Pro MDR — 24/7 managed detection with active lifecycle handling.
Pro MDR is the recurring core of OXCULUS managed services — round-the-clock detection, active investigation, and lifecycle orchestration through NIO. Coverage runs continuous in Indonesian timezone with documented hand-off to night-shift analyst pool. Detection extends beyond the production rule corpus into per-customer custom rule development with quarterly review. The tier is engineered for organizations whose operating reality demands a 24/7 SOC posture but whose internal staffing economics make in-house delivery infeasible — credible managed delivery with full evidence access retained by the customer.
Pro MDR adalah inti layanan OXCULUS — pemantauan berkelanjutan 24/7 dengan investigasi aktif dan orkestrasi siklus hidup melalui NIO. Cakupan berjalan terus menerus di zona waktu Indonesia dengan handoff terdokumentasi ke shift malam. Deteksi melampaui korpus aturan produksi ke pengembangan aturan kustom per-pelanggan dengan tinjauan kuartalan. Tier ini direkayasa untuk organisasi yang memerlukan postur SOC 24/7 tetapi ekonomi staffing internalnya tidak memungkinkan pengiriman in-house.
SERVICE PILLARS
What this service delivers, structurally.
PILLAR
24/7 Coverage with Tier-1 + Tier-2 Investigation
Continuous SOC coverage with documented Tier-1/Tier-2 escalation flow. Tier-2 investigation produces attack timeline, entity graph, IOC extraction, and threat-intelligence correlation through the NOGTUS Investigation Workspace.
PILLAR
Custom Rule Development
Detection scope extends to bespoke rule development against the customer's specific telemetry surface. Detection-engineering sprints are scheduled quarterly with validation cycles before activation. False-positive rates compress as the SOC matures into the environment.
PILLAR
NIO Lifecycle Orchestration
Detected incidents progress through NIO under controlled containment, eradication, and recovery states. Every transition records timestamp and evidence; SLA compliance is measurable per phase rather than aggregated to opaque service metrics.
SERVICE INCLUSIONS
What you get, in commercial-package terms.
Coverage window
24/7, dedicated Indonesian-timezone analyst pool + night-shift hand-off
Detection scope
NOGTUS rule corpus + quarterly custom rule development
Investigation depth
Tier-1 triage + Tier-2 attack reconstruction in Investigation Workspace
Lifecycle handling
NIO-mediated containment, eradication, recovery with per-phase SLA
Evidence backbone
Inherited log_id (UUIDv7) + reasoning chain with full lineage retention
8-week structured assessment with measurable handoff milestones
FIT ASSESSMENT
Who this service is for — and who it isn't.
Best fit for
→Indonesian banks and financial institutions under POJK supervisory expectations
→Government agencies and regulated public-sector operators
→Telco and critical-infrastructure providers
→Mid-to-large enterprises adopting NOGTUS who want managed delivery as a structural property
Not the right fit when
Organizations with mature internal SOC capability seeking only specialized hunting or IR uplift — those should evaluate Threat Hunting or IR Retainer as standalone engagements.
READY TO ENGAGE
Engineer this service into your security operations posture.