Managed Security

What's Included in Your MDR Service

A full breakdown of what iCoreFusion monitors and manages.

24/7 threat monitoring

Your SIEM environment is monitored around the clock. Detection rules are tuned to your environment and aligned to the MITRE ATT&CK framework. Alerts are reviewed and triaged by Adam - not automated-only systems.

Incident response

Active incidents are handled end-to-end: triage, containment, eradication, and post-incident reporting. P1 and P2 incidents include direct phone escalation.

Monthly security report

Each month you receive a written security report covering total alerts reviewed, confirmed incidents, false positive rate, detection rule changes, and recommendations.

SIEM tuning and maintenance

Detection rules are continuously tuned to reduce noise and improve signal quality. New log sources are onboarded as your environment changes. SOAR automation is updated as needed.

What is not included

Penetration testing, compliance audits, and end-user security training are not part of the standard MDR service. These can be scoped separately.

Need more help? Contact Adam directly.

Use email for general support, or phone for active P1/P2 incidents.

Related articles