Pole 03

Security integration

We deploy and integrate security solutions suited to your environment. The objective is a working solution, fully documented and operable by your teams at the end of the engagement.

Solution categories

Network security

Next-generation firewall: application-layer filtering, SSL/TLS inspection, intrusion prevention. Segmentation and micro-segmentation of internal environments. Centralised rule management and flow logging.

Privileged access management

Secret vault, automated rotation of privileged accounts, recording of administrative sessions. Just-in-time access control to critical systems. Full traceability of actions performed under privileged accounts.

Network access control

Authentication of endpoints and users before network access. Endpoint compliance policy (patching, configuration, active antivirus). Automatic segmentation based on requester profile and endpoint state.

Application protection

Web application firewall: filtering of malicious requests, protection against injection and denial-of-service attacks. Integration with the CI/CD pipeline for inspection before production.

Endpoint detection and response

Behavioural telemetry collection from workstations and servers. Detection of abnormal behaviour by analysing processes, network connections and file modifications. Remote containment capability.

Network detection and response

Passive analysis of internal network traffic. Identification of abnormal communications, command-and-control beacons and data exfiltration. Session reconstruction for investigation purposes.

Centralised monitoring

Aggregation and normalisation of logs from heterogeneous sources. Event correlation and production of actionable alerts. Log retention in line with applicable regulatory requirements.

Our position on vendors

We have no commercial partnership agreements with any vendor. Solution selection is based solely on technical fit with your needs, infrastructure constraints and budget. We prioritise auditable open-source solutions. When a proprietary solution is justified, we document the reasoning.

Engagement delivery

01
Mapping

Inventory of affected assets, existing flows and integration constraints with the current environment.

02
Target architecture

Architecture proposal with justification for technical choices, data flows and integration points.

03
Test environment deployment

Functional validation, coverage testing and adjustments before moving to production.

04
Production deployment

Production rollout following a documented procedure, with rollback plan.

05
Acceptance and handover

Validation of acceptance criteria defined at scoping. Full operational documentation. Training for teams responsible for operations.

Discuss your project All services