Pole 02
Managed SOC: AarSOC
AarSOC is a detection and incident response platform built exclusively on open-source components. It is deployed in your infrastructure: no data transits through our systems.
245,000
alerts processed in 30 days
On our own AarSOC production infrastructure. A measurement, not a projection.
< 90 s
alert → notification latency
Measured on our own AarSOC infrastructure in production: from ingestion to alert notification.
194 d
mean time to detect a breach
An organisation without continuous detection leaves an attacker operating for over six months. IBM, Cost of a Data Breach 2025.
68%
of breaches involve a human factor
Operator error, social engineering or privilege abuse. Verizon DBIR 2025.
Capabilities
Integrity of collected data
No collector communicates with the platform without mutual authentication: each agent presents a client certificate validated against our internal certificate authority. Authentication is bidirectional by design, with no shared secret or static token.
Roadmap
Available
- ✓ Multi-source detection with MITRE ATT&CK rules
- ✓ Investigation with full context and timeline
- ✓ Response: containment, evidence collection
- ✓ AES-256 encrypted incident reports, bilingual FR/EN
- ✓ Client portal: dashboard, incidents, tickets
- ✓ Full traceability of operator actions
- ✓ Encrypted backups with tested restoration
In development
- ○ Autonomous triage agents for levels 1 and 2
- ○ Native incident management with qualification workflow
- ○ Local AI inference (no external data transmission)