security certifications
-
- ISO 9001 Certification
- Microsoft Solutions Partner for Security (Threat Protection Specialism)
- Microsoft Solutions Partner for Security (Cloud Security Specialism)
- IASME CE & CE+ Assessors
- QSAC
Social Value
- Social Value
-
Social Value
- Fighting climate change
- Covid-19 recovery
- Tackling economic inequality
- Equal opportunity
- Wellbeing
Fighting climate change
The environment and climate change is a core value within CSA, some of the initiatives are as follows: Company Ride to Work scheme in place to encourage less car use. We have moved to hybrid working to reduce carbon fuels on the commutes and have a wider range of distributed offices to enable staff to work in an office closer to home. All cleaning materials are eco products. We have dramatically reduced all forms of travel and invested in high quality video conferencing facilities. CSA has moved a paperless environment and moved all IT infrastructure from on premise to the cloud.Covid-19 recovery
Prior to the Covid-19 pandemic starting we had already established remote working practices which were cyber secure, these were shared with local businesses as a free resource. We developed various policies for our staff to ensure a safe working environment and shared these with other businesses through social media. We held several mental health initiatives for our staff to ensure that they weren't isolated, including regular social evenings and events held online. We continued to recruit during the pandemic and used online interviews and meetings to both select and on-board new employees into the company. CSA continues to employ a geographically dispersed workforce post the pandemic, so regular communications and updates is a core part of our ways or working.Tackling economic inequality
We have increased our staff numbers by over 50% during the pandemic, with remote working we were able to advertise and recruit from of different demographics. Our staff are now extremely diverse in every area, but especially neurodiversity, as much of our work benefits from lateral thought. We spread our recruitment nets wider and have taken on people without a background in cyber and trained them. We provide free support into the local Gloucestershire Local Enterprise Partnership and advise smaller businesses on their cyber security posture without having to break their budgets. Finally, CSA is an active member of Cyber First, promoting cyber into local Schools and actively encourages ‘work experience’ students for a week of immersive training with CSA.Equal opportunity
CSA has a varied and diverse workforce and embraces the strengths of every individual within the company. Mental health is also championed within the organisation along with other minority groups, with centralised training and support available for all employees. The nature of cyber is that physical disability is not an issue for us and often neurodiversity is a great benefit as the analysis of threat actors who are attacking networks requires a variety of perspectives. Our recruitment process is fully transparent to ensure there is no prejudice in selection. Every individual is given the same opportunity to join CSA through a series of technical interviews and remote face to face interviews. All suppliers are vetted to ensure that there is no possibility of modern slavery and all CSA staff are paid above the minimum living wage.Wellbeing
CSA recognise that the support of health and wellbeing is essential in any modern business. CSA hold regular events which promote health and wellbeing and provide free online resources and access to Group HR to ensure everyone is aware on what they can leverage if support is needed. Throughout the year we hold various remote social events to ensure that those remote working members of staff are not excluded from activities which are regular and varied. We have a dedicated Employees Forum who work with the Managing Director to suggest and implement areas that will benefit all employees. CSA provides the Chair role on the Gloucestershire Local Enterprise Partnership Cyber Tech Group which advises other businesses on the cyber threat and ways of staying safe against cyber crime.
Pricing
- Price
- £12,000 a unit a year
- Discount for educational organisations
- Yes