Generated by Rank Math SEO, this is an llms.txt file designed to help LLMs better understand and index this website. # Proficio ## Sitemaps [XML Sitemap](https://www.proficio.com/sitemap_index.xml): Includes all crawlable and indexable pages. ## Posts - [Sensitive Data Protection: Best Practices for 24/7 Cybersecurity](https://www.proficio.com/data-protection-best-practices-for-cybersecurity/): Cyber attacks don't stick to business hours. At 2AM, when most teams are offline, your sensitive data faces some of its highest risks. This post breaks down how off-hours security gaps invite threats and what monitoring strategies keep your defenses sharp around the clock. If you want to strengthen your cybersecurity during those quiet hours, keep reading to learn practical steps for better data protection. - [Identity Threats as an Attack Surface 101](https://www.proficio.com/understanding-identity-threats-and-attack-surface/): Identity breaches have become the fastest-growing threat, turning your digital identity into the prime attack surface. Every slip in identity management increases your risk of costly identity attacks. If you want to sharpen your cybersecurity awareness and spot digital identity threats before they hit, this post breaks down the crucial identity protection strategies you need now. - [The Important Role of Managed Detection and Response in Effective Threat Detection and Incident Response](https://www.proficio.com/the-role-of-managed-detection-and-response/): Most businesses think firewalls and antivirus software handle all cyber threats. The truth is, threats evolve faster than traditional defenses can keep up. Managed Detection and Response (MDR) services bring constant threat detection and swift incident response to your cybersecurity strategy, helping you stay ahead before breaches happen. - [Top 10 CISO Questions Answered: Insights and Strategies for Cybersecurity Leadership](https://www.proficio.com/top-ciso-questions-for-cybersecurity-leadership/): Most CISOs spend countless hours wrestling with the same tough questions that shape their cybersecurity leadership. If you've been hunting for clear, practical answers to your top CISO questions, you're not alone. This post breaks down the top 10 challenges and strategies every cybersecurity pro and IT manager needs to master right now. For more context on CISO priorities, check out this comprehensive survey report. - [What is SOC as a Service? The Complete 2026 Guide to Getting Enterprise 24/7 Security Without Building Your Own SOC](https://www.proficio.com/what-is-soc-as-a-service-2026/): This is exactly why SOC as a Service (also called SOCaaS or SOC-as-a-Service) has become one of the fastest-growing models in cybersecurity. - [Agentic AI SOC: How Autonomous AI Is Solving Cybersecurity’s Talent Shortage and Alert Fatigue Crisis in 2026](https://www.proficio.com/agentic-ai-soc-alert-fatigue-2026/): Agentic AI SOC represents the most practical and powerful response yet. An autonomous, AI-powered Security Operations Center that perceives threats, makes contextual decisions, investigates, and acts—often without waiting for human approval. - [Understanding the 24-Hour Impact: Time-Related Phenomena and AI Cybersecurity](https://www.proficio.com/time-related-phenomena-and-ai-cybersecurity/): Most people overlook what really happens at 2AM, yet this hour holds surprising significance in cybersecurity and daily rhythms. Your data's safety can shift dramatically in a 24-hour cycle without you noticing. Understanding these time-related phenomena reveals hidden risks and patterns that impact your digital world. Let's explore what Proficio's AI Cybersecurity uncovers about the 24-hour impact and why 2AM matters more than you think. - [Proficio’s Ai Cybersecurity: Ensuring SME Security Safety in a Digital World](https://www.proficio.com/ai-cybersecurity-ensuring-sme-security-safety/): Most small businesses think basic antivirus software is enough to stop cyber threats. The truth is, cyberattacks are growing more complex, and SME security needs require more than just simple fixes. Proficio for SMEs offers tailored cybersecurity services designed to provide comprehensive protection that fits your unique challenges. Keep reading to see how Ai Cybersecurity can guard your business in this fast-changing digital world. - [Taming Agentic AI: A Technical Blueprint for Securing the 2026 Attack Surface](https://www.proficio.com/how-do-you-secure-agentic-ai/): Securing Agentic AI requires Identity Threat Detection and Response (ITDR) that detects behavioral anomalies in non-human identities. Because autonomous agents operate with elevated privilege and extreme velocity, organizations must use Behavioral Mapping and Logic Chain Analysis to differentiate legitimate automation from malicious hijacking. Proficio’s AI SOC delivers this through real-time velocity baselining, API sequence validation, and machine identity entropy tracking—closing the Identity Gap that traditional EDR and MDR miss. - [The CISO’s Mandate for 2026: Why Resilience Metrics Are Replacing Prevention Vanity](https://www.proficio.com/what-is-operational-resilience-in-2026/): Operational resilience is an organization’s ability to maintain critical business functions during and after a cyber incident. In 2026, it is measured by Resolution Velocity and Continuity Integrity, not by legacy prevention metrics such as blocked attacks or log volume. - [Beyond the Noise: Why 2026 Demands Agentic AI and Outcome-Driven Security](https://www.proficio.com/agentic-ai-and-outcome-driven-security/): To close this divide, leadership must shift from managing security tools to managing security outcomes. This transformation is driven by Agentic AI, evolving the SOC from a reactive cost center into a proactive engine of business resilience. Proficio leads this evolution with its AI SOC Operator, delivering machine-speed detection, autonomous workflows, and measurable results. - [Master Cybersecurity Best Practices with AI SOC Operator in 2026](https://www.proficio.com/cybersecurity-best-practices-ai-soc-operator-2026/): Is cybersecurity in demand? Unequivocally yes. The global cybersecurity workforce gap hovers around 4.8 million professionals, with U.S. job growth for information security analysts projected at 29% through 2034—far outpacing most industries. Spending on cybersecurity tools and services is surging toward $520 billion annually by 2026, driven by regulatory demands, cloud adoption, and AI-powered threats. Businesses that prioritize cybersecurity best practices gain a competitive edge, ensuring compliance, trust, and resilience. - [Cyber Risk Management Guide For Businesses in 2026](https://www.proficio.com/what-is-cyber-risk-management/): So, what can you do to safeguard your business? Enter cyber risk management—a strategic lifeline in today's hyper-connected world. But what exactly is cyber risk management, and how can it transform your organization's cybersecurity posture? This comprehensive guide dives deep into the essentials, offering actionable insights tailored for business leaders, IT professionals, and decision-makers. Whether you're fortifying your defenses against ransomware (projected to cost the world $74 billion in 2026 alone) or navigating regulatory pressures, understanding cyber risk management is no longer optional—it's imperative. - [The 2026 Social Engineering Surge: How AI Powered MDR Can Shield Your Team from Deceptive Attacks](https://www.proficio.com/how-ai-powered-mdr-can-shield-your-from-attacks/): AI powered MDR is a game-changer for 2026. It combines managed services with advanced detection and response, using AI to monitor, analyze, and neutralize threats 24/7. Unlike passive tools, MDR proactively hunts anomalies—such as unusual login patterns indicative of phishing success. - [Proficio’s Top 5 Cybersecurity Predictions for 2026](https://www.proficio.com/cybersecurity-predictions-for-2026/): As organizations map priorities for the year ahead, cybersecurity predictions for 2026 point to a threat landscape defined by speed, autonomy, and deception. Static perimeter defenses are effectively obsolete, replaced by a constantly shifting battlefield where attackers leverage automation, deepfakes, and compromised identities to bypass technology and human intuition. - [Re-Architecting the Modern SOC with Agentic AI](https://www.proficio.com/architecting-the-modern-soc-with-agentic-ai/): The End of “More”: Re-Architecting the Modern SOC with Agentic AI For the last decade, the cybersecurity industry has attempted to solve the “SOC problem” with a singular, flawed strategy: More. We built more dashboards to visualize data. We deployed more tools to collect telemetry. We hired more Tier 1 analysts to stare at screens. Yet, despite this exponential growth in investment, the fundamental metrics of security operations—Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR)—have plateaued across the industry. The cognitive load on analysts has reached a breaking point. The “eyes on glass” model is failing, not because analysts aren’t working hard, but because the volume of noise has outpaced human processing speed. Over the past year at Proficio, we realized that adding incremental improvements to a strained model was no longer sufficient. We didn’t need a better dashboard; we needed to fundamentally re-architect the investigation path. We are proud to introduce the Proficio AI Operator. This isn’t just another chatbot summarizing tickets or a “Copilot” that waits for instructions. It is an architectural shift where AI acts as an active operator, supporting our analysts across every stage of an alert’s lifecycle—from log ingestion to triage, correlation, investigation, and escalation. The goal isn’t to replace the analyst. The goal is to ruthlessly eliminate the waste between the signal and the decision. Here is a deep dive into the five pillars of this transformation and why it represents the future of Managed Detection and Response (MDR). 1. From Passive Summarizer to Agentic Workflows Transforming the Modern SOC with Agentic AI - Driven Solutions The first wave of Generative AI in security was largely passive. You could feed an LLM a log line, and it would explain what the log meant. Helpful? Yes. Transformational? No. To truly scale a SOC, AI needs to move from Generative to Agentic. An “Agentic” workflow means the AI possesses the autonomy to execute a multi-step plan. When an alert triggers in the Proficio environment, the AI Operator doesn’t just wait for a human to ask a question. It proactively begins the investigation. It acts like a seasoned investigator: It Asks Questions: Instead of just flagging a login anomaly, it asks, “Is this user traveling? What is their typical baseline? Have we seen this IP address across other clients?” It Pivots: If it finds a suspicious hash, it doesn’t stop there. It pivots to check if that hash was executed on other endpoints. It Suggests Next Steps: It formulates a remediation plan based on the evidence found. By automating the “OODA Loop” (Observe, Orient, Decide, Act) at machine speed, the AI Operator reduces the investigation time significantly. It hands the analyst a near-complete case file, not just a raw alert. 2. RAG Built Specifically for Security Retrieval-Augmented Generation (RAG) is the mechanism by which AI retrieves external data to answer a query. However, general-purpose RAG (like you might find in standard public LLMs) is dangerous in a SOC environment because it lacks domain specificity. It might pull outdated advice from a 2018 forum post. We have built a Security-First RAG architecture. We aren’t just retrieving general internet knowledge; we are applying targeted retrieval across four distinct pillars of validated evidence: Client History: The system recalls previous incidents specific to your environment. It knows your “normal.” Threat Intelligence: It pulls real-time data on active campaigns and IOCs from Proficio’s global threat feeds. OSINT (Open Source Intelligence): It automates the validation of external IP reputations and domain registries. Prior Escalations: It “remembers” how senior Proficio analysts handled similar alerts in the past, learning from human decisions. This curation is critical. By narrowing the aperture to only validated evidence, we ensure that the AI is grounded in the reality of your specific network architecture, rather than generalities. 3. Multi-Alert Reasoning: Connecting the Dots One of the greatest failures of traditional SIEM deployments is the “atomic alert” problem. Alert A fires for a firewall deny. Alert B fires for a failed login. Alert C fires for a PowerShell execution. Viewed in isolation, these might be dismissed as low-priority noise or “informational” tickets. However, when viewed as a sequence, they represent a clear kill chain. Proficio’s AI Operator utilizes Multi-Alert Reasoning. It does not look at signals in a vacuum. It correlates signals across the entire stack—Endpoint (EDR), Network (NDR), Cloud, and Identity. The AI identifies the narrative connecting these disparate points. It understands that the firewall deny and the PowerShell execution involve the same user identity, even if they occurred on different devices. This ability to elevate the right incidents, rather than just the loudest ones, is the key to defeating alert fatigue. It allows our analysts to focus on complex narrative attacks rather than whacking moles. 4. Tight Hallucination Controls: The Trust Barrier The elephant in the room regarding AI in cybersecurity is hallucination. In a creative writing context, an AI making things up is a quirk. In a SOC, an AI inventing a CVE or fabricating an IOC is a catastrophe that wastes time and erodes trust. We have implemented rigorous, deterministic guardrails to solve this. The AI Operator is not given free rein to “be creative.” Bounded Outputs: Every step the AI takes is bound to specific ServiceNow fields and verified data schemas. Verification Layers: The system cannot cite a CVE unless it exists in the vulnerability database. It cannot recommend blocking an IP unless that IP is present in the telemetry. Fact-Checking: We utilize a “critic” model approach where a secondary layer verifies the reasoning of the primary operator before it is presented to the human. There are no fabricated vulnerabilities, no invented IOCs, and no imagined actions. If the data isn’t there, the AI states that the data is missing—it does not invent it to fill the void. This determinism is what makes the system enterprise-ready. 5. Analyst-in-the-Loop: The Exoskeleton Approach Perhaps the most important aspect of our re-architecture is the role of the human. There is a narrative in the industry that AI will replace the Level 1 Analyst. We disagree. We believe AI elevates the Level 1 Analyst to perform at the level of a Level 3 Hunter. We utilize an Analyst-in-the-Loop design. The AI Operator handles the tedious, repeatable, and high-volume data crunching. It presents a hypothesis, the gathered evidence, and a recommended course of action. The analyst stays in control. They review the reasoning. They correct assumptions. They validate outcomes. This creates a continuous feedback loop. Every time a Proficio analyst corrects the AI, the system learns. Every time the analyst validates a finding, the confidence score for that pattern increases. This is not automation for automation’s sake; it is a force multiplier that drastically reduces cognitive load. It allows our security talent to do what humans do best: apply intuition, understand business context, and make high-stakes judgment calls. Why This Matters: The Future of MDR The cybersecurity landscape is facing a convergence of pressures that traditional models cannot survive: The Talent Gap: It is widening, not closing. We cannot hire our way out of this problem. Alert Volume: As digital transformation accelerates, log volume explodes. Attack Velocity: Attackers are using AI to speed up their exploitation. Defenders must use AI to speed up their response. SOCs that successfully combine human judgment with AI-driven investigation will be the only ones capable of scaling efficiently and safely. We’re already seeing measurable movement in our own SOC. We are seeing faster investigations, more consistent escalations, and a tangible improvement in the focus of our analysts. This is the future of MDR. Not a black box that makes decisions for you, but a transparent, intelligent operator that elevates the entire security posture. If you’re interested in where this goes next—or how the AI Operator integrates with your specific stack—let’s talk. Contact Us. Follow us on Linkedin. - [How ITDR Strengthens Infrastructure Security Operations](https://www.proficio.com/itdr-infrastructure-security-operations/): ITDR is the identity brain in your SOC. It ingests signals from directories, IdPs, cloud apps, endpoints, and network sensors; correlates behavior + entitlements; and turns those insights into high‑fidelity alerts and orchestrated actions. Where ITDR shines is in its integration with infrastructure security operations: - [AI in Cybersecurity: Revolutionizing Threat Protection in 2025](https://www.proficio.com/ai-in-cybersecurity-threat-protection-in-2025/): In the fast-evolving landscape of digital threats, AI in cybersecurity has emerged as a game-changer. Businesses worldwide are grappling with sophisticated attacks powered by artificial intelligence, from deepfake phishing to AI-supercharged ransomware. According to recent Gartner reports, the integration of artificial intelligence in cybersecurity is projected to reduce breach detection times by up to 50% by year's end. But what does this mean for organizations? It's not just about adopting AI cybersecurity tools; it's about leveraging them to outpace adversaries. - [AI-Driven MDR: Safeguarding Your Business Against 2025’s Evolving Cyber Threats](https://www.proficio.com/ai-cybersecurity-best-practices-2025/): Understanding AI cybersecurity best practices 2025 is crucial for organizations to navigate the evolving threat landscape effectively. - [Strengthening Cybersecurity with RapidScale’s Cyber Exposure Monitoring | Proficio Partnership](https://www.proficio.com/cyber-exposure-monitoring-rapidscale-proficio/): To enhance overall effectiveness, it is imperative to streamline processes and eliminate redundancies. Implementing targeted strategies will facilitate increased productivity and foster a culture of continuous improvement. By prioritizing efficiency and leveraging data-driven insights, organizations can achieve their objectives more effectively. This approach not only maximizes resource utilization but also positions the organization for sustainable growth. How RapidScale’s Cyber Exposure Monitoring Enhances Business Security - [Building a Strong Security Posture: Why XDR Might Be the Better Choice Over SIEM](https://www.proficio.com/xdr-vs-siem-cybersecurity-explained/): In today's digital world, organizations are increasingly prioritizing their cybersecurity posture to protect sensitive data and maintain trust with their clients. As businesses navigate the complex landscape of cybersecurity tools, the debate between XDR and SIEM has gained significant traction among IT professionals and decision-makers. While both solutions offer robust threat detection and incident response capabilities, understanding their unique strengths is crucial for enhancing security analytics. XDR promises a more integrated approach by consolidating multiple security products, whereas SIEM provides a centralized view through comprehensive data aggregation. This article will provide clarity on the XDR vs SIEM discussion, helping you make an informed choice for your organization's security needs. The ongoing debate of XDR vs SIEM highlights the importance of selecting the right tools for effective cybersecurity. - [Proficio Awarded Security Business Transformation Winner of 2025 Elastic Excellence Awards](https://www.proficio.com/proficio-winner-of-2025-elastic-excellence-awards/): The Elastic Excellence Awards celebrate innovative applications of the Elastic Search AI Platform in cybersecurity, observability, and search. Proficio’s win at the 2025 Elastic Excellence Awards underscores our team’s dedication to delivering cutting-edge managed security services that empower organizations to stay ahead of evolving threats. Our innovative use of Elastic Security solidifies our leadership in the cybersecurity industry. - [Microsoft SharePoint Vulnerability Exploited in Global Cyberattacks: What Organizations Need to Know](https://www.proficio.com/microsoft-sharepoint-security-vulnerability/): To ensure effective SharePoint Security, organizations must prioritize understanding these vulnerabilities and implementing robust defenses. - [The Role of AI-Driven SOC in Modern Risk Management and Data Analysis](https://www.proficio.com/the-role-of-ai-driven-soc-as-a-service/): In the rapidly advancing world of technology, AI-driven Security Operations Centers (SOCs) are becoming indispensable in modern risk management and data analysis. These advanced systems leverage artificial intelligence to enhance cybersecurity measures by automating threat detection and streamlining incident response. As businesses navigate the complexities of digital threats, AI in cybersecurity provides a robust solution for protecting sensitive data and maintaining operational integrity. This article will explore how AI-driven SOCs, such as those offered by Proficio, support IT security professionals and corporate executives in safeguarding their digital assets. By examining the integration of AI technologies in security operations, we aim to provide insights into their role in creating a secure and resilient digital environment. - [AI Security – Stay Protected in an AI World](https://www.proficio.com/ai-security/): In today's rapidly evolving digital landscape, protecting your business from cyber threats has never been more crucial. As artificial intelligence becomes a cornerstone of modern security systems, understanding AI-driven security measures is essential for IT security professionals and business leaders alike. With the rise of sophisticated threats, such as those posed by Model Context Protocol risks and vulnerabilities in Kubernetes environments, staying ahead requires a proactive approach. This article delves into the cutting-edge capabilities of solutions like Cortex XSIAM and explores the importance of cloud-native detection strategies. By equipping your business with the right knowledge and tools, you can confidently navigate the complexities of AI security and safeguard your digital assets. - [What is Cyber Resilience? (Part 3 of a 3 Part Series)](https://www.proficio.com/what-is-cyber-resilience-part-3-of-a-3-part-series/): Don't miss out on the rest of our What is Cyber Resilience blog article series! Explore our previous articles to deepen your understanding, gain valuable insights and recommendation about strengthening cyber resilience. - [What Is XDR (Extended Detection and Response)? 4 Capabilities](https://www.proficio.com/what-is-extended-detection-and-response-xdr/): In today’s rapidly evolving threat landscape, security teams are overwhelmed by the sheer volume of alerts, siloed tools, and the complexity of modern IT environments. Enter Cisco XDR (Extended Detection and Response)—a unified, cloud-native platform designed to simplify security operations, accelerate threat detection, and enable faster, more effective responses. - [2025 Credential Leaks and Corporate Risk: How Proficio Helps Contain the Fallout](https://www.proficio.com/credential-leak/): Why Personal Credential Leaks Are a Corporate Threat - [The Ultimate 5-Step Guide to SOC-as-a-Service for the Best Cybersecurity in 2025](https://www.proficio.com/soc-as-a-service-for-cybersecurity-in-2025/): In 2025, cyber threats are more sophisticated than ever, targeting businesses of all sizes with ransomware, phishing, and supply chain attacks. SOC-as-a-Service (SOCaaS) offers a cost-effective way to achieve 24/7 monitoring, advanced threat detection, and rapid response without the burden of an in-house Security Operations Center (SOC). As the inventor of SOCaaS, Proficio presents this guide to show how SOC-as-a-Service can safeguard your organization and why it’s essential for cybersecurity resilience in 2025. - [What is Cyber Resilience? (Part 2 of a 3 Part Series)](https://www.proficio.com/what-is-cyber-resilience-part-2-of-a-3-part-series/): To recap the first blog post in our What is Cyber Resilience blog article series, you have four concepts. - [What is Cyber Resilience? (Part 1 of a 3 Part Series)](https://www.proficio.com/cyber-resilience/): "Cyber Resilience" has gained significant traction in the ever-evolving cybersecurity landscape. Cybersecurity vendors and professionals frequently use this term, but its meaning can vary greatly depending on an organization's perspective. Let's delve into cyber resilience and how it differentiates from traditional cybersecurity concepts.   - [Dark Web How to Stay Secure & Monitor Proactively](https://www.proficio.com/monitoring-the-dark-web/): Welcome back to part two of our blog series on the dark web. In part one, we explored what is the dark web and the risks it poses. Now, in part two, we will examine some of the challenges associated with monitoring and policing the dark web, and what you can do to stay protected. By understanding these complex issues, we hope to equip you with the knowledge and tools necessary to stay safe and secure in an increasingly connected world. So, let's dive in! - [Breakthrough Cybersecurity: Navigating Omnipresent Cyber Threats with Preemptive Threat Blocking – 5 Key Strategies](https://www.proficio.com/proficio-preemptive-threat-blocking/): In today's digital landscape, cyber threats are omnipresent, lurking in every digital corner, waiting to strike. Understanding the importance of preemptive threat blocking is crucial as it serves as a primary line of defense against these threats. - [Achieve CMMC Level 2 Compliance with 24×7 Security Monitoring](https://www.proficio.com/achieve-cmmc-level-2-compliance-with-24x7-security-monitoring/): As cybersecurity threats continue to evolve, the Department of Defense (DoD) requires contractors handling Controlled Unclassified Information (CUI) to meet strict security standards. Achieving Cybersecurity Maturity Model Certification (CMMC) Level 2 compliance requires organizations to implement robust cybersecurity measures, including 24x7 security monitoring and incident response. However, maintaining an in-house Security Operations Center (SOC) can be challenging and costly. - [2024 ProSOC MDR Outcomes](https://www.proficio.com/2024-prosoc-mdr-outcomes/): In 2024, Proficio lead the way in delivering exceptional Managed Detection and Response (MDR) outcomes. By advancing threat detection, automating defense responses, and optimizing managed EDR/XDR capabilities, we set new benchmarks for efficiency and effectiveness. - [Cyber Exposure Monitoring and Identity Threat Detection and Response: A Powerful Combination to Protect Organizations](https://www.proficio.com/cyber-exposure-monitoring-and-identity-threat-detection-and-response/): The Role of Cyber Exposure Monitoring (CEM) - [Gen AI Operationalized in a Global SOC Leads to a 34% Increase in Productivity and Enhanced Incident Fidelity](https://www.proficio.com/gen-ai-operationalized/): Admittedly, we were skeptical that Generative AI was ready to help us in our SOC operations for threat detection and response. We’d heard all the vendor hype, but no one had any examples of real success. So, we built out an operational test environment and put Gen AI to the challenge. - [Breach and Attack Simulation: Elevating Cybersecurity Defense](https://www.proficio.com/breach-and-attack-simulation-elevating-cybersecurity-defense/): In an era of increasingly complex cyber threats, organizations are constantly under threat from sophisticated cyber adversaries. To stay ahead, it's crucial to not only identify and respond to incidents but to proactively test and validate your defenses. Breach and Attack Simulation (BAS) has emerged as a critical tool in this proactive approach. - [AI Cybersecurity | Why Singapore Businesses Should Use It](https://www.proficio.com/ai-cybersecurity-singapore/): Did you know that 96 percent of Singaporean businesses have reportedly suffered a data breach? - [Benefits of Integrated Vulnerability Management with Managed Detection and Response in Strengthening Cyber Resilience](https://www.proficio.com/integrated-vulnerability-management-and-managed-detection-and-response/): In the contemporary digital environment, organizations face an increasing number of sophisticated cyber threats. This emphasizes the need for an integrated approach in cybersecurity measures combining vulnerability management with managed detection and response (MDR) services. The combination aims to not only identify vulnerabilities but also ensure timely responses to potential threats, thus enhancing an organization’s cyber resilience. - [The Impact of AI on Endpoint Detection and Response](https://www.proficio.com/ai-endpoint-detection-and-response-edr/): In the dynamic realm of cybersecurity, Endpoint Detection and Response (EDR) services leverage Artificial Intelligence (AI) to revolutionize threat detection, response, and prevention. This article explores how AI-driven EDR services fortify organizational defenses against cyber threats. - [DoppelPaymer Ransomware](https://www.proficio.com/doppelpaymer-ransomware/): While earlier builds of the malware were identified back in April 2019, the first known victims of DoppelPaymer ransomware were seen in June 2019. DoppelPaymer ransomware is likely a variant of BitPaymer Ransomware, where initial ransom notes would contain the string of text “BitPaymer”. The name “DoppelPaymer” was given by researchers to identify this new variant of ransomware found in the wild. Following that, the threat actor appears to have adopted this name and has changed the string of text from “BitPaymer” to “DoppelPaymer” within the ransom notes. Based on the similarities between both ransomware variants, the threat actor groups for DoppelPaymer are suspected to be likely a split from INDRIK SPIDER cybercrime group. - [Data Breaches and the Dark Web: Protect Your Organization](https://www.proficio.com/data-breaches-and-the-dark-web/): Data breaches are a formidable challenge in the digital age, posing severe risks to organizations of all sizes. These breaches occur when unauthorized individuals gain access to private data, often resulting in substantial financial, reputational, and legal repercussions. They can stem from various sources, including cyber-attacks, human error, or inadequate security protocols. In this interconnected era, the ripple effects of a data breach extend beyond the immediate loss of data, affecting every facet of an organization and its third-party relationships. Understanding data breaches' nature, causes, and consequences is the first step in developing effective prevention strategies. - [Operationalizing Your SOC: Navigating Cybersecurity Challenges](https://www.proficio.com/operationalizing-your-soc-navigating-cybersecurity-challenges/): Organizations of all sizes face increasing challenges in securing their networks and sensitive data due to the relentless growth of information and the surge in cyber threats. Despite having effective security tools, a recent study conducted by Sapio Research with 2,000 IT security analysts reveals that three-quarters lack complete visibility into their environments. This blog post explores the top cybersecurity priorities for and provides insights on operationalizing Security Operation Centers (SOCs) for proactive threat detection and response. - [Proficio Continues Advancing the Global Mission of MDR with ISO 27001:2013 Certification](https://www.proficio.com/continues-advancing-the-global-mission/): I am thrilled to share a momentous achievement for Proficio – the successful attainment of the ISO 27001:2013 certification. This isn't just any certification; it's the gold standard in information security – emblematic of our dedication to upholding the highest international standards for data protection for our company and our MDR clients across the globe.  - [Guarding Against Social Engineering Scams During the Holidays: A Primer from the Proficio Cyber Exposure Monitoring Team](https://www.proficio.com/guarding-against-social-engineering-scams-during-the-holidays/): The holiday season brings a spike in social engineering scams, leveraging the festive atmosphere to manipulate individuals into divulging sensitive information. Proficio's Cyber Exposure Monitoring team emphasizes the importance of being vigilant during this high-risk period. This article serves to educate users on recognizing these scams, understanding their impact on organizations, and adopting strategies to safeguard personal and professional data. - [Phishing Prevention: How to Identify and Avoid Cyber Threats](https://www.proficio.com/outsmarting-phishing-guide-to-avoid-cyber-threats/): A global effort must be made to help ensure everyone stays safe and protected when using technology whenever and however you connect. As Cybersecurity Awareness Month comes to a close, we want to leave you with a recap of what social engineering is, how the threat actors operate and how to spot a social engineering attack. - [Navigating the Resurgence of Raccoon Stealer: Detection, Remediation, and Prevention Strategies](https://www.proficio.com/raccoon-stealer-resurgence/): The developers behind the notorious Raccoon Stealer malware have reemerged after a six-month absence from hacker forums, promoting an updated 2.3.0 version of their malware to cybercriminals. - [Overcoming Cloud Security Challenges In AWS (Amazon Web Services)](https://www.proficio.com/overcoming-cloud-security-challenges-in-aws-blog/): As more organizations adopt AWS (Amazon Web Services) for their cloud computing needs, ensuring the security of their infrastructure becomes increasingly complex. The persistence of cybercriminals continues to pose a significant threat to organizations, with compromises becoming an inevitable aspect of modern reality. What contributes to this complexity is the current state of security responders. Many security teams are small, understaffed, and lack the skills needed to efficiently secure organizations. In this blog we take a deep dive into the best practices for securing an AWS cloud environment from the emerging landscape of threats. - [How to Improve Endpoint Security to Protect Organizations Against Advanced Cyberattacks](https://www.proficio.com/improve-endpoint-security-to-protect-organizations-against-advanced-cyberattacks/): Immature security practices make endpoints an easy target in advanced cyberattacks. Security and risk management leaders should follow this guidance to evaluate their current endpoint protection and develop a prioritized roadmap to improve the resilience of their endpoints. - [7 Password Tips](https://www.proficio.com/7-world-password-day-tips/): A weak password can easily be hacked, which can lead to a range of consequences from stolen identity to financial loss – and if stolen passwords are also used for a business purpose, this can also be devastating for your organization. Here are some password tips so this does not happen to you. - [The Dark Side of The Web: Understanding the Dark Web and the Risks It Poses to Organizations](https://www.proficio.com/the-dark-side-of-the-web-understanding-the-dark-web-and-the-risks-it-poses-to-organizations/): For many organizations, the dark web – a hidden network of websites that are not accessible through standard web browsers – is a growing concern. It is a place where cybercriminals can buy and sell stolen data, hacking tools, and other illegal products and services. This information can be sold to the highest bidder, putting individuals and organizations at risk of financial loss, reputational damage, and identity theft. - [Decoding the Differences: MDR, XDR, and MEDR](https://www.proficio.com/decoding-the-differences-mdr-xdr-and-medr/): MDR, XDR, and MEDR are three commonly used acronyms in the cybersecurity industry – yet each describes different approaches to detecting and responding to cyberthreats. Despite the similar-sounding acronyms, there are important differences between these solutions. - [Cyber Insurance in 2023: What Every Organization Should Know](https://www.proficio.com/cyber-insurance-in-2024-what-every-organization-should-know/): Enter cyber insurance—also known as cybersecurity insurance or cyber liability insurance. - [Cybersecurity Predictions for 2023: Looking Ahead](https://www.proficio.com/proficios-cybersecurity-predictions-for-2023/): Here are the four cybersecurity predictions we expect to see in the coming year: - [Three Cybersecurity Strategies for Healthcare Leaders in a Digital-First World](https://www.proficio.com/cybersecurity-strategies-for-healthcare-leaders-in-a-digital-first-world/): This post was originally published on elastic.co. Blog by Suranjeeta Choudhury, Elastic, and Carl Adasa, Proficio. - [The Top Cyberattacks on Small & Medium Businesses](https://www.proficio.com/cyberthreats-smb/): Not long ago, it seemed that cybercriminals were mainly targeting large companies. As bigger targets, they may have more gaps to sneak in…and oftentimes, more risk to data and reputation. But times have changed, and for many of today’s small- and medium-sized businesses (SMBs), they know this is no longer the case. In fact, some reports indicate the number of cyberattacks on SMBs are significantly higher than attacks on larger companies. According to a 2021 study, small businesses experience 350 percent more social engineering attacks than those at large businesses. - [Feature Highlight: Log Search and Visualization](https://www.proficio.com/feature-highlight-log-search-and-visualization/): In security, it’s often the little details that matter. Whether it’s considering the business context of your alerts, tracking locations of attempted logins that don’t add up, or finding the needle in the haystack, knowing the details around an event is important to understanding the cause – and preventing it from happening again. - [Protecting Your Identity – A CEOs Perspective](https://www.proficio.com/protecting-your-identity-a-ceos-perspective/): One of the biggest surprises we have observed this year is an 275% increase in identity attacks. We have also seen a nearly 50% increase in hands-on intrusion hacking post unauthorized authenticated access. In years past, attackers focused primarily on big organizations or specific industries, but today, they target a broader range of companies including different verticals, small and mid-size organizations, local governments, and education providers. Gartner has highlighted the threat to identity systems (calling it “the new perimeter”), and in their “Top Trends in Cybersecurity” report, listing Identity Threat Detection and Response as a top priority objective for companies to focus on. - [Solving the Challenge of Cybersecurity Employee Retention and Skills Gaps in Hospitality](https://www.proficio.com/employee-retention-and-skills-gaps-hospitality/): So how can organizations address the issues surrounding cybersecurity employee retention and the related skills gap? To answer this question we will take a closer look at the causes, greater impacts, and provide actionable recommendations to shore up your teams and cybersecurity. - [POS Cybersecurity and 10 Tips for Restaurants](https://www.proficio.com/ten-tips-for-restaurant-pos-cybersecurity/): Point of Sale (POS) systems are a critical part of the restaurant industry infrastructure. They are used significantly on a daily basis, transporting the financial life blood of the establishments that implement them. Given the important business function these systems do, it is critical to have strong POS cybersecurity practices in place for these systems to ensure they are secure from cyberattack and keep your customers sensitive data safe. In order to maintain a strong security posture you must also understand the processes bad actors use to attack your POS system. We take a look at some common methods attackers may utilize and provide our top ten tips on shoring up your POS cybersecurity so you can keep your sensitive data secure. - [Five Tips for Selecting a Managed Detection and Response Service Provider](https://www.proficio.com/selecting-a-managed-detection-and-response-service/): The growth in demand for MDR services is attracting new entrants such as commodity resellers looking to pivot to a services business model. When evaluating providers from the pool of new and established players, vendor selection can be difficult as many claim similar capabilities. While reputable analysts, like Gartner, have helped narrow the field by recognizing some of the top organizations offering MDR capabilities, here are our five key requirements to look for when selecting a Managed Detection and Response service provider:   - [Why Gartner is Urging Organizations to Protect Against Identity Threats and Credential Abuse](https://www.proficio.com/protect-against-identity-attacks/): With the growing support for a hybrid work environment and continued migration to cloud applications, Gartner is predicting an increased trend in identity-based attacks and credential abuse. Today’s cybercriminals are looking for ways to steal credentials, escalate privileges, and move laterally across an organization’s infrastructure. Given that identity compromises are present in most ransomware and supply chain attacks, identity-based attacks have become one of the top cybersecurity threats facing organizations today. That is why Gartner has declared “identity is the new perimeter” and recommends organizations invest in protecting against identity attacks or specifically Identity Threat Detection and Response solutions.  - [Takeaways From Notable Law Firm Data Breaches](https://www.proficio.com/law-firm-data-breaches/): Law firms collect sensitive and privileged data, making them prime targets for cyberattacks. Unfortunately, some of these attacks succeed and the news of a law firm data breach becomes part of the public domain. - [Increased Cybersecurity Risks from Russian Cyber Attacks Resulting From the Russia Ukraine Conflict](https://www.proficio.com/russian-cyber-attacks-russia-ukraine-conflict/): Given Russia’s significant capabilities and history of cybercrime, it appears likely that Russian cyber attacks, particularly against critical public sector infrastructure, may be on the agenda. These attacks have already begun against Ukraine and very likely will turn to the Western nations next. - [2021 Cyber Attacks and Lessons Learned to Strengthen Your Defenses in 2022](https://www.proficio.com/2021_cyber_attacks/): Another worrying trend in several 2021 cyber attacks was a focus on disrupting or infiltrating supply chains. Malicious actors target supply chains because they know that the downstream effects can hit multiple organizations or even result in supply shortages of critical goods and services. - [Best Practices for Endpoint Security](https://www.proficio.com/best-practices-for-endpoint-security/): Studies show that 61 percent of businesses have 1,000 or more endpoints users on their networks. They are a critical part of daily business and are also targets to a wide range of cyberthreats, which is why endpoint security should be a priority for all organizations. - [Why An MDR Service Provider for Healthcare Organizations Makes Sense](https://www.proficio.com/why-an-mdr-service-provider-for-healthcare/): Choosing an MDR service provider for healthcare organizations can provide advanced threat discovery by combining expertise with industry best practices such as the NIST cybersecurity framework to ensure your data is protected. - [Kaseya VSA Security Breach](https://www.proficio.com/kaseya-vsa-ransomware/): Speculations have suggested that the attack was yet another supply-chain ransomware attack. Multiple security firms and researchers have concluded that the attackers chose to exploit a zero-day vulnerability rather than tampering Kaseya’s codebase to distribute the malware. REvil/Sodinokibi ransomware threat actors were found to be responsible for the attack, exploiting a zero-day vulnerability to remotely access internet facing Kaseya VSA servers. Using this method, they hacked through less than 40 VSA servers and were able to deploy the ransomware to over a thousand enterprise networks. - [Lessons Learned: Ransomware Attacks in 2021](https://www.proficio.com/ransomware_attacks_in_2021/): While ransomware attacks in 2021 never cease to stop, several high-profile occurrences in the first half of the year gained swift notoriety for either the scale of damage they inflicted or the targets they focused on. Here are four of the biggest attacks, and the lesson that can be learned from each. - [DarkSide Ransomware Explained](https://www.proficio.com/darkside-ransomware/): DarkSide ransomware was first discovered in the wild in August 2020. It runs a Ransomware-as-a-Service (RaaS), whereby affiliates are able to deploy the ransomware for a fee or a cut of the proceeds from successful ransom payments. - [#HowTo: Identify and Appoint the Right Security Partner for Your Organization](https://www.proficio.com/howto-identify-and-appoint-the-right-security-partner-for-your-organization/): In the field of cybersecurity, finding a partner you trust can be daunting. It’s an area that still creates uncertainty within many organizations, so it’s no wonder many cybersecurity executives may be hesitant to make this move. - [Codecov Breach – What You Need to Know](https://www.proficio.com/codecov-breach/): Supply chain attacks are far from new. We previously covered the SolarWinds attack, which may be the biggest software supply chain attack disclosed, as well as the most damaging supply chain attack to users. In more recent news, a new cyber-attack similar to the SolarWinds attack was discovered on a software testing platform - Codecov, which is a supplier of code management and audit solutions. - [The Difference Between An MSSP and An MDR Service Provider](https://www.proficio.com/difference-between-an-mssp-and-an-mdr/): So, it is not surprising that questions like, “what is the difference between an MSSP and an MDR service provider,” and “what is a SOC-as-a-Service provider” are some of the top managed security services Google searches. - [Hafnium – Microsoft Exchange Server 0-Day Vulnerability](https://www.proficio.com/hafnium-microsoft-0-day/): As early as January 6, 2021, multiple Microsoft Exchange 0-day vulnerabilities had been publicly disclosed. These 0-day vulnerabilities were found to be actively exploited by the threat group Hafnium. This appears to be a nation-state attack that is currently targeting as many as 30,000 organizations in the United States and hundreds of thousands worldwide. Based on the current pool of targeted victims, these attacks do not appear to be targeting any specific sectors or countries. - [2020 Threat Hunting Campaigns and the Lessons Learned](https://www.proficio.com/2020-threat-hunting-campaigns-and-the-lessons-learned/): For Proficio’s Threat Intelligence team, we had to face a slew of new threats, all while battling some familiar faces as well. We spent the last year doing extensive threat hunting campaigns, learning and improving along the way. - [Key Takeaways from the SolarWinds Compromise](https://www.proficio.com/key-takeaways-from-the-solarwinds-compromise/): FireEye has recently released a detailed report on a global supply chain cyber-espionage campaign that utilizes compromised Solarwinds Orion software updates to distribute a backdoor codenamed “SUNBURST” by FireEye. - [Phishing in the Wild II](https://www.proficio.com/spear-phishing-in-the-wild-ii/): In this blog, we share some of the findings from our own deep-dive investigations into the HTM spear-phishing email campaigns. - [Cybersecurity in a Work from Anywhere (WFX) Environment](https://www.proficio.com/cybersecurity-in-a-work-from-anywhere-wfx-environment/): Working from Everywhere (WFX) - [ENISA Report Highlights: Guidelines for Securing the IoT](https://www.proficio.com/guidelines-for-securing-the-iot/): Our latest report, “Guidelines for Securing the Internet of Things”, was written to help establish a security framework for securing the Internet of Things (IoT). The framework provides guidance for both consumers and providers on how to secure IoT devices and infrastructures, considering the whole cybersecurity cycle. In writing this paper, one of the main objectives was to address the challenges that the global supply chains for IoT must overcome to deliver greater security. We include a non-exhaustive list of security considerations alongside a set of best practices to help ensure not only the security but also the overall quality of the supply chain. - [Ryuk Ransomware](https://www.proficio.com/ryuk-ransomware/): The