Solutions
Cybersecurity
Managed protection for applications, networks and endpoints: WAF, firewall, EDR, SOC, penetration testing, vulnerability assessment, DLP, identity management and data protection compliance.
What we do
Security is not a product you install once: it is a continuous operation. What protects a company is the combination of technical barriers, a routine of verification and the ability to respond when something gets through.
We work on all three fronts — prevent, detect and respond — sized to the real risk of each operation. Not every company needs everything listed below, and saying so is part of the job.
Managed protection
WAF
Web application firewall with rules maintained and tuned to the system's real traffic.
Firewall
Network traffic filtering with policies defined per environment and a record of what was blocked.
EDR
Endpoint detection and response, including isolation of a compromised device.
SOC
Monitoring of security events, analysis of alerts and incident response.
Testing and assessment
Vulnerability assessment
Periodic scanning of systems and applications, with findings prioritised by risk rather than by volume.
Penetration testing
Authorised intrusion testing with an agreed scope, followed by a technical report and a remediation plan.
Threat intelligence
Tracking threats relevant to the client's sector and exposure surface.
Code review
Application security analysis before the problem reaches production.
Data and identity
- IAM — identity and access management, with SSO and multi-factor authentication
- Privilege control and periodic review of who accesses what
- DLP — prevention of sensitive data loss
- Data classification and retention policies
- Encryption in transit and at rest
- Access logging and auditing
Zero Trust architecture
Zero Trust starts from a simple premise: the internal network is not trustworthy just because it is internal. Every access is verified, privilege is the least required for the task, the network is segmented to limit lateral movement, and everything is logged.\n\nIt is an architectural model, not a product you buy. Adoption is gradual and depends on what already exists in the environment — it usually starts with identity and segmentation, where the gain shows up first.
Continuity and hygiene
- Backup with restore verification — a backup never tested is not a backup
- Patch management: system updates with a window and a rollback plan
- Disaster recovery planning, and testing of that plan
- Hardening of servers, services and workstations
- Team training and awareness
Data protection compliance
Compliance starts with knowing which personal data the company processes, where it is and why. The mapping comes first; policies, legal bases, data subject request flows and technical controls follow from it.\n\nThe technical and organisational work is ours; the legal decision belongs to the company and its counsel. We do not act as data protection officer and we do not replace legal advice.
How we run the work
-
Assessment
Survey of what exists, what is exposed and what is critical to the operation.
-
Prioritising
Deciding what is handled first, by real risk and by remediation effort.
-
Rollout
Applying the agreed controls, with a record of what changed in the environment.
-
Operation
Monitoring, incident response and periodic review of what has changed.
About certifications and guarantees
SafeCortex applies recognised information security good practice and works with public references such as OWASP, CIS Controls, NIST and MITRE ATT&CK. That is not the same as being audited: we are not, and do not present ourselves as, a company certified in ISO 27001, SOC 2, PCI DSS or HIPAA.\n\nCoverage, service windows and deadlines are set in the contract. No security vendor can promise the absence of incidents, and we do not.
Technologies we work with
- Cloudflare and WAF
- Linux and Nginx
- Fail2ban
- Wazuh
- Suricata
- OpenVAS
- Keycloak
Shall we talk about what you need?
Describe the scenario and we come back with the possible options, what needs assessing and how the work could be run.