Core SOC services
CDW Canada's Security Operations Center (SOC) stands out due to its all-Canadian team based in Toronto and Calgary, ensuring full failover and business continuity. Our SOC operates 24/7, providing robust security and monitoring solutions. Additionally, our operations are SOC2 compliant and PCI certified, with staff holding Secret Level II Government of Canada security clearance. The SOC is experienced delivering services across all verticals, including financial, legal, health care, public sector, oil and gas, manufacturing, aerospace, and agriculture.
Managed detection and response (MDR): Our SOC provides 24/7 monitoring, detection, and response to security threats. This service includes real-time threat intelligence and incident response to mitigate risks promptly.
Security information and event management (SIEM): We offer comprehensive SIEM services that include log collection, correlation, and analysis to detect and respond to security incidents.
Vulnerability management: Our SOC conducts regular vulnerability assessments and provides detailed reports to help organizations manage and remediate vulnerabilities.
Dark-web monitoring: We leverage advanced threat intelligence to identify and respond to emerging threats, ensuring that proactive security measures are in place.
Security service-level objectives
Classification | Security incidents | Response time | Target compliance | Security criteria |
---|---|---|---|---|
Security outbreak | S1 | 15 minutes | 95% | Malware outbreak. Critical asset impact. Major service disruption or public display of attack. Successful penetration of systems and/or data breach. Targeted malware with widespread infection of internal systems. Requires remediation. |
Systems down or security compromise | S2 | 30 minutes | 90% | Serious impact or compromise. Penetration or denial of service attempted with limited impact on operations. Zero-day malware with large widespread instances of compromised systems (non-targeted). Requires remediation. |
Systems degraded or security event | S3 | 2 hours | 85% | Significant volume of probing detected. Penetration or denial of service attempted with no impact on operations. Significant malware spread/infection affecting multiple systems. Requires remediation. |
System warning or minor security event | S4 | 24 hours | 80% | Detection of small numbers of systems probed. Isolated malware infection. New vulnerabilities detected/reported. May require remediation. |
Service request | 24 hours | 80% | Client service, information, management and any administrative requests or changes. |
Our 24-by-7-by-365 operations team is based out of Toronto and Calgary, providing services globally to organizations headquartered in Canada.
Certifications and industry accreditations
The CDW Canada SOC team have the following certifications and accreditations:
Contact information