attack chain often starts with delivering Emotet to a victim host via phishing email, which subsequently downloads Trickbot onto the host. After harvesting data, Trickbot opens a reverse shell to provide Ryuk ransomware threat actors with entry to the victim’s environment, allowing the actors to manually deploy the ransomware on the victim host. - [Typeform Phishing Campaign](https://www.proficio.com/typeform-phishing-attacks/): On 16 August 2020, a relatively new spear-phishing campaign was detected which appears to utilize a free online tool – Typeform. The attacker created and hosted fake online forms to harvest victims’ credentials. - [Europe’s 2020 Cybersecurity Evolution: Securing Teleworkers](https://www.proficio.com/securing-teleworkers-europes-cybersecurity-evolution/): If employees are going to work from home on a regular basis, their cybersecurity hygiene should be considered by the organisations they work for. There are a myriad of different challenges with securing teleworkers; for instance, employees might be more likely to fall victim to a phishing email or cut corners when it comes to backing up important company data. - [5 Reasons MITRE Framework is Being Adopted by the Industry](https://www.proficio.com/5-reasons-mitre-framework-is-being-adopted-by-the-industry/): Since the MITRE ATT&CK framework was released in 2013, it has become widely used by cybersecurity teams. Built to be complementary to other frameworks, like the Lockheed Martin Cyber Kill Chain, the ATT&CK method (Adversarial Tactics, Techniques & Common Knowledge) was created to be a “foundation for the development of specific threat models and methodologies”. - [5 Strategies to Stretch Your Cybersecurity Budget](https://www.proficio.com/5-strategies-to-stretch-your-cybersecurity-budget/): More than ever before, organizations are asking their cybersecurity teams to find savings, delay expenditures and get more value from their budgets. - [WastedLocker Ransomware](https://www.proficio.com/wastedlocker-ransomware/): WastedLocker attackers have also been observed in previous attacks to utilize living-off-the-land (LOFT) tools to perform tasks. For example, using the Windows Sysinternals tool PsExec to disable Windows Defender, using PowerShell and WMIC to profile the target’s environment. - [Phishing in the Wild](https://www.proficio.com/phishing-in-the-wild/): Our analysis of the PCAP file (generated upon clicking on the download image seen from the email) reveals a redirect to an external request URL. Simulated access against the external request URL in a controlled environment reveal a redirect to a website with a “CLICK HERE TO VIEW” button. This phishing “hook” resembles a secure document intended for the victim to access. - [Proficio Vulnerability and Advisory Report](https://www.proficio.com/proficio-vulnerability-and-advisory-report/): Please let us know if you have any questions or concerns about the information below. If you are a current MSS customer, please let us know if you would like assistance with implementation. Submit a change request to prosoc@proficio.com . - [10 Ways to Address the Cyber Skills Gap](https://www.proficio.com/10-ways-to-address-the-cyber-skills-gap/): Universities and Technical Colleges offer a range of cybersecurity courses and degree programs that may one day help shrink the skills gap. In the meantime, employers should identify local educational institutes and recruit students into intern and entry-level positions. Consider offering to be a guest presenter, hosting a tour of your company, or contact the college’s student placement team and ask about hiring events. - [Reopening Safely – Cybersecurity Recommendations for Organizations Returning to the Office](https://www.proficio.com/reopening-safely-cybersecurity-recommendations-for-organizations-returning-to-the-office-covid/): According to the consulting firm, McKinsey, organizations will need to navigate through the stages of Resolve, Resilience, Return, Reimagination, and Reform during the COVID-19 pandemic. Many organizations are now in the Return stage as they ask their employees to come back to their business locations. - [Details on Threat Group That Claims to Have Obtained President Trump’s Legal Documents](https://www.proficio.com/details-on-threat-group-that-claims-to-have-obtained-president-trumps-legal-documents/): In this blog, we will be sharing additional details we discovered based on our research on the REvil/Sodinokibi ransomware. - [Not All Partnerships are Equal](https://www.proficio.com/not-all-partnerships-are-equal/): As Henry Ford once said, "Coming together is the beginning. Keeping together is progress. Working together is success." While many people have an understanding of how partnerships work in their day-to-day lives, defining a true partnership in a business relationship can be more challenging. In the field of cybersecurity, finding a "true partner” means you share the risk and both strive to improve your security posture. - [Preparing for Tomorrow: Cybersecurity in a Remote World](https://www.proficio.com/preparing-for-tomorrow-cybersecurity-in-a-remote-world/): This article originally appeared in InfoSecurity Magazine - [“Voicemail” Phishing Campaign](https://www.proficio.com/voicemail-phishing-campaign/): The initial phishing attempt is merely the first step of the adversary’s intrusion attempt. After successfully gaining user login, the threat actor responsible uses the credentials obtained to conduct a targeted spear phishing campaign against other employees within the victim’s organization. - [Cybersecurity in the World of COVID-19](https://www.proficio.com/cybersecurity-in-the-world-of-covid-19/): People around the world are grappling with the new reality of COVID-19 which is drastically changing the way organizations do business. From protecting employee and customer health to maintaining operational and economic resilience, we are challenged with finding ways to keep business running smoothly – and safely – in this new normal. - [Mailto and Mailto-2 Ransomware](https://www.proficio.com/mailto-and-mailto-2-ransomware/): This ransomware group gained attention with the recent ransomware attack against the Australian Toll Group. The Australian Toll Group has subsequently disclosed that their network was being attacked by the Mailto ransomware prior to a service disruption and system shut down. - [Focusing on Big Rocks: A Cybersecurity Strategy for Success](https://www.proficio.com/cybersecurity-strategy-focus-on-the-big-rocks/): By Brad Taylor | CEO | Proficio - [Exploits in the Wild for Citrix ADC and Citrix Gateway Vulnerability CVE-2019-19781](https://www.proficio.com/citrix-adc-and-citrix-gateway-vulnerability-cve-2019-19781/): The Proficio Threat Intelligence Team posted information about the vulnerability and its exploits in our Twitter Feed and issued a security advisory to our clients. In this blog, we share some of the findings from our own deep-dive investigations into the attack activities that we have observed in the wild as well as information that we have previously included within our advisory. - [Takeaways from the 2019 Data Breach Investigations Report](https://www.proficio.com/takeaways-from-the-2019-data-breach-investigations-report/): The 2019 Data Breach Investigations Report was released in December and highlights the many aspects of data breaches and frequency of their occurrence. In review, we find this gives us a great opportunity to reflect on what security teams should focus on in 2020. - [Cybersecurity in the Next Decade – Proficio’s Projections for the 2020s](https://www.proficio.com/proficios-projections-for-the-2020s/): 2019 was another busy year for cybersecurity professionals. There were more security incidents than in any previous year, and they included some of the largest breaches of all time. According to Forbes magazine more than 4.1 billion records were compromised. - [Goldilocks Security Operations Architecture: Finding the Perfect Balance for Your Security](https://www.proficio.com/security-operations-architecture/): Organizations today are aware of their cybersecurity risk, but many struggle to determine what is the best way to stay protected. Finding the right balance between using internal resources and outsourced managed services is the key to a successful cybersecurity program. But how do you weigh your need to control technology and operations with the size and skills of your cybersecurity staff? - [Security Overhaul: Migrating from a Legacy MSSP to a Splunk MDR Service Provider](https://www.proficio.com/security-overhaul-migrating-from-a-legacy-mssp-to-a-splunk-mdr-service-provider/): For all but very large organizations, the most practical approach to security monitoring was to partner with a Managed Security Service Provider (MSSP). MSSPs were responsible for monitoring and investigating security events and managing SIEM systems. Some MSSPs extended this role by developing their own SIEM. - [The SOC Dilemma: Build, Buy or In Between?](https://www.proficio.com/the-soc-dilemma-build-buy-or-in-between/): Many organizations that currently operate an in-house security operations center (SOC), started on this path at a time when there were fewer acceptable alternatives. Large organizations with the scale to build SOCs see the benefits in terms of control of operations and data and the ability to customize processes to their specific needs. CIOs making the build vs. buy decision today would likely weigh the pros and cons differently from their predecessors - [Healthcare organizations and the cloud: Benefits, risks, and security best practices](https://www.proficio.com/healthcare-organizations-and-the-cloud-benefits-risks-and-security-best-practices/): Healthcare organizations are moving their business-critical applications and workloads to the cloud, and while there are many benefits (lower costs, added flexibility and greater scalability), there are also inherent risks that cannot be overlooked. - [SIEM challenges: Why your security team isn’t receiving valuable insights](https://www.proficio.com/siem-challenges-why-your-security-team-isnt-receiving-valuable-insights/): Today, many enterprises use security information and event management (SIEM) software to help detect suspicious activity on their networks. However, to be effective organizations need to surround a SIEM with security experts, advanced use cases, threat intelligence, and proven processes to investigate and respond to threats. - [When is it Time to Break Up with your #CyberSecurity Services Provider?](https://www.proficio.com/when-is-it-time-to-break-up-with-your-cybersecurity-services-provider/): A cybersecurity services provider should be a trusted business partner and act as true extension of an enterprise's in-house security team. However, sometimes organizations are left feeling dissatisfied with the relationship they've forged with the services provider they've selected. There are several reasons the relationship may not be working out, and therefore it may be time to look for a new partner to better support the organization's cybersecurity efforts. - [What Your Business Needs to Know About How to Comply With the GDPR](https://www.proficio.com/what-your-business-needs-to-know-about-how-to-comply-with-the-gdpr/): The European Union General Data Protection Regulation (GDPR) is the most significant change to data privacy in the EU in more than two decades. The new law replaces the Data Protection Directive 95/46/EC, which was adopted in 1995, and is intended to standardize data privacy laws across the EU.  - [Extortion-based cyber attacks: The next evolution in profit-motivated attack strategies](https://www.proficio.com/extortion-based-cyber-attacks-the-next-evolution-in-profit-motivated-attack-strategies/): Today, data breaches have impacted just about every industry possible. From entertainment to the restaurant industry, no sector or organization appears to be safe, and it has been predicted that cyberattacks are going to get even worse. - [MDR or EDR. What’s right for you?](https://www.proficio.com/mdr-or-edr-whats-right-for-you/): Targeted attacks are on the rise and often go undetected by traditional security solutions and methods. Endpoint Detection and Response (EDR) companies like CrowdStrike, Carbon Black, CounterTack, and a new up and coming company ZitoVault, have solutions that can stop targeted attacks in their tracks. - [Strategic Relationships Help Australian Businesses Stay Compliant & Secure](https://www.proficio.com/strategic-relationships-help-australian-businesses-stay-compliant-secure/): For those companies that don’t have internal resources to handle a breach, having a strategic relationship with a managed security services provider (MSSP) could be very helpful. This partnership not only provides companies with critical assistance during a breach but also allows for the deployment of a tactical incident response plan. By utilizing an MSSP, Australian businesses are able to leverage the MSSP’s 24x7 alerting and monitoring support and the SOC analysts’ expertise to offload some of the workload. - [What Companies Can Learn from the SEC Breach](https://www.proficio.com/what-companies-can-learn-from-the-sec-breach/): On September 20, SEC officials said the agency, which regulates the United States markets and protects investors, had a security breach in 2016 that affected the electronic storing system which houses public-company filings. The hackers who accessed the SEC records may have conducted stock market trades on the stolen information, officials said.   - [2017 Security Threats for Healthcare](https://www.proficio.com/2017-security-threats-for-healthcare/): From the Bon Secours Health System data breach impacting nearly 700,000 individuals to the $17,000 in ransom that Hollywood Presbyterian Medical Center paid hackers, 2016 wasn’t the best year for healthcare security. So what’s in store for 2017? - [New Poll: Most Organizations Struggle With Cybersecurity](https://www.proficio.com/new-poll-most-organizations-struggle-with-cybersecurity/): A recent IDC poll revealed the uneasy state of cybersecurity today, and the results should be of interest to security professionals from all practices. - [Winners and Losers from WannaCry](https://www.proficio.com/winners-and-losers-from-wannacry/): Preventing the next big ransomware cyberattack is on everyone’s minds since WannaCry burst onto the scene on May 12, 2017.  But preventing isn’t the only thing CISOs should be focused on. Monitoring and responding to alerts are just as important as prevention. Ensuring that your cybersecurity services provider (MSSP) has state-of-the-art monitoring technologies and response capabilities is a winning approach in being able to thwart any oncoming cyberattack, like WannaCry. - [How Your Password Sins Can Put Your Company at Risk](https://www.proficio.com/how-your-password-sins-can-put-your-company-at-risk/): Admit it: at some point in your personal life or professional career, you’ve probably re-used a password, didn’t use any special characters, or were completely uncreative when it came to keeping your accounts safe from hackers and cybercriminals. - [Proficio Weighs in on the Equifax Breach](https://www.proficio.com/proficio-weighs-in-on-the-equifax-breach/): John Humphreys, Proficio Senior VP of Business Development and Alliances, said the Equifax breach demonstrates the vulnerabilities of web applications, which often are not properly secured by developers or scanned for weaknesses by IT officials. - [Ransomware is under control and nothing to be worried about… April Fools!](https://www.proficio.com/ransomware-is-under-control-and-nothing-to-be-worried-about-april-fools/): Ransomware is no joke; you’d be fooling yourself to think it’s not a problem that’s only increasing in use and severity. It continues to be a huge issue for companies and has gotten a lot of play with cybercriminals who are looking for a low-risk/high-reward method to make a quick buck. A recent report found that ransomware attacks grew by 600% in 2016, which demonstrates the gravity of this attack method that prevents victims from accessing their own files or systems unless they pay a ransom. As organizations continue to comply with the attackers – dipping into their pockets and paying ransom demands – we can expect more cybercriminals to gravitate towards this malicious attack method and may start to see the concept of ransom being applied to other attack vectors as well. - [RSA Preview: The Many Challenges of IT Security and How MSSPs Can Help](https://www.proficio.com/rsa-preview-the-many-challenges-of-it-security-and-how-mssps-can-help/): On the eve of RSA, we wanted to address some of the biggest challenges we see IT security teams are facing. The sessions at this years’ conference cover everything from analytics, intelligence and response, to hackers, threats and security strategy. We’ve broken down four hot topics that IT security teams are focusing on this year: - [It’s 2017 – Are You Ready? The Evolution of Cybercrime](https://www.proficio.com/its-2017-are-you-ready/): If 2016 taught us anything, it’s that we can expect to see an uptick in cybercrime and malicious cyber activity across all industries in 2017 – and an increase in incidents every year thereafter for the foreseeable future. - [Using SIEM Technology to Streamline HIPAA Compliance](https://www.proficio.com/using-siem-technology-to-streamline-hipaa-compliance/): There are 154 separate risks underlying the HIPAA compliance security standard. Addressing and continually monitoring each of these risks individually can be an enormous task for a security officer. SIEM technology allows most of these risks to be identified, addressed and monitored for complete HIPAA compliance. - [Black Friday Threats](https://www.proficio.com/black-friday-threats/): Targeted threats against shoppers and retailers alike are on the rise, especially with Black Friday coming up. - [Correlation, Detection, and Alerting in Real-Time for Active Directory](https://www.proficio.com/correlation-detection-and-alerting-in-real-time-for-active-directory/): Active Directory, which is used by an estimated 95% of Fortune 5000 companies, forms the core services for security and permissions management. It allows IT administrators to configure permissions through one console to ensure their users and computers align with their company's policies. - [Tips for Email Security](https://www.proficio.com/tips-for-email-security/): May 5th, 2016 is World Password Day – a day created to encourage safe password practices. The best defense against external threats is staying informed and diligent with your security practices, especially when it comes to email security. - [Annual Cybersecurity Survey Reveals Challenges for 2016](https://www.proficio.com/annual-cybersecurity-survey-reveals-challenges-for-2016/): 2015 was a tough year for data breaches. Companies of all sizes and industries fell victim to hackers, costing billions of dollars and harming the reputations of many organizations. So what is in store for 2016? Will cybercriminals continue to find new ways to get onto networks or will enterprises be prepared to prevent damaging security breaches? To get a better understanding, we surveyed IT security professionals to see what challenges and changes they expect for 2016. - [Increased Risk of Foreign Cyber Attacks](https://www.proficio.com/increased-risk-of-foreign-cyber-attacks/): According to our sources, government agencies believe the current risk of foreign cyber attacks is at an all time high. Groups from China, Russia, and the Middle East are suspected to be planning cyber attacks against US organizations. Intentions vary by group and they are driven by both political and criminal motivations. For example, tension over Ukraine is thought to be behind possible Russian attacks. - [Data Privacy Day 2016](https://www.proficio.com/data-privacy-day-2016/): As a DPD Champion, we’re working towards the common goal of improving consumer and business consciousness while also encouraging and empowering people to be more aware of their privacy. As an award winning Managed Security Services Provider (MSSP), data security and privacy are of the utmost importance to us. - [Five Use Cases of Behavioral Analytics to Protect Customer Networks](https://www.proficio.com/five-use-cases-of-behavioral-analytics-to-protect-customer-networks/): Interest in user and entity behavioral analytics, or UEBA as recently coined by Gartner, has risen dramatically over the past 12 months. And it’s for valid reasons. - [The Importance of Controls for MSSPs](https://www.proficio.com/the-importance-of-controls-for-mssps/): SOC stands for Service Organization Controls and falls under the Statement on Standards for Attestation Engagements (SSAE) No. 16. SSAE 16 was issued by the Auditing Standards Board of the American Institute of Certified Public Accountants (AICPA) in 2010. SSAE 16 effectively replaces SAS 70 as the authoritative guidance for reporting on service organizations like MSSPs. - [Medical devices growing concern in healthcare IT security](https://www.proficio.com/medical-devices-growing-concern-in-healthcare-it-security/): Practically every hospital and healthcare institution invariably depend upon medical devices.  These devices produce a sizable amount of data and despite the fact that very little of this data is retained for any longitudinal patient benefit, the data must be safeguarded per federal requirements.  Proficio’s security engineers have worked with a number of healthcare IT security teams and have on several occasions discovered malicious software within medical devices exposing the network to international threats. - [Cybersecurity Awareness Month: A 3-Step Plan to Being Cyber Secure](https://www.proficio.com/cybersecurity-awareness-month-a-3-step-plan-to-being-cyber-secure/): Some of the most basic, “expected” tools in security are often those most overlooked. Your first step to defense from cyber criminals is your employees. Having a security training program in place and creating policies to assist employees is necessary for your employees to protect themselves and your company. Here are some questions to consider: - [The Scary Truth About CyberSecurity](https://www.proficio.com/the-scary-truth-about-cybersecurity/): With just two months left in 2015, it is shocking to find that this year may be one of the scariest years as far as data breaches go. Recent reports show data breaches to be increasingly common. And as these threats become bigger and more harmful, the future looks spooky. - [Simple Cross-Device Correlation is No Longer Enough](https://www.proficio.com/simple-cross-device-correlation-is-no-longer-enough/): In today’s demanding security environment, companies are more than ever challenged to identify serious threats before they lead to a data breach. Using a SIEM tool to correlate security events is a good start, but an effective defense requires a combination of both advanced cross-device correlation and alert prioritization. We wanted to provide you some examples of how Proficio address this requirement for our customers. - [Next Gen SIEM for the Rest of Us](https://www.proficio.com/siem-for-the-rest-of-us/): SIEM systems were first created for large enterprises and government agencies that were frequent targets of advanced cyber attacks. Back then, smaller and lower-profile organizations were able to get by with basic security tools as they were seldom the target of hackers. The world has changed and today cyber attacks have become so widespread and complex that small and medium-sized organizations need the same next gen SIEM tools as large enterprises. - [Using a SIEM to Detect Cryptolocker Attacks](https://www.proficio.com/using-a-siem-to-detect-cryptolocker-attacks/): As cybercriminals continue to use ransomware as a means for profit such as Cryptolocker and Cryptowall, organizations must develop detection capabilities around this threat. SIEM technology combined with threat intelligence can be effectively used to detect ransomware. We recommend you ask your MSSP or SIEM Administrator to create the following use cases: - [They’ve Got Your Email – Email Security Solutions](https://www.proficio.com/theyve-got-your-email/): Lost or stolen laptops and now smart phones with unencrypted data account for many of the cases of compliance violations. Often the confidential data is inside an email. We recommend using an email security solution, such as Proofpoint, with integrated Data Loss Prevention (DLP) and policy-based encryption capabilities to minimize the risk of disclosing protected data. - [The Vulnerability Remediation Challenge and Patch Tuesday](https://www.proficio.com/the-vulnerability-remediation-challenge-and-patch-tuesday/): For the past twelve years, Microsoft’s Patch Tuesday has been a monthly reminder of the challenges with vulnerability remediation. For IT and security teams, Patch Tuesday means it's time to assess another batch of security updates and decide which ones to deploy and when, and which ones to either defer, indefinitely or at least temporarily. Microsoft’s steady stream of updates, combined with those from other enterprise vendors, is enough to keep IT teams very busy. And then there’s the periodic “BIG ONE’s” such as Heartbleed, Shellshock, or Poodle that have widespread impact (more work) and invite intensive executive-level interest (more oversight) in the vulnerability remediation process. - [Anthem Inc. Data Breach – Healthcare Increasingly Target of Hackers](https://www.proficio.com/anthem-inc-data-breach-healthcare-increasingly-target-of-hackers/): On January 27th, Anthem discovered that the login information for database administrators had been compromised. The investigation is ongoing, but the data breach could affect up to 80 million Anthem customers. - [Takeaways from the Penn State Security Breach](https://www.proficio.com/takeaways-from-the-penn-state-security-breach/): In our Security Operations Centers we find that organizations similar in size to a single College at Penn State need to monitor over 250 million security events per day. From these millions of events a day, the security team must detect 3 to 5 incidents that indicate a compromise and should be blocked in the ‘kill chain’ within minutes to prevent the attack from resulting in a breach or malicious event. - [Not Your Father’s Printer Security](https://www.proficio.com/not-your-fathers-printer-security/): As printers become more sophisticated with more resources, the discovery of new security vulnerabilities is likely to increase, which makes printer security a new focus. Hackers know that IT teams do not always prioritize securing networked printers and consider them an attractive attack vector. - [Lessons learned from the Target Data Breach](https://www.proficio.com/lessons-learned-from-the-security-breach-of-target-stores/): Now that the dust has cleared from the cyber attack and data breach on Target stores last year, it is time to reflect on what happened and ensure your organization is not susceptible to a similar breakdown in security. - [Recent Court Case Further Defines Organizations’ Responsibility for Cyber Breaches](https://www.proficio.com/recent-court-case-further-defines-organizations-responsibility-for-cyber-breaches/): Based on this guidance, every organization that holds customer data should perform a cost benefit analysis of its cybersecurity controls. Weigh the costs of a breach against the cost of implementing security measures. Look at the type of data you store. Is it cardholder data? Social security numbers? Patient health information? What costs would your customers incur if this information was released to criminals? Use recent examples, such as the $10.6 million from the Wyndham breaches, to help determine a number. Then look at what you are spending on your cybersecurity controls. If the gap between those two numbers cannot be reconciled, you may not be fair to your customers. This should be a formal, documented process, so you are able to provide clear evidence of your organization’s compliance with 45(n) when the FTC investigates your organization. - [CIO Guide: Why Switch to a Hybrid SOC](https://www.proficio.com/cio-guide-why-switch-to-a-hybrid-soc/): Balancing the cost of IT security operations vs. the risk of a security breach is one of the toughest challenges facing IT leadership. CIOs and CISOs are seldom thanked when nothing bad happens and, despite making their best efforts within a limited budget, usually blamed when a security incident does occur. - [VULNERABILITY – OFFICE 365 ZWSP DETECTION](https://www.proficio.com/vulnerability-office-365-zwsp-detection/): Earlier this month, security researchers at Avanan discovered a new zero-width space (ZWSP) vulnerability that was confirmed to have affected Office 365 environments between November 10th, 2018 until January 9th, 2019. ZWSP strings are non-printing Unicode characters normally used to do benign things, such as for enabling line wrapping in long words. However, with this vulnerability attackers used ZWSP strings such as ​ to break up malicious URLs in order to avoid detection by security measures. In the case of Office 365, this technique allowed malicious URLs to completely bypass the security checks of both Office 365 EOP and Office 365 ATP. - [VULNERABILITY – IE ZERO DAY FLAW (CVE-2018-8653)](https://www.proficio.com/vulnerability-ie-zero-day-flaw-cve-2018-8653/): In the second half of December 2018, a new IE Zero Day named "CVE-2018-8653" was discovered. According to Microsoft, the vulnerability errors when the “scripting engine handles objects in memory in Internet Explorer. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user.” This means that an attacker successfully attacking a machine vulnerable to this flaw, would obtain the same rights as the exploited user. If the victim is an administrator, then an attacker could take full control of the affected system and perform further exploitation activity by modifying data; installing new software; or creating additional user accounts for future access. - [METHOD – New OpenSSH backdoors exploiting Linux servers discovered](https://www.proficio.com/method-new-openssh-backdoors-exploiting-linux-servers-discovered/): ESET recently released a report listing 21 in-the-wild OpenSSH malware families reportedly targeting the portable OpenSSH used in Linux OS, out of which 12 appears to have not been documented before. - [BREACH – United States Postal Service](https://www.proficio.com/breach-united-states-postal-service/): A serious vulnerability on the United States Postal Service (USPS) website (www.usps.com) was discovered in early November by an anonymous security researcher. The vulnerability reportedly allowed access to account details for over 60 million users, which included personal information such as email address; username; user ID; account number; street address; and phone number among others. Additionally, anyone exploiting the vulnerability would also be able to access package tracking information and, in some cases, even modify user account data. - [TARGET – AUSTRALIAN PRIME MINISTER’S DOMAIN HIJACKED](https://www.proficio.com/target-australian-prime-ministers-domain-hijacked/): An individual at DigitalEagle's Digital Marketing Agency based out of Australia was able to purchase the rights to domain "scottmorrison.com.au," the domain that hosted the official website of Scott Morrison, the current Prime Minister of Australia. The individual purchased the rights to the domain at an auction for expiring domains for fifty US dollars. - [ATTACKER – NEW NORTH KOREAN THREAT GROUP TARGETING FINANCIAL INSTITUTIONS](https://www.proficio.com/attacker-new-north-korean-threat-group-targeting-financial-institutions/): FireEye researchers have just released details on a new threat group dubbed APT38, held accountable for the attempted heist of approximately $1.1 billion dollars from financial institutions in different geographies. - [VULNERABILITY – NEW APPLE iOS 12 SCREEN BYPASS DISCOVERED](https://www.proficio.com/vulnerability-new-apple-ios-12-screen-bypass-discovered/): It didn’t take long until a new lock screen flow was found for the new Apple’s iOS 12, released on 17 September 2018. Spanish researcher Jose Rodriguez published a YouTube video in Spanish language detailing the steps of the quite complex passcode bypass. An English-speaking version of the same video was subsequently published on YouTube. - [REMOTE ACCESS METHOD – REMCOS RAT](https://www.proficio.com/method-remcos-rat/): A new remote access tool, known as Remcos, has been seen rising in popularity over the last month and has been linked to several recent attacks. Remcos, which sells for €58-389 from the vendor Breaking Security, is a security tool advertised for “ethical hacking” and otherwise legal purposes. Remcos boasts the ability to monitor keystrokes, manage files, take remote screenshots, execute remote commands, and otherwise control an endpoint remotely. Not surprisingly, this tool is being purchased and used by criminals, who are then using the tool for malicious purposes, such as for controlling botnets. - [TARGET – FACEBOOK DATA BREACH](https://www.proficio.com/target-facebook-data-breach/): Facebook has returned to the headlines again for issues regarding user privacy and personal information exposure after an alleged attack on their network. The social media giant admitted at least 50 million users may have had their personal information compromised due to the attack, which has been touted as the largest breach in the company’s 14 year history. And if the exposure of user data wasn’t bad enough, the attackers were also able to gain control of user accounts, allowing them to potentially pose as users or view their private information. - [TARGET – British Airways Credit Card Data Breach](https://www.proficio.com/target-british-airways-credit-card-data-breach/): On September 7th, it was publicly disclosed that 380,000 customer transactions processed by the British Airways website between August 21st to September 5th were compromised by attackers. The information believed to be obtained in the transactions included the name, email address, and credit card information for the transaction including the credit card CVV code. - [TARGET – 20,000 USERS FROM AIR CANADA’S MOBILE APP BREACHED](https://www.proficio.com/target-20000-users-from-air-canadas-mobile-app-breached/): Air Canada is requesting a password reset of its entire 1.7 million user base for its mobile app. This was caused from the detection of unusual login behavior between August 22nd to August 24th, leading to suspect that 20,000 user accounts held within the aircraft's mobile app had been compromised. - [TARGET – Democratic National Committee Phishing Mix-up](https://www.proficio.com/target-democratic-national-committee-phishing-mix-up/): On August 22nd, the Democratic National Committee made a press release stating that a cybersecurity service provider had alerted them of a phishing page that was stood up to target their Votebuilder website. The investigation was escalated to the FBI and immediately Russia was suspected due to previous attack activity from 2016. - [VULNERABILITY – New critical vulnerability impacting Apache Struts](https://www.proficio.com/vulnerability-new-critical-vulnerability-impacting-apache-struts/): A new Apache Struts remote code execution vulnerability dubbed CVE-2018-11776 was recently discovered by security researchers. The root cause of the flow was identified in the lack of input validation on the URL passed to the Struts framework affecting all versions of Struts 2. - [ATTACKER – Dark Tequila banking campaign hits Mexico](https://www.proficio.com/attacker-dark-tequila-banking-campaign-hits-mexico/): The campaign was considered to be against Mexican institutions since the malware has a mechanism that will uninstall itself if the system is not in Mexico or the host infected is a "casual" infection. The target list retrieved from the final payload of the malware also contained the names of several Mexican banking institutions and some of the comments in the code were written in Spanish. - [TARGET – Cosmos Global Bank Hack](https://www.proficio.com/target-cosmos-global-bank-hack/): Cosmos Bank, a co-operative bank based in India with an over 100 year-old history was hit with a globally coordinated attack between August 11th to August 13th. Attackers appeared to coordinate with what is suspected to be several individuals to siphon $13.4 million dollars (Rs 94 crore). - [METHOD – Business Email Compromise Statistics from FBI](https://www.proficio.com/method-business-email-compromise-statistics-from-fbi/): Business email compromise (BEC) / email account compromise (EAC) is a scam where a combination of social engineering and computer intrusion techniques are used to obtain a transfer of funds from an organization. Lately, sophisticated / targeted social engineering and compromised email accounts have been used to conduct these attacks. According to the FBI, the scam has been reported in all 50 states in the US and 150 countries. Additionally, between December 2016 and May 2018, there was a 136% increase in identified global exposed losses. - [TARGET – GoDaddy information Exposed on Amazon AWS Cloud](https://www.proficio.com/target-godaddy-information-exposed-on-amazon-aws-cloud/): Researchers at UpGuard recently discovered a data breach affecting GoDaddy, considered the world’s largest domain name registrar and web host by market share to date. The leaked information was found in June on a publicly accessible AWS S3 bucket named “abbottgodaddy” and referenced the company’s infrastructure running in the Amazon AWS cloud. Majority of the exposed documents were multiple versions of the same Excel file containing data used for configuring thousands of systems as well as pricing options for the same, the researchers said. Fields included hostname; operating system; workload; AWS region, memory and CPU specs, among others. - [VULNERABILITY – Symfony Component Vulnerability Impacting Drupal](https://www.proficio.com/vulnerability-symfony-component-vulnerability-impacting-drupal/): According to the advisory the vulnerability was patched in the versions 2.7.49, 2.8.44, 3.3.18, 3.4.14, 4.0.14, and 4.1.3 of the Symfony HttpFoundation component, while Drupal has also fixed the issue in the 8.5.6 version. - [METHOD – The Ramnit Trojan Family Evolution Within the “Black” Botnet Campaign](https://www.proficio.com/method-the-ramnit-trojan-family-evolution-within-the-black-botnet-campaign/): Researchers at Check Point warned a much larger attack could follow the so-called “Black” botnet campaign. This campaign was uncovered between May-July 2018 and used the Ramnit Trojan to create a network of malicious proxy servers operating as a high-centralized botnet or as independent botnets. To date, over 100,000 computers have been infected, researchers said. - [METHOD – Law Office Credentials on the Dark Web](https://www.proficio.com/method-law-office-credentials-on-the-dark-web/): CNBC has reported that access to various law firms' files and networks are being sold on the Dark Web. In one particular example, access to a New York City law firm was being sold for $3,500 and the individual or group offering access stated they could give screenshots as evidence of the break in. - [ATTACKER – Leafminer Expanding Operations to Target United States ICS Entities](https://www.proficio.com/attacker-leafminer-expanding-operations-to-target-united-states-ics-entities/): In July of 2018, the threat actor Leafminer was detailed by Symantec as having targeted a list of government organizations and business verticals in the Middle East since at least early 2017. The article also detailed several aspects of how the attacker attempted to breach targets. One method detailed was the attackers using "file://" URLs embedded on websites used as watering holes that prompted Windows users that visited the site to enter their SMB credentials. When users provided input, it would transmit the user's NTLM hash to the attackers to be cracked offline. - [Method: SIM Swapping Used to Target Cryptocurrency Entrepreneurs](https://www.proficio.com/method-sim-swapping-used-to-target-cryptocurrency-entrepreneurs/): Police in California arrested a 20 year old from Boston at Los Angeles International Airport on his way to Europe. The individual, Joel Ortiz, was accused of targeting cryptocurrency entrepreneurs by compromising their two factor authentication hosted on their mobile phone number by a method called SIM swapping. The results of his activities are rumored to have resulted in the theft of five million dollars and forty phone numbers hijacked. - [TARGET: Valve Game in Marketplace Distributed Cryptocurrency Miner](https://www.proficio.com/target-valve-game-in-marketplace-distributed-cryptocurrency-miner/): Valve pulled the game "Abstractism" from the Steam store after several sources on the internet stated the game was suspected to contain a cryptocurrency-mining bot. Youtube user SidAlpha and other bloggers on the internet flagged the game for very suspicious behavior such as the gaming package being flagged by antivirus software, the authors stating that the game should be left running in yhe background for extended periods of time, and the game taking up an extraordinary amount of GPU and CPU system resources at run time. - [METHOD: Scammers Use Breached Personal Data in Phishing Campaigns](https://www.proficio.com/method-scammers-use-breached-personal-data-in-phishing-campaigns/): Scammers often use a wide spectrum of social engineering methods when persuading potential victims to follow the desired course of action. Recent campaigns are using details gathered in mass breaches such as passwords, email addresses, and other personal information gained from past data compromises. Such example of scams include: - [VULNERABILITY: New Bluetooth Hack Affects Millions of Devices from Major Vendors](https://www.proficio.com/vulnerability-new-bluetooth-hack-affects-millions-of-devices-from-major-vendors/): A bluetooth vulnerability tracked as CVE-2018-5383 has been found affecting bluetooth implementations that could allow an unauthenticated, remote attacker in physical proximity of targeted devices to intercept, monitor or manipulate the traffic they exchange. The vulnerability affects firmwares or operating system software drivers from major vendors like Apple, Broadcom, Intel and Qualcomm while the implication of the bug on Google, Android and Linux are still unknown. Microsoft products are not vulnerable. - [Attacker: Corporate iPhones Attacked in MDM Campaign](https://www.proficio.com/attacker-corporate-iphones-attacked-in-mdm-campaign/): This month security organizations and researchers discovered an attack that utilizes Apple's popular and open source Mobile Device Management (MDM) system for iPhones. The MDM suite allows enterprises to conveniently deploy and manage employees' iPhones remotely. The attackers in this campaign appear to have used social engineering to persuade unsuspecting users to enroll in MDM on their iPhones. From there, the attackers used MDM to remotely deploy Trojan spyware applications. Furthermore, they remained undetected for the past three years, while launching multiple successful attacks against targeted corporate employees in India. - [TARGET: SingHealth Patient Data Breach](https://www.proficio.com/target-singhealth-patient-data-breach/): Singapore authorities reported on a cyber-attack affecting SingHealth, the largest group of healthcare institutions in Singapore. This cyber-attack is the largest known cyber-attack targeting organizations based in Singapore that has been reported by Singapore news media. The cyber-attack appears to have resulted in a data breach affecting around 1.5 million patients who visited SingHealth between May 1, 2015 to July 4, 2018. The data breach included personally identifiable information such as names, NRIC, address, gender and race. Around 160,000 of these patients also had their outpatient prescriptions stolen. The Prime Minister of Singapore's personal information was targeted as part of the attack. - [ATTACKER: Actors Behind Blackgear Campaign Update C2 Methods](https://www.proficio.com/attacker-actors-behind-blackgear-campaign-update-c2-methods/): Blackgear, also known as Topgear and Comnie, is a cyberespionage campaign that has been active since at least 2008. It primarily targets organizations within Japan, South Korea, and Taiwan, focusing on sectors like public administration and high-technology industries. Blackgear is known for its sophisticated use of malware tools, such as the Protux backdoor and the Marade downloader, to infiltrate networks and evade detection. - [TARGET: Labcorp Ransomware Attack](https://www.proficio.com/target-labcorp-ransomware-attack/): LabCorp, one of the largest clinical laboratory networks in the US, reported to the SEC that it had many of its assets infected with ransomware. The 50 minute attack that occurred on July 13th beginning at midnight was suspected to be caused by the attackers entering the network via brute force with public RDP and then spreading a variant of SamSam ransomware. Although the attack was contained in 50 minutes, according to CSO Online, the attackers were able to infect 7,000 systems, 1,900 server, and 350 production servers. The attack only is thought to have compromised Windows servers on the LabCorp network. - [Drone Security Breach: How a Simple Router Vulnerability Exposed Sensitive Military Data](https://www.proficio.com/target-technical-documents-for-u-s-air-force-drone-leaked-through-router-vulnerability/): Beyond the documents stolen, the hacker also has disclosed that he or she is also able to access footage from U.S. border surveillance and can watch footage of certain predator drones flying over the Gulf of Mexico. The individual also disclosed that he or she was not targeting the U.S. Airforce when obtaining the plans for the Reaper, but rather came across information about the vulnerability through doing a search in Shodan (Shodan is a search engine platform used by hackers to identify vulnerabilities and configurations that are internet facing and susceptible for attack). The identity of the hacker has not been disclosed at this time from the sources researched. - [Method: Latest updates on the RIG Exploit Kit](https://www.proficio.com/method-latest-updates-on-the-rig-exploit-kit/): On May 31st, Trend Micro posted technical analysis on updates to the RIG Exploit Kit. Updates include the delivery of a cryptocurrency mining malware as its final payload. Recently, it has been observed to exploit CVE-2018-8174, which affects the VBScript Engine accessed by Internet Explorer and Microsoft Office documents on systems running Windows 7 and later. Previously, RIG was observed delivering delivering GandCrab ransomware and Panda Banker as it’s payload. Distributing cryptocurrency mining malware is a new trend from the actors that run RIG. Following the previous methods of distribution, RIG uses malvertisements with a hidden iframe that redirects the victims to RIG’s landing page where the second-stage of the attack is then downloaded, retrieved and used to download a Monero Miner. - [Method: FakeSpy – Android Trojan targeting Japanese and Korean Speaking Users](https://www.proficio.com/method-fakespy-android-trojan-targeting-japanese-and-korean-speaking-users/): On June 19th, TrendMicro released technical analysis on FakeSpy malware targeting Korean and Japanese mobile users. FakeSpy has been observed sending mobile text messages with a malicious link message that prompts a malicious Android application package. This application masquerades itself as an app for local consumer financial service companies to Korean users. For Japanese users, it pretends to be an application for transportation, logistics, courier and e-commerce companies. This application is known to monitor for text messages and send these messages back to a C&C server. It has also been observed adding contacts to the devices, resetting the device, setting it to mute, updating configurations and stealing device information. - [METHOD – RANCOR Malware: Southeast Asia](https://www.proficio.com/method-rancor-malware-southeast-asia/): A new malware campaign was observed this month, which appears to be politically driven and targets organizations operating in southeast Asia. The malware was dubbed “RANCOR” by Palo Alto researchers and falls under the Trojan malware classification. Additionally, the malware appears to make use of code from two malware families: DDKONG and PLAINTEE. - [TARGET: Dixons Carphone Breach exposes 1.2 million customers data](https://www.proficio.com/target-dixons-carphone-breach-exposes-1-2-million-customers-data/): On June 13th, The popular U.K. based electronic and telecom retailer Dixons Carphone disclosed that it has recently discovered that it was breached in 2017 which may have compromised almost 6 million payment cards and 1.2 million personal data records. The company disclosed that there had been unauthorized access to sensitive data starting in July 2017 with no evidence of persistent access. - [Target: Exactis Data Leak – 340 Million Records Exposed](https://www.proficio.com/target-exactis-data-leak-340-million-records-exposed/): Published June 28, 2018, the database leak of Florida-based marketing and data aggregation firm Exactis has been disclosed to the public. Exactis focuses on the mass collection and trading of data in order to provide highly accurate and targeted advertisements to its audience. This is considered to be one of the biggest breaches of all time, affecting over 340 million records, with over sixty percent affecting consumers and the rest affecting businesses - [Method – MirageFox Malware](https://www.proficio.com/method-miragefox-malware/): On June 18th, malware researcher, Jay Rosenberg released some interesting findings on a binary that was analyzed by the company Intezer. The code was retrieved through VirusTotal hunting. VirusTotal is a tool used by the global cybersecurity community that allows users to upload suspicious executables to an engine to check if antivirus vendors detect anything bad about the file. The Intezer analysis revealed that the binary shared code with a remote access tool (RAT) was very similar to the code that had been mentioned in the 2017 campaign documented by NCC Group where the hacker group APT 15 had hacked entities within the UK Government. - [Actor – APT 15 / Vixen Panda](https://www.proficio.com/actor-apt-15-vixen-panda/): A suspected state-sponsored Chinese threat actor that is known as APT 15 (FireEye) or Vixen Panda (Crowdstrike), and activity documented as Operation Ke3chang (FireEye and Palo Alto) has recently resurfaced again in conversations. The activity of this group was suspected to start as early as 2009. The first major public release of information on this threat actor was in FireEye’s “OPERATION KE3CHANG - Targeted Attacks Against Ministries of Foreign Affairs” whitepaper in 2014. In the whitepaper, FireEye detailed how spear phishing emails were used to install backdoors. The most discussed malware mentioned in the whitepaper was a BS2005 backdoor that has been used to trace back activity by the attacker over the years. In the attack, several broad sectors like aerospace, energy, government, and manufacturing, were mentioned as being targeted. - [Target – FAPD Phishing HIPAA Breach](https://www.proficio.com/target-fapd-phishing-hipaa-breach/): On June 1st, the Florida Agency for Persons with Disabilities (FAPD) disclosed that a phishing attack had compromised a single email account. The email account contained information that had PHI of over 1,951 customers and/or guardians. Although no evidence was gathered that indicated the information was accessed, FAPD could not completely rule out that it had not been. As a result, FAPD is providing the potentially affected patients with breach credit monitoring services for the following year for free. - [Method: Hidden Cobra TYPEFRAME Malware Activity](https://www.proficio.com/method-hidden-cobra-typeframe-malware-activity/): On June 14th, US-CERT released a Malware Analysis Report (AR18-165A) that details a set of malware, code-named TYPEFRAME, with the earliest observed sample dating back to 2015. This malware appears to have been leveraged by North Korea’s threat actor HIDDEN COBRA (aka Lazarus). The Trojan has the capability to download and install malware, proxies and remote access tools (RATs), connect to command and control servers and modify the victim’s host based firewall to allow incoming connections. - [Vulnerability: Zero-Day Flash Flaw](https://www.proficio.com/vulnerability-zero-day-flash-flaw/): Tracking the flaw - (CVE-2018-5002 ) - Adobe has issued an advisory summarizing and providing patches for the vulnerability across all OS for Adobe Flash Desktop Runtime and Chrome/Edge/IE browser plugins. The versions of Flash that are vulnerable to this zero-day are versions 29.0.0.171 and earlier. Adobe has recently released a new flash update (version 30.0.0.113) that patches the vulnerability. - [Vulnerability: Google Chrome Browser – CVE-2018-6148: Incorrect handling of CSP header](https://www.proficio.com/vulnerability-google-chrome-browser-cve-2018-6148-incorrect-handling-of-csp-header/): On May 23rd, a security researcher reported a vulnerability in the Chrome Desktop Browser (Pre-Version 67.0.3396.79) that allows for the mishandling of the Content Security Policy (CSP) header. The CSP header allows website developers to implement a 2nd layer of security on their websites to prevent possible malicious activity. The vulnerability bypasses the SECURITY_CHECK in Chrome, allowing possible cross-site scripting, clickjacking, and varying types of code injection attacks against vulnerable users browsing affected websites. - [TARGET: Two Major Canadian Banks Breached](https://www.proficio.com/target-two-major-canadian-banks-breached/): Simplii Financial which is owned by CIBC, has claimed that it may have lost personal and account information for over 40,000 bank customers. The Bank of Montreal then followed this news by claiming that they too had been breached and lost up to 50,000 individuals’ personal and account information. - [TARGET: Nuance Communications – Lost Revenue and PHI](https://www.proficio.com/target-nuance-communications-lost-revenue-and-phi/): Last year NotPetya malware cost the company $92 million in revenue, mainly from the disruption of transcription services and systems used by healthcare customers. Nuance quickly attempted to restore client functionality which took over a month for complete remediation and restoration. This attack constituted a security incident under the HIPPA Security Rule but not a breach of PHI under the BNR (Breach Notification Rules). - [TARGET: Coca-Cola Data Breach](https://www.proficio.com/target-coca-cola-data-breach/): Things are starting to fizz up! Back in September 2017, a disgruntled former employee of the soda pop conglomerate, Coca-Cola, managed to walk out the door of their global headquarters with an external hard drive containing over 8,000 confidential employee records. Although they would not disclose the specifics of the information stolen, the company did reveal that employee personal information had been compromised. - [Attacker: Xenotime and Trisis ICS Attacks](https://www.proficio.com/attacker-xenotime-and-trisis-ics-attacks/): Dragos, an information security consulting firm that specializes in industrial control system (ICS) security consulting, reported that the threat actor known as “Xenotime” has expanded its presence in compromising ICS systems beyond the Middle East. In late 2017, FireEye and Dragos reported a threat actor had released TRISIS malware that had targeted a Middle East oil company. The attack resulted in a complete shutdown of the oil and gas facility. Forensics revealed that malware had targeted the safety instrumentation system (SIS) component of a Schneider Electric’s Triconex system that was present within the facility. - [Vulnerability: Variants 3a and 4 of Side Channel Vulnerabilities](https://www.proficio.com/vulnerability-variants-3a-and-4-of-side-channel-vulnerabilities/): On May 21st, two vulnerabilities (CVE-2018-3640 -  Variant 3A- Rogue System Register Read and CVE-2018-3639 – Variant 4 - Speculative Store Bypass) were publicly disclosed.  These vulnerabilities indicate new variants of the Spectre and Meltdown class of hardware vulnerabilities and use “side-channel attacks” against speculative execution on many CPU architectures. Each of the vulnerabilities, Variants 3a and 4, attempt to exploit AMD, ARM and Intel CPUs. The effects vary from vendor to vendor. Details are scarce at this time on how an attacker would use these vulnerabilities in practical attacks. - [Method: VPNFilter Malware responsible for botnet army of 500,000 devices](https://www.proficio.com/method-vpnfilter-malware-responsible-for-botnet-army-of-500000-devices/): Researchers from Cisco Talos with the help of numerous threat intelligence partners, have identified at least 500,000 devices worldwide that have been infected with VPNFilter malware. Large segments of the malware’s code were repurposed from the notorious BlackEnergy malware, which was responsible for massive DDoS attacks targeting Ukrainian infrastructure resulting in widespread power outages. - [METHOD: HIDDEN COBRA Joanap and Brambul Malware Activity](https://www.proficio.com/method-hidden-cobra-joanap-and-brambul-malware-activity/): Based on the report findings, HIDDEN COBRA is responsible for using these two types of malware to target victims globally across multiple sectors. The worm appears to leverage relatively old and unsophisticated attack methods for spreading. Once infected, a system will attempt to brute force remote shares hosted over the SMB protocol using a set of about 150 common passwords such as “123456” and “cookie123” and “dbpassword.” - [Vulnerability: Red Hat DHCP Client Script Code Execution – CVE-2018-1111](https://www.proficio.com/vulnerability-red-hat-dhcp-client-script-code-execution-cve-2018-1111/): A vulnerability affecting Red Hat DHCP Services was released via Twitter on May 16th. The exploit, tagged as Dynoroot by the research community and cataloged as CVE-2018-1111, allows an attacker to spoof a DHCP response and execute arbitrary commands with root privileges on a vulnerable Red Hat host. The vulnerability was discovered by Felix Wilhelm of Google, who stated the exploit could fit in a Tweet. Approximately six hours later, Barkın Kılıç, a Penetration Tester for Innovera, posted a proof-of-concept of the exploit using Dnsmasq, a lightweight service that can provide DHCP services. - [Method: RIG Exploit Kit – Grobios Malware](https://www.proficio.com/method-rig-exploit-kit-grobios-malware/): The use of exploit kits has generally been declining over the past two years, however FireEye has recently observed in March active development of the RIG EK capable of delivering a trojan named Grobios, a type of malware.   - [METHOD: StalinLocker Malware](https://www.proficio.com/method-stalinlocker-malware/): MalwareHunterTeam has discovered a new screenlocker malware that threatens to wipe the content of all the drives on a victim's computer. The malware has been dubbed StalinLocker, because it displays a picture representation of the totalitarian dictator, Joseph Stalin on infected devices. - [Method: TreasureHunter Point-of-Sale Malware source code leak may spawn new variants](https://www.proficio.com/method-treasurehunter-point-of-sale-malware-source-code-leak-may-spawn-new-variants/): The TreasureHunter Point-of-sale (PoS) malware has appeared to have made a return to the spotlight.  A top-tier Russian-speaking forum reportedly leaked the malware’s source code, GUI and admin panel in March 2018.   - [Attack: AWS Route 53 Hijack](https://www.proficio.com/attack-aws-route-53-hijack/): The incident has been described as a BGP or Border Gateway Protocol "leak" that allowed the attackers to wrongly announce protocol (IP) in a space that’s owned by Amazon's Route 53 managed DNS service. The hackers were able to hijack DNS entries after executing a BGP route hijack that redirected entire swaths of internet traffic meant for Amazon servers to systems that they controlled. Attackers acquired over $150,000 from the site because users ignored an HTTPS browser warning that stated that the site that was using a self-signed TLS certificate. - [Vulnerability: Twitter passwords stored in plain text](https://www.proficio.com/vulnerability-twitter-passwords-stored-in-plain-text/): Twitter recently announced that all 300+ million user passwords have been exposed by being stored in plain text, without any encryption technology protecting the data. - [Method: MassMiner Worm Malware](https://www.proficio.com/method-massminer-worm-malware/): Cryptocurrency mining malware has been on the rise in 2018.  The malware has an especially nasty variant which leverages multiple exploits and hacking tools to spread. The MassMiner worm is a type of mining malware that has been observed propagating from local networks to high value targets, like Microsoft’s SQL servers, with greater mining potential. - [Vulnerability: KRACK Vulnerability Leaves Medical Devices Exposed](https://www.proficio.com/vulnerability-krack-vulnerability-leaves-medical-devices-exposed/): Versions of BD Pyxis, the company’s medication and supply management system, are impacted by the vulnerability, according to ICS-CERT. That includes 12 versions of the system, such as the BD Pyxis Anesthesia ES, BD Pyxis SupplyStation, and BD Pyxis Parx handheld. - [Vulnerability: CVE-2018-0228 – Cisco ASA DOS Vulnerability](https://www.proficio.com/vulnerability-cve-2018-0228-cisco-asa-dos-vulnerability/): A vulnerability has been discovered in the ingress flow creation functionality of the Cisco Adaptive Security Appliance (ASA).  This vulnerability could potentially allow an unauthenticated, remote attacker to send a steady stream of malicious IP packets to DoS (denial of service) and infect the system by maxing out CPU usage. A DoS of this type could cripple network traffic that is being routed through the device, and would directly impact the availability of business resources. Cisco has not publicly released details regarding what traffic to send to initiate the DoS. - [Method: Roaming Mantis Malware](https://www.proficio.com/method-roaming-mantis-malware/): Kaspersky Labs has detailed Android malware mainly targeting Chinese and Korean users. The malware is designed to steal two-factor authentication codes for Google accounts sent via SMS/MMS. ## Pages - [The Autonomous SOC: What AI Means for Security Operations in 2026 Splunk+Proficio Partnership](https://www.proficio.com/the-autonomous-soc-what-ai-means-for-security-operations-in-2026-splunkproficio-partnership/): You’re invited to an exclusive executive briefing and networking session at Sea Grill Restaurant & Bar in Charlotte, NC on July 22nd, 2026 presented by Splunk & Proficio. - [FREE Cybersecurity Awareness Month Webinar](https://www.proficio.com/free-cybersecurity-awareness-month-webinar/): Join us on October 22nd, 1-2 pm, for a FREE webinar - [ProSOC AI](https://www.proficio.com/services/prosoc-ai/): ProSOC®  AI - [From Mandate to Maturity: Evolving Cyber Defense in the Philippines](https://www.proficio.com/apac-cyber-defense-briefing/): You’re invited to an exclusive executive briefing and networking session at New World Makati Hotel on August 26. - [New Optin](https://www.proficio.com/new-optin-2/): CISOs: Discover How Proficio’s ProSOC XDR Neutralizes Threats in Under 4 Minutes—Before They Ever Reach Your Crown Jewels. - [New Optin](https://www.proficio.com/new-optin/): CISOs: Discover How Proficio’s ProSOC XDR Neutralizes Threats in Under 4 Minutes—Before They Ever Reach Your Crown Jewels. - [Optin Thank You](https://www.proficio.com/optin-thank-you/): Thanks for submitting the form, we've got your response and someone from our team will try to reach you as soon as possible. - [About Proficio](https://www.proficio.com/company/about-us/): Proficio - [Proficio Company](https://www.proficio.com/company/) - [Leave A Review On Gartner](https://www.proficio.com/leave-a-review-on-gartner/): Thanks for submitting the review for us; if you have a minute, kindly leave us a review on Gartner as well (follow the link below): - [Reviews](https://www.proficio.com/reviews/): Your review Your overall rating Select a Rating5 Stars4 Stars3 Stars2 Stars1 Star Title of your review Your review Your name Your email This review is based on my own experience and is my genuine opinion. Submit Review - [Proficio Cisco Live 2025 – Book a Demo & Win VR Gear](https://www.proficio.com/proficio-attends-cisco-live-2025-event/): Catch us at Cisco Live 2025 in San Diego, California - [Proficio e+Transform 2025 – Book a Demo & Win VR Gear](https://www.proficio.com/proficio-etransform-2025-book-a-demo-win-vr-gear/): Catch us at e+Transform 2025 in Arlington Texas - [ProSOC XDR](https://www.proficio.com/services/prosoc-xdr/): ProSOC®  - [Optin](https://www.proficio.com/optin/): In today’s digital world, cyber threats evolve faster than most businesses can keep up. A single breach can cost millions in damages, downtime, and lost trust. Proficio’s Managed Detection and Response (MDR) services empower you to stay ahead of attackers with 24/7 monitoring, automated threat response, and cutting-edge cybersecurity intelligence. - [Active Defense Collective](https://www.proficio.com/services/active-defense-collective/): Active Defense Collective is our patent-pending solution that implements proactive blocks in your network to stop attacks before they even happen. These unprecedented preemptive actions are powered by real-time indicators from collective intelligence gathered from countless networks monitored by Proficio’s award-winning ProSOC service. - [Press Releases](https://www.proficio.com/company/press-releases/) - [News](https://www.proficio.com/company/news/) - [Awards](https://www.proficio.com/company/awards/): Our MDR services have garnered industry recognition with more than 50 awards since 2015, a testament to our commitment to excellence. The list below showcases some of these accolades from Gartner, Business Intelligence Group (Fortress Cyber Security Awards), The Channel Company (CRN), and more. - [Thanks For Signing Up](https://www.proficio.com/thanks-for-signing-up/): Thank you for showing interest in Proficio. We are reaching out to let you know that we have received your request for your company's Cyber Exposure Monitoring Report. - [Proficio Brand Guidelines](https://www.proficio.com/company/branding-guidelines/): Welcome to the Proficio Branding Guidelines, your comprehensive resource for maintaining consistency and clarity in representing our brand identity. As the inventor of SOC-as-a-Service, cybersecurity business intelligence, and automated threat response, Proficio was created with one purpose: to advance the global mission of managed detection and response. Our commitment to excellence, innovation, speed, agility, adaptability, and collaboration is at the core of everything we do. - [Strengthen Cyber Resilience](https://www.proficio.com/solutions/cyber-resilience/): Empowering cyber resilience with Proficio’s Proactive Protection Bundle: a ProSOC MDR enhancement. - [SMB Service Agreement](https://www.proficio.com/smb-service-agreement/): This SMB Service Agreement (this “Agreement”) governs the terms and conditions between Proficio and Client with regard to Client’s use of Proficio’s ProSOC Managed Detection and Response for Small and Medium-Sized Business (the “Services”). Proficio and Client may be individually referenced as a “party” or collectively the “parties” in this Agreement. - [Data Processing Addendum](https://www.proficio.com/data-processing-addendum/): 1.4. Insofar as Proficio will be processing Personal Data subject to EU Data Protection Law on behalf of the Customer in the course of the performance of the Services Agreement with the Customer the terms of this Data Protection Addendum shall apply. - [ProBAS Breach Attack and Simulation](https://www.proficio.com/services/probas-breach-attack-and-simulation/): In the relentless world of cyber threats that define our digital era, our pioneering solution, Proficio® Breach and Attack Simulation (ProBAS) stands as a steadfast ally, ensuring your cybersecurity is robust, responsive, and ready to meet challenges head-on. ProBAS combines state-of-the-art technology with expert analysis to proactively uncover vulnerabilities, rigorously test your security infrastructure, and empower your teams against a spectrum of cyber threats. - [Request A Demo](https://www.proficio.com/request-a-demo/) - [Proficio Blog | Stay protected in an AI world](https://www.proficio.com/company/blog/): Blog - [Cyber Exposure Monitoring](https://www.proficio.com/services/cyber-exposure-monitoring/): Proficio® Cyber Exposure Monitoring (CEM) service takes external exposure detection further for complete visibility and threat protection.  - [Proficio Master Services Agreement](https://www.proficio.com/prosoc_msa/): Proficio Master Service Agreement - [Terms Of Use](https://www.proficio.com/terms-of-use/): These terms of use are entered into by and between You and ProSOC, Inc. dba “Proficio” (“Company”, “we” or “us”). The following terms and conditions, together with any documents they expressly incorporate by reference (collectively, “Terms of Use”), govern your access to and use of www.proficio.com, including any content, functionality and services offered on or through www.proficio.com (the “Website”). - [Privacy Notice & Cookie Policy](https://www.proficio.com/privacy-policy/): This Privacy Notice describes how ProSOC, Inc. dba Proficio (“Company”, “we”, “our” or “us”) collects, uses, maintains, and protects your personal data. This Privacy Notice applies to information we collect: - [Contact Proficio](https://www.proficio.com/company/contact-us/): Thank you for considering Proficio for your cybersecurity needs. Please fill out the form and one of our cybersecurity specialists will be in touch with you shortly to discuss how we can assist you in achieving your goals. - [Careers](https://www.proficio.com/company/careers/): Careers at Proficio - [Leadership](https://www.proficio.com/company/leadership/): Brad is the co-founder and CEO of Proficio. Under his leadership, the company has grown from a startup to an industry leader in the MDR services market. - [Become A Partner](https://www.proficio.com/partners/become-a-partner/): Discover the potential for growth and success by partnering with Proficio. Whether you're interested in exploring collaboration opportunities or seeking to enhance your business with our MDR and cybersecurity services, we're here to help. - [Managed Service Provider Partners](https://www.proficio.com/partners/managed-service-provider-partners/): MDR Services for Managed Service Providers - [Technology Partners](https://www.proficio.com/partners/technology-partners/): Our strategic technology partnerships enable our joint customers to harness the power of SIEM (Security Information and Event Management), EDR (Endpoint Detection and Response), and other security tools as part of our comprehensive MDR services. By choosing Proficio®, businesses can consume these tools effortlessly, without the need for in-house expertise and extensive hiring and training. We provide 24/7 security monitoring, advanced threat detection, automated threat response-as-a-service, and proactive cybersecurity services to optimize your investments in your existing security tools. - [Channel Partners](https://www.proficio.com/partners/channel-partners/): We’re a collaborative bunch and don’t want to make our channel partners jump through hoops to work with us. Proficio® Partner Managers help get your Proficio® practice up and running quickly by guiding you through the onboarding process and beyond. - [Partners](https://www.proficio.com/partners/): Our channel partners play a pivotal role in extending the reach of our innovative cybersecurity solutions, ensuring businesses worldwide can access and implement the latest in threat protection and resilience. - [State & Local Government](https://www.proficio.com/solutions/state-local-government/) - [Manufacturing](https://www.proficio.com/solutions/manufacturing/): ProSOC® MDR Services for ManufacturingHelping manufacturers strengthen their cybersecurity defenses, maintain operational continuity, and protect critical assets from a constantly evolving threat landscape. - [Legal](https://www.proficio.com/solutions/legal/): ProSOC® MDR for Law Firms and Corporate Legal DepartmentsEnsure the integrity and confidentiality of your legal and case information. - [Insurance](https://www.proficio.com/solutions/insurance/) - [Hospitality ](https://www.proficio.com/solutions/hospitality/): We recognize the difficulty in safeguarding vast data with limited resources. To address this challenge, we offer tailored and affordable Managed Detection and Response (MDR) services designed for your hospitality business. As an extension of your team, we provide 24/7 security monitoring, advanced threat detection, automated threat response, and proactive cybersecurity services, ensuring PCI compliance, and proactively addressing security gaps. - [Higher Education](https://www.proficio.com/solutions/higher-education/) - [Financial Services](https://www.proficio.com/solutions/financial-services/): ProSOC® MDR Services for Financial ServicesEnhance cybersecurity resilience in financial services with ProSOC® MDR. Defend against ransomware, secure digital transformation, and ensure 24/7 proactive threat detection and response.Protect Your Assets from Cyber Risks 24/7 - [Healthcare](https://www.proficio.com/solutions/healthcare/): In the healthcare sector, cyberattacks pose severe threats, jeopardizing patient lives. The rising connectivity of medical devices amplifies risks for vulnerable patient data across digital systems. ProSOC® MDR emerges as a transformative solution, flipping the script for healthcare providers and payors facing relentless cyber threats. - [Reporting & Business Intelligence](https://www.proficio.com/solutions/reporting-business-intelligence/): Actionable insights to fortify your defenses and proactively respond to emerging threats. - [Cyber Insurance Requirements](https://www.proficio.com/solutions/cyber-insurance-requirements/): Meet Cyber Insurance Requirements - [Compliance Assurance](https://www.proficio.com/solutions/compliance-assurance/): That is why we are committed to excellence and adherence to the highest privacy and data security standards. Our clients not only rely on us for protection against cyber threats but also seek assistance in navigating complex compliance regulations. Our MDR services are designed not only to safeguard against evolving cyber threats but also to assist your business in meeting and exceeding regulatory requirements. - [Mitigate Threats To Prevent Breaches](https://www.proficio.com/solutions/mitigate-threats-to-prevent-breaches/): Empowering businesses with comprehensive security solutions to proactively mitigate threats and prevent breaches. - [Identify Targeted Attacks](https://www.proficio.com/solutions/identify-targeted-attacks/): Proficio’s Approach to Targeted Attacks - [Protect Your Network](https://www.proficio.com/solutions/protect-your-network/): Fortifying Network Defenses with ProSOC® MDRProtect your business with real-time threat detection, containment, and risk-based vulnerability management for robust perimeter defense against cyber threats.Fortify Your Defenses at the Perimeter - [Protect Your Identities](https://www.proficio.com/solutions/protect-your-identities/): Safeguarding User Identities - [Protect Your Endpoints](https://www.proficio.com/solutions/protect-your-endpoints/): Protect your business with real-time threat detection, containment, and risk-based vulnerability management for robust defense at your endpoints against cyber threats.Fortify Your Endpoint Defenses - [Protect Your Cloud](https://www.proficio.com/solutions/protect-your-cloud/): Protect Your CloudManaged Detect and Response (MDR) services for hybrid and multi-cloud workloads.Cloud Workloads Raise the Stakes on Security - [Improve MTTD & Reduce False Positives](https://www.proficio.com/solutions/improve-mttd-reduce-false-positives/): Enhance cyber resilience with Proficio® MDR services. Combat alert overload, reduce false positives, and boost your cybersecurity operations. - [Accelerate Your SIEM Deployment](https://www.proficio.com/solutions/accelerate-your-siem-deployment/): Maximize Return on Your Security Information and Event Management (SIEM) Investment with Proficio® Implementation Services for Microsoft Sentinel and Splunk. - [24-7 Security Operations](https://www.proficio.com/solutions/24-7-security-operations/): Safeguard your organization with Proficio® SOC-as-a-Service — 24/7 cybersecurity protection, advanced SIEM technology, and compliance assurance. - [Solutions](https://www.proficio.com/solutions/): Our cybersecurity solutions are designed to tackle the dynamic challenges of today's digital environment. - [Security Device Management](https://www.proficio.com/services/security-device-management/): Maintaining the health of your security devices to better protect your organization.Expert Security Device Management - [Cybersecurity Professional Services](https://www.proficio.com/services/cybersecurity-professional-services/): Proficio® Cybersecurity Professional Services addresses the full incident response lifecycle, from preparedness to post-incident investigation. We proactively identify vulnerabilities, test controls, and provide managed security services. - [Managed SIEM](https://www.proficio.com/services/managed-siem/): You must orchestrate it for comprehensive data source ingestion, contextual analysis, and false positive reduction. It requires constant tuning to detect unknown threats by applying threat intelligence to content and models. Security teams often struggle to find the time to apply the expertise needed to do this. That’s where Proficio’s Managed SIEM comes in, providing the expertise and resources you need to enhance your SIEM’s performance. - [Risk Based Vulnerability Management](https://www.proficio.com/services/risk-based-vulnerability-management/): The challenge often lies in the overwhelming number of vulnerabilities detected by VM tools, which can strain teams that have limited resources for mitigating or remediating these issues. Proficio's Risk-Based Vulnerability Management (RBVM) service addresses this by prioritizing vulnerabilities based on their impact and relevance. - [Identity Threat Detection and Response](https://www.proficio.com/services/identity-threat-detection-and-response/): As an extension of our MDR service, ProSOC® Identity Threat Detection and Response (ITDR) service combines human-led investigations and advanced technology to fortify against identity and credential compromise and abuse, stop lateral movement, and counter ransomware attacks. Prioritizing user identity security, ProSOC® ITDR ensures your organization maintains a resilient shield in the face of identity attacks. - [Active Defense Response](https://www.proficio.com/services/active-defense-response/): ProSOC Active Defense Response - [MDR for Endpoint](https://www.proficio.com/services/mdr-for-endpoint/): ProSOC® MDR for Endpoint is a managed detection and response service providing real-time monitoring, threat detection, and automated response for endpoints. It ensures continuous visibility, isolates compromised devices, and provides guided remediation to prevent breaches while supporting compliance and operational efficiency. - [MDR For Splunk](https://www.proficio.com/services/mdr-for-splunk/): Fortify your cyber defenses with ProSOC® MDR for Splunk. - [MDR For Microsoft](https://www.proficio.com/services/mdr-for-microsoft/): Fortify your cyber defenses with ProSOC® MDR for Microsoft. Seamlessly integrating with your Microsoft Sentinel SIEM, ProSOC® MDR for Microsoft, delivers 24/7 security monitoring, advanced threat detection, automated threat response, expertly managed SIEM services, and implementation support for your Microsoft Sentinel SIEM. - [ProSOC MDR](https://www.proficio.com/services/prosoc-mdr/): Proficio’s ProSOC MDR delivers enterprise-grade Managed Detection and Response as a fully managed service. Instead of building and staffing your own Security Operations Center, you get 24/7 threat monitoring, detection, investigation, and response — powered by Agentic AI and backed by global SOC experts. - [Services](https://www.proficio.com/services/): Safeguard your business against ever-evolving cyber threats with our advanced Managed Detection and Response (MDR) services. By bridging security and resource gaps, we ensure proactive defense, reducing the risk of breaches and contributing to a safer world. - [Proficio’s Homepage](https://www.proficio.com/): Proficio® pioneers Agentic AI SOC, combining autonomous AI-powered threat detection, SOC automation, and 24/7 managed detection and response. We empower organizations to stay ahead of evolving cyber threats with next-generation security operations.  ## Events - [Charlotte Cybersecurity Summit](https://www.proficio.com/events/charlotte-cybersecurity-summit/) - [Detroit Cybersecurity Summit](https://www.proficio.com/events/dc-metro-cybersecurity-summit-copy/) - [DC Metro Cybersecurity Summit](https://www.proficio.com/events/dc-metro-cybersecurity-summit/) ## Press Releases - [Proficio Dominates 2026 Global InfoSec Awards with Five‑Category Sweep](https://www.proficio.com/press-release/proficio-dominates-2026-global-infosec-awards-with-five-category-sweep/): Irvine, California – April 8, 2026 — Cyber Defense Magazine (CDM), the industry’s leading electronic information security publication, has honored Proficio with five distinct 2026 Global InfoSec Awards. - [Proficio Wins Three Prestigious Awards in the 2025 Top InfoSec Innovators by Cyber Defense Awards](https://www.proficio.com/press-release/proficio-wins-2025-top-infosec/): CARLSBAD, Calif., Nov. 12, 2025 /PRNewswire/ -- Proficio®, a global leader in extended detection and response (XDR) services, has been honored with three major awards in the 13th annual Top InfoSec Innovator Awards for 2025 presented by Cyber Defense Magazine. The company earned recognition as: - [Proficio Wins 2025 Elastic Excellence Award for Security Business Transformation](https://www.proficio.com/press-release/2025-elastic-excellence-awards/): Proficio®, a leading Managed Security Services Provider (MSSP), proudly announces its recognition as the winner of the Security Business Transformation Award at the 2025 Elastic Excellence Awards. This prestigious accolade highlights Proficio’s innovative use of Elastic Security for rapid threat detection and response, empowering organizations to combat evolving cyber threats. - [Proficio to Expand Managed XDR Services with Cisco SolutionsPlus Partnership](https://www.proficio.com/press-release/cisco-solutionsplus-partner-offers-managed-xdr/): SAN DIEGO, May 26, 2025 /PRNewswire/ -- As a valued Cisco Partner, Proficio® is excited to announce it is expanding its security offerings by harnessing the capabilities of Cisco's Managed XDR (Extended Detection and Response) platform for managed security services. Proficio, a globally recognized leader in Managed Detection and Response (MDR), proudly announces the launch of its ProSOC Managed XDR service including 24x7 SOC (Security Operations Center) threat detection and active response in collaboration. This pioneering solution offers an innovative approach to cybersecurity, combining Proficio's expert SOC-as-a-Service with the advanced capabilities of a customer-licensed Cisco XDR platform. - [Proficio Launches Active Defense Collective (Patent Pending)](https://www.proficio.com/press-release/proficio-active-defense-collective/): San Diego, CA – April 10, 2025 – Proficio®, a leader in Managed Detection and Response (MDR) services, is proud to announce the launch of its latest innovation, Active Defense Collective (Patent Pending). This cutting-edge solution extends Proficio’s existing Active Defense XDR service, offering clients a proactive approach to cybersecurity by blocking active global attackers in real-time before they attack and compromise your network and devices. Active Defense Collective leverages Proficio’s extensive Threat Intelligence and Crowd Sourced Collective Attack Discovery from all Clients to provide an unprecedented level of security across diverse customer networks. - [Proficio Appoints Sheena Marie Streling as Marketing Director](https://www.proficio.com/press-release/proficio-appoints-sheena-marie-streling-as-marketing-director/): Managed detection and response provider taps digital marketing expert with a focus on secure content to support global expansion initiatives - [Proficio Unveils New AI Assistant Module for ProSOC MDR](https://www.proficio.com/press-release/ai-for-prosoc-mdr/): Carlsbad, CA, November 5, 2024 — Proficio®, a leader in Managed Detection and Response (MDR) services, today announced the launch of its AI Assistant Module, now integrated into the ProSOC MDR platform. This new feature leverages AI-driven use cases within Proficio’s Security Management Platform, empowering ProSOC MDR users with comprehensive visibility, situational awareness, and actionable response recommendations to security alerts generated by a wide range of devices and telemetry sources. - [Proficio Launches New ProBAS Breach and Attack Simulation Service](https://www.proficio.com/press-release/probas-breach-attack-simulation/): Carlsbad, CA, June 30, 2024 —Proficio®, a leading Managed Detection and Response (MDR) provider, today announced the roll out of its ProBAS Breach and Attack Simulation service. By rigorously testing an organization’s security defenses, ProBAS ensures they can prevent compromise events and detect attacks throughout the entire threat detection and response process. From device alert logs to SIEM, SOC detection, and containment response actions, ProBAS covers every aspect. - [Proficio’s VP of Marketing, Jen Ferguson, Named to Channel Insider’s 2024 Channel Marketing Leaders 100 List](https://www.proficio.com/press-release/jen-ferguson-channel-insiders-2024-marketing-leaders100-list/): CARLSBAD, CALIFORNIA, USA, June 19, 2024 /EINPresswire.com/ -- Proficio®, a leading Managed Detection and Response (MDR) provider, today announced that Channel Insider, a TechnologyAdvice brand, named Jen Ferguson, Proficio’s Vice President of Marketing to its inaugural Channel Marketing Leaders 100 list. This list recognizes 100 of the most strategic IT channel marketers supporting the growth of their organization’s North American IT channel partner programs. - [Proficio Wins 2024 Cybersecurity Excellence Award for Managed Detection and Response Services](https://www.proficio.com/press-release/proficio-wins-2024-cybersecurity-excellence-award-for-managed-detection-and-response-services/): CARLSBAD, CALIFORNIA, USA, May 13, 2024 /EINPresswire.com/ -- Proficio®, a leading Managed Detection and Response (MDR) provider, is a winner of the 2024 Cybersecurity Excellence Awards in the Managed Detection and Response (MDR) category, the company announced today. The Cybersecurity Excellence Awards is an annual awards program recognizing individuals and companies that demonstrate excellence, innovation, and leadership in information security. - [RapidScale Partners with Proficio to Offer SOC as a Service (SOCaaS) Delivering Advanced Threat Protection for Customers](https://www.proficio.com/press-release/rapidscale-proficio-mdr-socaas/): Reaching beyond traditional cybersecurity measures, RapidScale’s SOCaaS offering provides continuous monitoring, real-time threat detection, and automated response capabilities from expert security analysts. Customers can reinforce their defenses, detect and respond to threats faster, manage budgets with predictable pricing, and reduce the risk of costly security breaches. Packaging this advanced protection with RapidScale’s managed services enables organizations to focus on core business objectives in today’s evolving threat landscape. - [Proficio Recognized in the 2024 Gartner® Market Guide for Co-Managed Security Monitoring Services Report](https://www.proficio.com/press-release/proficio-recognized-in-the-2024-gartner-market-guide/): Report provides "co-managed security monitoring as services that provide remote maintenance and monitoring of client-owned threat detection, investigation and response (TDIR) capable products.”   - [Proficio Named to CRN’s 2024 MSP 500 List](https://www.proficio.com/press-release/proficio-named-to-crns-2024-msp-500-list/): The MSP 500 list compiled by CRN serves as a comprehensive guide to identifying and recognizing the top Managed Service Providers (MSPs) in North America. MSPs play a crucial role in supporting businesses by offering managed services that enhance efficiency, simplify IT solutions, and optimize return on investment.  - [Proficio Attains ISO 27001:2013 Certification](https://www.proficio.com/press-release/proficio-attains-iso27001-certification/): Carlsbad, CA  – January 18, 2024 - Proficio, a leading Managed Detection and Response (MDR) Provider, today announced its achievement of ISO 27001:2013 certification. This globally recognized certification, known as the gold standard in information security, underscores Proficio's unwavering dedication to providing the highest level of data protection for its MDR clients around the globe.  - [Proficio and CyberSix Partner to Deliver Managed Security Services](https://www.proficio.com/press-release/proficio-and-cybersix-partner-to-deliver-managed-security-services/): Proficio, a managed security services provider (MSSP) delivering managed detection and response (MDR) services, and CyberSix, a new class of cybersecurity company, today announced they have entered into a partnership to deliver Proficio Managed Security Services to CyberSix clients. - [Proficio Expands Cybersecurity Offerings through Cyber Intelligence House Partnership](https://www.proficio.com/press-release/proficio-expands-cybersecurity-offerings-through-cyber-intelligence-house-partnership/): Collaboration provides advanced cyber exposure monitoring services - [Proficio Named Winner of the Coveted Global InfoSec Awards During RSA Conference 2023](https://www.proficio.com/press-release/proficio-named-winner-of-the-coveted-global-infosec-awards-during-rsa-conference-2023/): Proficio Wins Three Awards in 11th Annual Global InfoSec Awards at #RSAC 2023 - [Proficio Included in Gartner’s 2023 Market Guide for Managed Detection and Response Services for Sixth Year in a Row](https://www.proficio.com/press-release/proficio-included-in-gartners-2023-market-guide-for-managed-detection-and-response-services-for-sixth-year-in-a-row/): Carlsbad, Calif. – February 16, 2023 – Proficio, a managed security services provider (MSSP) delivering managed detection and response (MDR) services, today announced they have been recognized once again as a Representative Vendor in Gartner’s 2023 Market Guide for Managed Detection and Response Services*. Gartner has been tracking the changes in the MDR market, sharing that the high-growth MDR market expanded nearly 50% worldwide from 2020 to 2021. - [Proficio Recognized on CRN’s 2023 MSP 500 List](https://www.proficio.com/press-release/proficio-recognized-on-crns-2023-msp-500-list/): Carlsbad, CA – February 13, 2023 – Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), announced today that CRN®, a brand of The Channel Company, has named Proficio to its Managed Service Provider (MSP) 500 list in the Managed Security 100 category for 2023. CRN’s annual MSP 500 list identifies the industry-leading service providers in North America who are driving a new wave of growth and innovation for the channel through forward-thinking approaches to managed services, helping end users increase efficiency and simplify IT solutions, while maximizing their return on investment. - [Proficio Announces First Half Growth and Top 25 Placement in MSSP Alert’s Top 250 MSSPs](https://www.proficio.com/press-release/first-half-growth-and-top-25-placement/): CARLSBAD -  September 21, 2022 - Proficio, a leading Managed Detection and Response (MDR) service provider, today announced their significant growth in the first half of 2022, as well as a top 25 placement in MSSP Alert’s recent MSSP 250. - [Proficio Extends Industry Leading XDR Offering with Push-Button Threat Response](https://www.proficio.com/press-release/xdr-push-button-threat-response/): CARLSBAD -  August 17, 2022 - Proficio, a leading Managed Detection and Response (MDR) service provider, today announced the addition of an innovative new feature to their threat response offering. Proficio’s Active Defense offering now includes automated response and a new push-button response feature. These capabilities work with clients’ existing security tools to contain attacks at the perimeter, endpoint, cloud, and identity layer. - [Proficio Achieves Modern Compute and Identity Behavior Monitoring Specialization Distinctions in the AWS Level 1 MSSP Competency](https://www.proficio.com/press-release/aws-identity-behavior-monitoring/): CARLSBAD, CA - July 26, 2022 - Proficio, a leading Managed Detection and Response (MDR) service provider, announced today that it has achieved both the Modern Compute and Identity Behavior Monitoring specialization distinctions in the Amazon Web Services (AWS) Level 1 MSSP Competency. These new distinctions recognize that Proficio has successfully met both AWS's Level 1 Managed Security Services baseline requirements and additional technical and operational requirements for providing customers with a deep level of modern computing and identity behavior monitoring security services uniquely designed for AWS environments. - [Proficio Awarded Government License to Provide Managed Security Operations Centre SOC Monitoring Services in Singapore](https://www.proficio.com/press-release/proficio-government-license-managed-soc-monitoring/): Singapore – June 23, 2022 - Proficio, a leading Managed Detection and Response (MDR) service provider, today announced that it has been licensed by the Cyber Security Agency (CSA) of Singapore to provide Managed SOC Monitoring Services. Conferred by the 2018 Cybersecurity Act, the new licensing framework is required to operate in Singapore and aims to better safeguard consumers’ interests and improve service providers’ standards. - [Proficio Launches New Service to Protect Enterprises from Identity Threat Detection and Response Attacks](https://www.proficio.com/press-release/announcement-proficio-identity-threat-detection-and-response/): Identity Threat Detection and Response powered by ProSOC MDR and Active Defense XDR - [Proficio Named Global Security Operations Center SOC Team of the Year](https://www.proficio.com/press-release/proficio-named-soc-team-of-the-year/): Carlsbad, Calif. – February 3, 2022 (updated February 11, 2022) – Proficio, a managed security services provider (MSSP) delivering managed detection and response (MDR) services, today announced they received 3 2022 Cybersecurity Excellence Gold awards for SOC Team of the Year, Managed Detection and Response (MDR) Provider of the Year, and AWS Cloud Security Provider of the Year. The Cybersecurity Excellence Awards honor companies that demonstrate excellence and innovation and receive acclaim from the broader cybersecurity community. - [Proficio Included in Gartner’s 2021 Market Guide for Managed Detection and Response Services for Fifth Year in a Row](https://www.proficio.com/press-release/proficio-gartner-market-guide-2021/): Carlsbad, Calif. – October 26, 2021 – Proficio, a managed security services provider (MSSP) delivering managed detection and response (MDR) services, today announced they have been recognized once again as a Representative Vendor in Gartner’s 2021 Market Guide for Managed Detection and Response Services* for the fifth consecutive year.   - [IGXGlobal to Provide Managed Detection and Response Security Services to Customers Across Europe](https://www.proficio.com/press-release/igxglobal-to-provide-managed-detection-and-response-security-services-to-customers-across-europe/): Herndon, VA -  September, 2021 - ePlus inc. (NASDAQ NGS: PLUS – news) today announced that its London-based subsidiary, IGXGlobal UK Limited, has expanded its Security Services portfolio to include a new Managed Detection and Response (MDR) offering that will help customers across Europe defend against growing cyber-threats. - [Proficio Achieves AWS Level 1 Managed Security Service Provider Competency Status and Becomes an MSSP Seller in AWS Marketplace](https://www.proficio.com/press-release/proficio-achieves-aws-level-1-managed-security-service-provider-competency-status-and-becomes-an-mssp-seller-in-aws-marketplace/): AWS launched the AWS Level 1 MSSP Competency together with a dedicated MSSP solution area in AWS Marketplace to enable customers to easily acquire ongoing security monitoring and management, validated by AWS. AWS security experts annually validate the tools used and operational processes of each MSSP to address specific cloud security challenges such as continuous event monitoring, triaging, AWS service configuration best practices, and 24/7 incident response. The AWS Level 1 MSSP Competency along with the AWS Marketplace MSSP solution area provide a faster and easier experience for customers to select the right MSSP to help them achieve their goals for business risk and cloud strategy confidence. - [MDR Service Provider Proficio Enables Rapid Threat Containment with Microsoft Defender ATP](https://www.proficio.com/press-release/microsoft-defender-atp-rapid-threat-containment-release/): CARLSBAD -  May 4, 2021 - Proficio, a managed security services provider (MSSP) delivering managed detection and response (MDR) services, today announced that its proprietary automated response solution, Active Defense, now supports Microsoft Defender ATP. This feature allows Proficio to quickly quarantine or isolate hosts from the network that are determined to be an immediate threat to their clients. - [MDR Service Provider Proficio Issued Patent for ThreatInsight Cyber Risk Scoring](https://www.proficio.com/press-release/proficio-threatinsight-patent/): CARLSBAD -  March  10, 2021 - Proficio, a managed security services provider (MSSP) delivering managed detection and response (MDR) services, today announced that the United States Patent and Trademark Office (USPTO) has issued the company U.S. Patent No. 10,931,703 for its cyber risk scoring capabilities known as ThreatInsight®. - [Proficio Recognized as a Leader in KuppingerCole’s Market Compass for SOC-as-a-Service](https://www.proficio.com/press-release/kuppingercole-market-compass-2021-soc-as-a-service/): Carlsbad, CA – March 2, 2021 – Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), has received one of the highest ratings in KuppingerCole’s Market Compass for SOC-as-a-Service (SOCaaS). - [Proficio Named to MSSP Alert’s Top 250 MSSPs List for 2020 ](https://www.proficio.com/press-release/mssp-alert-top-250-2020/): Carlsbad, CA – September 24, 2020 – MSSP Alert, published by After Nines Inc., has named Proficio to the Top 250 MSSPs list for 2020 (http://www.msspalert.com/top250).   - [Proficio Included in Gartner’s 2020 Market Guide for Managed Detection and Response Services for Fourth Consecutive Year](https://www.proficio.com/press-release/proficio-included-in-gartners-2020-market-guide-for-managed-detection-and-response-services-for-fourth-consecutive-year/): Carlsbad, Calif. – September 9, 2020 – Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), has been recognized as a Representative Vendor in Gartner’s 2020 Market Guide for Managed Detection and Response Services* for the fourth year in a row. - [Proficio Appoints KJ Lee as Sales Director, APAC](https://www.proficio.com/press-release/proficio-appoints-kj-lee-as-sales-director-apac/): Lee to Expand Proficio’s MDR Services within APAC Region - [Proficio Appoints Chris Jenkins as Sales Director, UK and Ireland](https://www.proficio.com/press-release/proficio-appoints-chris-jenkins-as-sales-director-uk-and-ireland/): London/Barcelona -  March 26, 2020 - Proficio, a managed security services provider (MSSP) delivering managed detection and response (MDR), today announced that Chris Jenkins has been appointed Director of Sales for the UK and Ireland. As a seasoned cybersecurity executive, Jenkins will be responsible for continuing to grow Proficio’s client base in key European markets. - [Proficio Recognized for Innovative Managed Detection and Response Services](https://www.proficio.com/press-release/innovative-managed-detection-and-response-services/): “Managed detection and response services are a critical component of an enterprises’ cybersecurity strategy. Organizations across industries trust Proficio to keep their environments secure around-the-clock, and we take that responsibility very seriously,” said Brad Taylor, CEO, Proficio. “We are honored to receive these latest awards in recognition of the best-in-class services we provide and the value we deliver to our customers.” - [Proficio Partners with Qualys to Expand its Managed Detection and Response Services](https://www.proficio.com/press-release/proficio-partners-with-qualys-to-expand-its-managed-detection-and-response-services/): CARLSBAD, CA and FOSTER CITY, CA – August 5, 2019 - [Proficio Named in Gartner’s 2019 Market Guide for Managed Detection and Response Services for Third Consecutive Year](https://www.proficio.com/press-release/proficio-named-in-gartners-2019-market-guide-for-managed-detection-and-response-services-for-third-consecutive-year/): Carlsbad, Calif. – July 25, 2019 – Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), has been recognized as a Representative Vendor in Gartner’s July 15, 2019 “Market Guide for Managed Detection and Response Services” for the third year in a row. The report states, “MDR services add 24/7 threat monitoring, detection and response capabilities to security operations capabilities via an outcome-oriented approach. Security and risk management leaders should use this research to determine if MDR services are a good fit for their goals, use cases and requirements. - [Proficio Recognized for its Leadership and Innovation in Managed Security Services](https://www.proficio.com/press-release/proficio-recognized-for-its-leadership-and-innovation-in-managed-security-services/): Carlsbad, CA – May 15, 2019 – Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), today announced a host of recent accolades for its innovative approach to managed security services and impact on the cybersecurity market. This recognition comes from leading organizations, including: - [Proficio Opens London Office to Meet Growing Demand for Managed Security Services](https://www.proficio.com/press-release/proficio-opens-london-office-to-meet-growing-demand-for-managed-security-services/): London, UK – April 9, 2019 – Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), today announced the opening of its new London office. The new office is part of Proficio’s expanded EMEA presence and reflects the increasing demand for Proficio’s managed security services in the UK. - [Proficio Selected as SC Media 2019 Trust Award Finalist](https://www.proficio.com/press-release/proficio-selected-as-sc-media-2019-trust-award-finalist/): Carlsbad, CA – December 17, 2018 – Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), today announced that the company has been recognized as a Trust Award finalist in the Best Managed Security Service category for the 2019 SC Awards. The finalists and winners for the Trust Awards are chosen by an expert panel of judges with extensive knowledge and experience in the cybersecurity industry. Winners will be announced at the SC Awards ceremony on March 5, 2019 in San Francisco. - [Proficio Selected as SC Media 2019 Trust Award Finalist](https://www.proficio.com/press-release/proficio-selected-as-sc-media-2019-trust-award-finalist-2/): Carlsbad, CA - December 17, 2018 - Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), today announced that the company has been recognized as a Trust Award finalist in the Best Managed Security Service category for the 2019 SC Awards. The finalists and winners for the Trust Awards are chosen by an expert panel of judges with extensive knowledge and experience in the cybersecurity industry. Winners will be announced at the SC Awards ceremony on March 5, 2019 in San Francisco. - [Proficio Announces Proficio Security Summit 2018](https://www.proficio.com/press-release/proficio-announces-proficio-security-summit-2018-2/): Proficio Security Summit Brings Leaders in IT Security Together to Discuss CyberSecurity Best Practices - [Proficio Announces Proficio Security Summit 2018](https://www.proficio.com/press-release/proficio-announces-proficio-security-summit-2018/): Proficio Security Summit Brings Leaders in IT Security Together to Discuss CyberSecurity Best Practices - [Proficio Appoints Paul Hennebury as VP of Client Success](https://www.proficio.com/press-release/proficio-appoints-paul-hennebury-vp-client-success/): Hennebury to Scale Client Success to Support Rapidly Growing Client Base - [Proficio Recognized by Gartner for Managed Detection and Response Services for Second Consecutive Year](https://www.proficio.com/press-release/proficio-recognized-gartner-managed-detection-response-services-second-consecutive-year/): Carlsbad, CA - August 8, 2018 - Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), today announced that it has been included for the second year in a row in Gartner’s Market Guide for Managed Detection and Response Services. - [Proficio Continues Rapid Global Expansion into Australia](https://www.proficio.com/press-release/proficio-continues-rapid-global-expansion-australia/): CARLSBAD, CA – May 30, 2018 – Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), today announced the opening of its newest international facility in Melbourne, Australia. The expansion into Australia is part of Proficio’s strategic global growth initiative to meet the fast-growing demand of regional businesses for around-the-clock managed security services. - [Proficio Recognized with Ten Top Industry Awards for Excellence in Cybersecurity Services](https://www.proficio.com/press-release/proficio-recognized-ten-top-industry-awards-excellence-cybersecurity-services/): 2018 Recognitions Include Cybersecurity Company of the Year, Security Team of the Year and Excellence in SOC-as-a-Service Solution and Splunk Services   - [Proficio Enhances Ransomware Services with Cybersight Partnership](https://www.proficio.com/press-release/proficio-enhances-ransomware-services-cybersight-partnership/): CARLSBAD, CA – February 27, 2018 – Proficio, a world-class managed security services provider (MSSP) delivering managed detection and response (MDR) and CyberSight, the creators of RansomStopperTM, a next-generation anti-ransomware solution, today announced a strategic partnership. The advanced combination of Proficio’s 24x7 managed cybersecurity services and CyberSight’s RansomStopper will provide clients with enhanced endpoint detection and response services that will specifically detect and prevent ransomware attacks in real-time. - [Proficio Projects Rapid Increase in Market Share After Record-Breaking 2017](https://www.proficio.com/press-release/proficio-projects-rapid-increase-market-share-record-breaking-2017/): CARLSBAD, CA – January 16, 2018 – Proficio, one of the world’s fastest-growing global managed security service providers (MSSP) delivering managed detection and response (MDR), closed out a record-breaking 2017 and projects to double revenue and market share in 2018. Having accomplished significant growth through operational expansion and client acquisition, Proficio has acquired additional funding to release multiple new service offerings and is set for a prosperous new year. - [Proficio Secures New Round of Funding Led by Kayne Capital](https://www.proficio.com/press-release/proficio-secures-new-round-funding-led-kayne-capital/): Tim McElwee, co-founder, president and chairman of the board of Proficio stated, “We are ecstatic to further our partnership with Kayne Capital to increase the velocity of Proficio’s international success. The funding will allow us to rapidly expand our global presence in Asia Pacific and Europe as well as deliver a number of enhancements to our SOC-as-a-Service platform.” McElwee continues, “What’s made Proficio successful is our dedication to clients and a commitment to innovation. Kayne’s additional investment helps accelerate that innovation and cement our position as a global market leader.” - [Proficio Disrupts Cybersecurity Industry with “First Year Free” Services Program](https://www.proficio.com/press-release/proficio-disrupts-cybersecurity-industry-first-year-free-services-program/): Carlsbad, CA – October 24, 2017 – Proficio™, one of the world’s fastest growing global managed security service providers (MSSP) delivering managed detection and response (MDR), today announced “First Year Free,” a limited-time promotion for select new clients. The exclusive offer provides a free first year of managed security services, including global 24x7 monitoring and alerting. - [Global Managed Security Services Provider Expands Presence into Atlanta](https://www.proficio.com/press-release/global-managed-security-services-provider-expands-presence-atlanta/): ATLANTA, Oct. 03, 2017 (GLOBE NEWSWIRE) -- Proficio, one of the fastest growing global cybersecurity service providers, today announced the opening of its new Atlanta office. Located in downtown Atlanta, the office serves as a company foothold in the city and brings Proficio’s world-class managed security services to the growing business population in the area. - [Proficio Expands Asia Footprint with New Hong Kong Presence](https://www.proficio.com/press-release/proficio-expands-asia-footprint-new-hong-kong-presence/): SINGAPORE, July 25, 2017 - Proficio, one of the fastest growing managed security service providers (MSSPs) delivering managed detection and response (MDR), today announced its newly expanded Asia presence in Hong Kong. Following quickly on the launch of its security operations center (SOC) in Barcelona, Spain, this expansion enables Proficio to broaden its presence in the Asia-Pacific (APAC) region and service more clients globally. - [Proficio Enhances Co-managed Solution to Help Companies Optimize Their SIEM Investment with Splunk](https://www.proficio.com/press-release/proficio-enhances-splunk-co-managed-solutions-help-companies-optimize-siem-investment/): Carlsbad, CA – July 24, 2017 – Proficio, one of the fastest growing global cybersecurity service providers, today announced enhancements to its existing Splunk offering to better assist clients in optimizing their SIEM investments. - [PROFICIO ANNOUNCES EUROPEAN EXPANSION PLANS](https://www.proficio.com/press-release/proficio-announces-european-expansion-plans/): LONDON – January 25, 2017 – Proficio, an award-winning provider of managed detection and response (MDR) services, has announced plans to extend its international presence by launching its ProSOC family of cybersecurity protection services into the European market. Proficio also plans to build a European Security Operations Centre (SOC) in the region in order to help enterprises across Europe address the ever increasing and complex cyber threat landscape. - [Proficio and NECSIA Form Strategic Alliance to Deliver Advanced Cybersecurity Services to Spanish and European Enterprises](https://www.proficio.com/press-release/proficio-necsia-form-strategic-alliance-deliver-advanced-cybersecurity-services-spanish-european-enterprises/): BARCELONA, Spain – MAY 29, 2017 – Proficio, one of the fastest growing managed security service providers (MSSP) delivering managed detection and response (MDR), has signed a strategic alliance with Necsia IT Consulting, a leading firm specializing in cybersecurity and digital transformation services. This key partnership offers Necsia’s clients access to Proficio’s next generation managed cybersecurity services, including global 24x7 monitoring and alerting, advanced threat detection and automated response. - [Proficio Unveils EMEA Security Operations Center Steered by New Managing Director](https://www.proficio.com/press-release/proficio-unveils-emea-security-operations-center-steered-new-managing-director/): BARCELONA, Spain – May 8, 2017 - Proficio, one of the world’s fastest-growing managed security service providers (MSSPs) delivering managed detection and response (MDR) and other cybersecurity services, has appointed Tim Capps as managing director of EMEA. His onboarding is a strategic step in the company’s European and global expansion strategy. - [Proficio Named a Frost & Sullivan APAC 2017 Mover and Shaker](https://www.proficio.com/press-release/proficio-named-frost-sullivan-apac-2017-mover-shaker/): SINGAPORE– March 28, 2017 – Proficio, one of the fastest growing managed security service providers (MSSP) delivering managed detection and response (MDR), has been recognized by Frost & Sullivan for its incident response and advanced threat intelligence services, and overall vision for the security industry in the Asia-Pacific (APAC) region. - [Proficio Enhances ProSOC Service to Help Customers Meet HIPAA Compliance Protocol](https://www.proficio.com/press-release/proficio-enhances-prosoc-service-help-customers-meet-hipaa-compliance-protocol/): CARLSBAD, Calif. – February 20, 2017 – Proficio, one of the fastest growing managed security service providers (MSSP) delivering managed detection and response (MDR), has enhanced its ProSOC service offerings to help healthcare organizations more easily meet U.S. Department of Health & Human Services (HHS) HIPAA compliance. Proficio’s new HIPAA Compliance Insight service enables hospitals and healthcare organizations to be prepared when faced with an audit with well-defined processes, procedures, and documentation to quickly visualize and address their compliance posture, while effortlessly implementing accountability across the board. - [Proficio Enhances Synergy Partner Program to Meet Demand for Managed Security Services](https://www.proficio.com/press-release/proficio-enhances-synergy-partner-program-meet-demand-managed-security-services/): “Channel partnerships are a key part of our growth strategy and our goal is to make Proficio’s Synergy Partner Program the most partner-friendly model in the MSSP industry,” said John Humphreys, senior vice president of business development and alliances at Proficio. “Our channel partners can provide more value to their end user customers and address new cybersecurity challenges better with Proficio’s ProSOC managed security services.” - [Proficio Partners with CrowdStrike to Provide Advanced Managed Endpoint Security Services](https://www.proficio.com/press-release/proficio-partners-crowdstrike-provide-advanced-managed-endpoint-security-services/): Carlsbad, Calif. – December 15, 2016 — Proficio, an award-winning provider of managed detection and response (MDR) services, has partnered with CrowdStrike, the leader in cloud-delivered endpoint protection, to help customers deploy comprehensive security technology and services to protect their digital assets from the endpoint to the cloud. The partnership further delivers on Proficio’s best-of-breed approach to managed security services delivery, making it easier for enterprise customers to keep business-critical data secure using the technology that best meets their needs. - [Proficio Announces Aggressive Asia Pacific Expansion](https://www.proficio.com/press-release/proficio-announces-aggressive-asia-pacific-expansion/): Proficio will use this investment to expand its global geographical presence in the Americas, Asia Pacific and Europe, and introduce new cybersecurity platforms and services.  Founded in 2010, Proficio is a trailblazer in the managed security service provider (MSSP) and managed detection and response (MDR) spaces. The company has established a strong customer base in key markets, such as healthcare and financial services, and was one of the first MSSPs to establish a next-generation security operations center (SOC) in Singapore. Proficio’s ProSOC managed security services business is growing rapidly with over 100 percent year-over-year revenue growth for the last three years. - [Proficio Closes $12 Million Led by Kayne Capital](https://www.proficio.com/press-release/proficio-closes-12-million-led-kayne-capital/): “We are excited to be partnering with Kayne Capital as we accelerate the next phase of Proficio’s growth,” said Tim McElwee, co-founder, president and chairman of the board of Proficio. “We will continue our focus on delivering innovative solutions that help our customers protect, detect, and respond to cybersecurity threats. In the first half of 2017, we plan to introduce new services and platforms leveraging advanced analytics, threat intelligence, and orchestrated incident response.” - [Proficio Recognized on 2016 CRN Emerging Vendors List](https://www.proficio.com/press-release/proficio-recognized-2016-crn-emerging-vendors-list/): Carlsbad, CA, August 10, 2016 — Proficio, an award-winning provider of cloud-based security services, announced today that CRN®,  a brand of The Channel Company, has named the company to its 2016 list of Emerging Vendors. This annual list recognizes recently founded, up-and-coming technology suppliers who are shaping the future of the IT channel through unique technological innovations. In addition to celebrating these standout companies, the Emerging Vendors list also serves as a valuable resource for solution providers looking to expand their portfolios with cutting-edge technology. - [Gotta Catch ‘Em All at Black Hat 2016; Play Proficio Go to Win](https://www.proficio.com/press-release/gotta-catch-em-black-hat-2016-play-proficio-go-win/): Carlsbad, CA and Las Vegas, August 2, 2016 — Proficio, an award-winning provider of cloud-based security services, today announced its Proficio Go sweepstakes. Inspired by the Pokemon Go sensation, Black Hat attendees can tweet a picture with an official Proficio ProPlayer for a chance to win some great prizes like an Oculus Rift, Beats headphones, a GoPro, a digital camera-enabled drone, and Amazon gift cards. The sweepstakes will take place from August 3 and 4 during the Black Hat 2016 Conference in Las Vegas. - [Proficio Appoints Technology Executive Ken Adamson as Vice President of Product Management](https://www.proficio.com/press-release/proficio-appoints-technology-executive-ken-adamson-vice-president-product-management/): Carlsbad, CA, July 27, 2016 — Proficio, an award-winning provider of cloud-based security services, today announced the appointment of cloud and data infrastructure veteran Ken Adamson as Vice President of Product Management. As a seasoned product executive, Adamson will be responsible for all aspects of product management to enhance the strong growth and development in Proficio’s cloud based services and expansion into new markets. - [Proficio Named Top Managed Security Services Provider at CIOHONOUR Awards in Singapore](https://www.proficio.com/press-release/proficio-named-top-managed-security-services-provider-ciohonour-awards-singapore-2/): Carlsbad, CA, July 4, 2016 — Proficio, an award-winning provider of cloud-based security services, today announced it has been named winner of the CIOHONOUR Award® in the Managed Security Services Provider (MSSP) category for Enterprise Security. The award was accepted by Proficio’s Alex Tok, Managing Director, Asia Pacific, at a gala reception attended by over 100 IT executives and other senior industry professionals. - [Proficio Survey Highlights Cybersecurity Challenges for 2016](https://www.proficio.com/press-release/proficio-survey-highlights-cybersecurity-challenges-2016-2/): Carlsbad, CA — January 4, 2016 — Proficio, an award-winning provider of cloud-based security services, announced today the results of its 2016 Cybersecurity Survey. Indicating another challenging year, less than half of the IT security professionals surveyed said they are satisfied that they have the technology, processes, and expertise to prevent a damaging cyber attack in 2016. - [Proficio Expands Asia Pacific HQ and Security Operations Center to Accommodate Triple Digit Growth](https://www.proficio.com/press-release/proficio-expands-asia-pacific-hq-security-operations-center-accommodate-triple-digit-growth/): Singapore, May 25, 2016 — Proficio, an award-winning provider of cloud-based security services, today announced the opening of its new headquarters and Security Operations Center (SOC) in Singapore. The new state-of-the-art SOC will be a center of innovation and deliver advanced cyber security services. Located in The Signature in Changi Business Park, the new center is triple the size of the previous facility and will help to support the rapid growth in Proficio’s global customer base. - [Proficio and CounterTack Partner for Advanced Endpoint Threat Detection](https://www.proficio.com/press-release/proficio-countertack-partner-advanced-endpoint-threat-detection/): Carlsbad, CA and Waltham, MA — February 26, 2016 — Proficio, an award-winning provider of cloud-based security services, and CounterTack, the leader in Big Data Endpoint Detection and Response (EDR), today announced a strategic partnership to advance endpoint security. Proficio will join CounterTack’s partner program and integrate continuous endpoint monitoring and threat data from CounterTack Sentinel into Proficio’s ProSOC service, providing customers with greater visibility into their security posture. Proficio will be at the CounterTack booth, #1133, during RSA 2016. - [Proficio Unveils Industry-First Buyout Program for MSSP Services](https://www.proficio.com/press-release/proficio-unveils-industry-first-buyout-program-mssp-services/): Carlsbad, CA — February 17, 2016 — Proficio, an award-winning trusted provider of cloud-based security services, announced the launch of their security event monitoring services buyout program. This industry-first program provides enterprises a cost effective and simple upgrade path to a next-generation cybersecurity service. - [Proficio Added to Deloitte Technology Fast 500](https://www.proficio.com/press-release/proficio-added-to-deloitte-technology-fast-500/): In case you missed the news, Proficio was added to the 2015 Deloitte Technology Fast 500 list. Award winners are selected based on percentage of revenue growth from the past three years. We are excited to be one of the fastest growing technology companies in North America. - [Proficio Ranked Number 263 Fastest Growing Company in North America on Deloitte’s 2015 Technology Fast 500](https://www.proficio.com/press-release/proficio-ranked-number-263-fastest-growing-company-north-america-deloittes-2015-technology-fast-500/): Carlsbad, CA — November 13, 2015 — Proficio today announced it ranked 263 on Deloitte’s Technology Fast 500™, a ranking of the 500 fastest growing technology, media, telecommunications, life sciences and energy tech companies in North America. Proficio grew 275% percent during this period. Proficio’s CEO, Brad Taylor, credits Proficio’s success in addressing the increasing need to protect organizations from cyber attacks and data breaches with the company’s 275% revenue growth. "Our cloud-based security services provide the most advanced threat detection and breach prevention services that up until recently were outside the budget of all but the very largest enterprises. ProSOC, Proficio’s award wining service, combines SIEM-as-a Service, powered by HP ArcSight, 24x7 security event monitoring services, Behavioral Analytics and Active Defense.” “Amid a fierce business climate, there seems to be no shortage of new and established companies that are unlocking a seemingly unlimited potential for growth and advancement through technology’s continued disruption and proliferation across industries,” said Sandra Shirai, principal, Deloitte Consulting LLP and U.S. technology, media and telecommunications leader. “It is inspiring to witness the innovative ways that companies are incorporating emerging technologies for business gains, be it cognitive computing, or the Internet of Things. We congratulate all those ranked on this year’s Fast 500 and look forward to seeing their continued growth into 2016.” “Through the efforts and utilization of new and emerging technologies from these companies, we are witnessing greater business demands from across almost all industries,” added Jim Atwell, national managing partner of the emerging company practice, Deloitte & Touche LLP. “We look forward to the opportunity to serve these companies as they strive to grow to the next level –  be it towards introducing new solutions or entering new markets – and with it make important and long lasting impressions on the technology market as a whole.” About Deloitte’s 2015 Technology Fast 500™ Deloitte’s Technology Fast 500 provides a ranking of the fastest growing technology, media, telecommunications, life sciences and energy tech companies – both public and private – in North America. Technology Fast 500 award winners are selected based on percentage fiscal year revenue growth from 2011 to 2014. In order to be eligible for Technology Fast 500 recognition, companies must own proprietary intellectual property or technology that is sold to customers in products that contribute to a majority of the company's operating revenues. Companies must have base-year operating revenues of at least $50,000 USD or CD, and current-year operating revenues of at least $5 million USD or CD. Additionally, companies must be in business for a minimum of four years and be headquartered within North America. About Proficio Proficio is an award winning provider of cloud-based security and compliance solutions, and is changing the way organizations defend against advanced threats and prevent security breaches. Proficio’s ProSOC service provides 24x7 security monitoring and alerting and advanced threat detection. Proficio protects the networks, data, and applications of some of the world’s leading utility, healthcare, industrial and consumer-focused organizations. For more information, visit www.proficio.com. - [Proficio and American Digital Corporation Partner to Offer Enterprise Clients Advanced Cloud Based Security Solutions](https://www.proficio.com/press-release/proficio-american-digital-corporation-partner-offer-enterprise-clients-advanced-cloud-based-security-solutions-2/): Elk Grove Village, IL – August 31, 2015 – American Digital, a leading IT Solutions provider and Proficio, a leading provider of cloud based security services, today announced their partnership to offer advanced security solutions to Fortune 1000 organizations. The companies will offer cloud-based security monitoring, alerting, and remediation services helping enterprises detect sophisticated threats and prevent data breaches. “The risk from cyber security threats has never been greater,” said Norbert R. Wojcik, Jr., President, American Digital Corporation. “ProSOC is a great addition to our current portfolio of managed solutions. By partnering with Proficio, we now offer the most advanced cloud-based security technology available. Proficio’s security experts will monitor our customers 24x 7x365, helping ensure that their assets will be secure.” “While there is greater awareness of the security risks affecting mid and large-sized organizations, many enterprises lack the ability to detect and respond to targeted attacks in an effective manner,” said Brad Taylor, CEO, Proficio Inc. “American Digital Corporation is a forward thinking IT Solutions Provider and we are excited to partner with them to provide cloud-based cyber security services to their customers.” Proficio ProSOC Services American Digital will offer Proficio’s full range of ProSOC managed security services providing their customers the following advantages: - [Proficio’s ProSOC Express Recognized with MVP Award from Computer Technology Review](https://www.proficio.com/press-release/proficios-prosoc-express-recognized-mvp-award-computer-technology-review/): Carlsbad, CA – July 29, 2015 – Proficio, a leading provider of cloud-based security services, today announced that it has been selected by Computer Technology Review as winner of an MVP Award, recognizing leaders within the IT security space. Proficio’s ProSOC Express was reviewed and selected for the prestigious publication’s 2015 Most Valuable Products list based on criteria such as solution effectiveness, innovation and usability. Providing small and medium-sized businesses with 24x7 enterprise-class security monitoring and alerting services, ProSOC Express is offered as a highly affordable SaaS subscription service and includes the same advanced SIEM technology and 24x7 expert monitoring as Proficio provides its enterprise customers. “Mid-sized and small businesses are not immune to cyberattacks and Proficio is filling a noticeable gap in SMB security,” said Computer Technology Review Editor-in-Chief Kim Kay. “We consider ProSOC Express to be a valuable solution, helping those SMBs with limited resources meet today’s data security challenges.” Computer Technology Review is a US-based news portal that has been covering the best of IT, specializing in storage, cloud computing, virtualization, data protection, security and leading edge innovation since 1980. “Cyber criminals are clearly targeting mid-sized and small organizations for data theft, bank fraud, and ransomware, and we’re thrilled that Computer Technology Review has validated our commitment to providing SMBs with a viable data security solution to address these threats,” said Tim McElwee, COO and Chairman, Proficio, Inc. “ProSOC Express delivers similar security monitoring and breach prevention services as we provide our enterprise customers, but as a simplified service offering and at a very affordable price.” Cloud-Based Breach Prevention Delivered as a subscription service, ProSOC Express works with customers’ existing systems including firewalls, anti-virus software and servers, and does not require customers to purchase any software or hardware to use the service. ProSOC Express includes the following capabilities: - [PROFICIO’S PROSOC EXPRESS BRINGS ENTERPRISE-CLASS IT SECURITY TO THE SMB MARKET STARTING AT $99 PER DEVICE PER MONTH](https://www.proficio.com/press-release/proficios-prosoc-express-brings-enterprise-class-security-smb-market-starting-99-per-device-per-month/): Carlsbad, CA – July 14, 2015 – Proficio, a leading provider of cloud-based security services, today introduced ProSOC Express, providing small and medium-sized businesses 24x7 enterprise-class security monitoring and alerting services. ProSOC Express is offered as a highly affordable SaaS subscription service and includes the same advanced SIEM technology and 24x7 expert monitoring as Proficio provides its enterprise customers. “Data breaches are a huge concern for every organization now, and mid-size organizations are particularly at risk,” said Eric Ogren, analyst at the Ogren Group. “But most mid-size businesses cannot afford to build internal security teams or purchase and manage advanced security capabilities and should be looking at managed services to cost effectively deliver enterprise-grade security. Proficio’s ProSOC Express is a clear example of the type of cloud-based security solution that mid-size firms should be evaluating.” “When it comes to protecting their business from cyber crimes, mid-sized businesses face similar challenges as large enterprises,” said Sanjeev Aggarwal, Founder and Partner, SMB Group. “The rise of sophisticated new security attacks poses a clear risk to SMBs challenged with limited and generalist IT staff and budget resources. They cannot afford to build internal security teams or purchase and administer advanced security software tools, and should evaluate cloud-based options.” “Cyber criminals view mid-sized organizations as soft targets for data theft, bank fraud, and ransomware,” said Tim McElwee, COO and Chairman, Proficio, Inc. “While businesses often have the right tools to help identify attacks, they seldom have time to analyze firewall logs or investigate suspicious activity and as a consequence security breaches are often only discovered after the damage is done. With ProSOC Express, our goal is to offer similar security monitoring and breach prevention services as we provide our enterprise customers, but as a simplified service offering and at a very affordable price.” Cloud-Based Breach Prevention Delivered as a subscription service, ProSOC Express works with customers’ existing systems including firewalls, anti-virus software and servers, and does not require customers to purchase any software or hardware to use the service. ProSOC Express includes the following capabilities: - [PROFICIO CEO BRAD TAYLOR BRINGS “GLOBAL SECURITY TRENDS FROM THE FRONTLINES” TO AUSTRALIAN INFORMATION SECURITY ASSOCIATION](https://www.proficio.com/press-release/proficio-ceo-brad-taylor-brings-global-security-trends-frontlines-australian-information-security-association/): Carlsbad, CA and Brisbane, Australia – June 1, 2015 – Proficio, a leading provider of cloud-based security services, today announced that President & CEO Brad Taylor will present “Global Security Trends from the Frontline” at the Australian Information Security Association (AISA) June 4 meeting in Brisbane. Profico CEO Brad Taylor will discuss the latest global trends in cyber attacks, cyber criminals and what organizations are doing to protect their critical assets. “Every day brings more reports of serious cyber attacks that threaten both businesses and government by exposing and misusing sensitive data. Millions of security events occur in the networks of organizations every day and the challenge is to monitor and prioritize these events in order to take action. Proficio customers benefit from the most advanced security monitoring services that until recently were outside the budget of all but the very largest enterprises,” said Taylor. Proficio provides cloud-based security services with powerful 24x7 security monitoring to detect advanced attacks, provide actionable alerts, and help prevent security breaches before any damage is done. Taylor has more than 20 years of experience in enterprise software, security, and the networking industry as a senior executive with companies including RSA Security (now EMC) and ArcSight (now HP). Proficio was founded to address the need for advanced cloud-based security protection without the cost and complexity required to operate a SIEM. Established in 1999, the Australian Information Security Association (AISA) is a not-for-profit organization formed to advance the cyber-security and safety of all sectors of Australian life: public, corporate, and government. AISA's vision is a world where all people, businesses and governments are educated about the risks and dangers of cyber-attack and data theft, and to enable them to take all reasonable precautions to protect themselves against it. For more information, visit http://bit.ly/1JXjU6e About Proficio Proficio is a leading provider of cloud-based security and compliance solutions, and is changing the way organizations defend against advanced threats and prevent security breaches. Proficio’s ProSOC service offers 24x7 security monitoring and alerting, and advanced threat detection. Proficio protects the networks, data, and applications of some of the world’s leading utility, healthcare, industrial, and consumer-focused organizations. For more information, visit www.proficio.com. - [PROFICIO AND GENESIS NETWORKS JOIN FORCES TO PROVIDE ADVANCED CLOUD-BASED SECURITY SERVICES](https://www.proficio.com/press-release/proficio-genesis-networks-join-forces-provide-advanced-cloud-based-security-services/): SINGAPORE, May 12, 2015 – Proficio, a leading provider of cloud-based security services, and Genesis Networks, a leading provider of IT Services, today announced their partnership to offer advanced security solutions to the Singapore, Malaysia, and Indonesia markets. The companies will offer cloud-based security monitoring, alerting, and remediation services helping enterprises and government organizations to detect sophisticated threats and prevent data breaches. "The risks of intellectual property theft, business disruption, and brand damage have made cyber security a high priority for many of our customers,” said Allen Lee, Managing Director, Genesis Networks. “We chose to partner with Proficio because together we can offer the most advanced cyber security technology supported by security experts in Proficio’s US and Singapore based Security Operations Centers (SOCs). It will blend in perfectly with our existing range of IT risk management portfolios including security consulting, audit, business continuity and disaster recovery services.” “Genesis Networks is a leading provider of IT Services and we are excited to be partnering with them to provide cloud-based cyber security services to Southeast Asian businesses and government organizations,” said Alex Tok, Managing Director, Proficio, Asia. “Millions of security events pass through the networks of organizations every day and the challenge is to monitor and prioritize these events and take action before any damage is done. Proficio and Genesis Networks’ customers will benefit from the most advanced security monitoring services that until recently were outside the budget of all but the very largest enterprises.”Proficio ProSOC Services Genesis Networks will offer Proficio’s full range of ProSOC managed security services providing their customers the following advantages: - [PROFICIO UNVEILS NEXT-GENERATION SECURITY THREAT DETECTION, BREACH PREVENTION, AND COMPLIANCE SERVICE FOR HEALTHCARE AT HIMSS15](https://www.proficio.com/press-release/proficio-unveils-next-generation-security-threat-detection-breach-prevention-compliance-service-healthcare-himss15/): CHICAGO, April 13, 2015 - Proficio, a leading provider of advanced cloud-based security services, today unveiled significant new capabilities in its popular ProSOC Healthcare security and compliance service. ProSOC 5.0 includes more powerful threat detection capabilities, Active Defense, and ProView, an enhanced SIEM-as-a-Service application to better visualize an organization’s security and compliance posture. “As indicated by the recent growth in high profile Healthcare organization breaches, attackers have discovered how to convert healthcare records into monetary gain through with various avenues of Identity Theft.,” said Brad Taylor, CEO, Proficio. “Our ProSOC security threat detection and active breach prevention service is trusted by healthcare organizations around the world. ProSOC uses the most advanced techniques to detect sophisticated attacks and our Active Defense solution takes the next step by automating the response to high risk attacks before any damage is done.” Advanced Threat DetectionProSOC is powered by industry leading SIEM technology programmed with proprietary security use cases and customized multi-vector correlation rules to detect sophisticated attacks early in the Kill Chain. ProSOC also uses machine learning pattern discovery, real-time threat intelligence, and 24x7 analysis by security experts to identify and prevent data breaches. Based on extensive experience in the healthcare industry, Proficio has created use cases that range from identifying anomalous traffic from medical devices to detecting suspicious insider behavior. Active Defense Proficio’s unique Active Defense technology automates the response to high risk attacks by triggering firewall rules to block high risk traffic in near real-time on a 24x7 basis, thereby providing time for security teams to properly investigate and remediate issues before any damage occurs. ProView ProView is Proficio’s newly updated SIEM-as-a-Service Portal application that allows organizations to easily visualize their security and compliance posture using focused dashboards, Active Channels and Drill-down analytics. ProSOC Free Trial To try Proficio’s ProSOC service for a free 30 day pilot, email us at freepilot@proficio.com. About Proficio Proficio is a leading provider of cloud-based security solutions. We are changing the way organizations defend against advanced threats and prevent security breaches by providing the most powerful cloud-based services without the need for added headcount or costly software and hardware systems. Proficio’s ProSOC™ service logs, monitors and analyzes organizations’ security events and provides actionable threat notifications and responsive breach prevention actions. Staffed 24×7 by security experts and using industry leading SIEM and Active Defense technology, ProSOC enables organizations to address critical security and compliance needs, prevent data breaches, and reduce operations costs. Our customers value our insight, experience and unrelenting passion for defending their networks and applications from cyber attacks. For more information see www.proficio.com. - [PROFICIO AND RESOLUTE IT TEAM UP TO PROVIDE CYBER SECURITY SERVICES TO AUSTRALIAN LOCAL GOVERNMENT AUTHORITIES](https://www.proficio.com/press-release/proficio-resolute-team-provide-cyber-security-services-australian-local-government-authorities/): BRISBANE, March 10, 2015 – Proficio, a leading provider of cloud-based security services, and Resolute Information Technology P/L, a leading provider of information technology services, today announced their partnership to provide cyber security services to local authorities in Australia. The companies will offer 24x7 security monitoring, alerting, and remediation services enabling local authorities to benefit from enterprise-class security at an affordable price. "As the holders of highly sensitive ratepayer information and providers of critical community services, local governments are increasingly concerned about cyber security,” said William Osborne, GM, Resolute IT. “Our partnership with Proficio provides our customers with the most powerful cyber security protection on the market, manned around-the-clock by security experts.” “Resolute IT is a trusted provider of strategic information technology services and we are excited to be partnering with them to meet the security needs of local authorities in Australia,” said Brad Taylor, CEO, Proficio. “Cyber attacks are increasingly sophisticated and traditional defenses are no longer sufficient to protect against Advanced Persistent Threats (APTs). Our ProSOC service provides the most advanced breach prevention capability and is delivered via a simple cloud-based subscription model.”Security-as-a-Service Resolute IT will offer Proficio’s full range of ProSOC services providing their customers the following advantages: - [PROFICIO PCI DSS 3.0 READINESS SURVEY CHARACTERIZES CHALLENGES IN MEETING NEW REQUIREMENTS](https://www.proficio.com/press-release/proficio-pci-dss-3-0-readiness-survey-characterizes-challenges-meeting-new-requirements/): BRISBANE, March 10, 2015 – Proficio, a leading provider of cloud-based security services, and Resolute Information Technology P/L, a leading provider of information technology services, today announced their partnership to provide cyber security services to local authorities in Australia. The companies will offer 24x7 security monitoring, alerting, and remediation services enabling local authorities to benefit from enterprise-class security at an affordable price. "As the holders of highly sensitive ratepayer information and providers of critical community services, local governments are increasingly concerned about cyber security,” said William Osborne, GM, Resolute IT. “Our partnership with Proficio provides our customers with the most powerful cyber security protection on the market, manned around-the-clock by security experts.” “Resolute IT is a trusted provider of strategic information technology services and we are excited to be partnering with them to meet the security needs of local authorities in Australia,” said Brad Taylor, CEO, Proficio. “Cyber attacks are increasingly sophisticated and traditional defenses are no longer sufficient to protect against Advanced Persistent Threats (APTs). Our ProSOC service provides the most advanced breach prevention capability and is delivered via a simple cloud-based subscription model.”Security-as-a-Service Resolute IT will offer Proficio’s full range of ProSOC services providing their customers the following advantages: - [PROFICIO OPENS NEW SOC TO ACCOMMODATE GROWTH IN MANAGED SECURITY SERVICES](https://www.proficio.com/press-release/proficio-opens-new-soc-accommodate-growth-managed-security-services/): CARLSBAD, CALIFORNIA, November 25, 2014 – Proficio, a leading Next-Generation Managed Security Service Provider (MSSP), today unveiled its new state-of-the-art Security Operations Center (SOC) in Carlsbad, California. Established to support the rapid growth in Proficio’s customer base in North America and Asia/Pacific, the new SOC will deliver 24x7 security event monitoring and advanced data breach prevention services. Proficio’s new headquarters will be co-located in the same facility.“I’m excited that Proficio has chosen Carlsbad as its corporate headquarters,” said Matt Hall, Carlsbad Mayor. “Proficio provides high quality cyber security jobs and services while helping to prevent data breaches. We welcome Proficio to one of the fastest growing clusters in our region and to Carlsbad’s world-class corporate portfolio.” “Our growth is being fueled by the rapid rise in cloud-based security services and the increasing number of cyber security attacks on businesses, hospitals and government,” said Brad Taylor, CEO, Proficio. “San Diego County has one of the highest concentrations of cyber professionals in the country and as a fast growing company we are attracted by the opportunity of accessing this pool of talented people.” Proficio’s ProSOC Managed Security Services Proficio’s customers benefit from the most advanced data breach prevention and 24x7 managed security services that until recently were outside the budget of all but the very largest enterprises. Proficio’s ProSOC service offerings include the following: - [NO. 21 PROFICIO CHEVROLET JOINS NASCAR K&N PRO SERIES WEST WITH DRIVER ALEX SCHUTTE](https://www.proficio.com/press-release/no-21-proficio-chevrolet-joins-nascar-kn-pro-series-west-driver-alex-schutte/): CARLSBAD, California – October 9, 2014 - Proficio, a leading provider of next-generation managed security services, today announced its participation in the 2015 NASCAR K&N Pro Series West season. T Squared Motorsports Marketing LLC (T2M2) and Steve Portenga Racing (SPR) will field the No. 21 Proficio Chevrolet entry for the 2015 NASCAR K&N Pro Series West season with driver Alex Schutte competing for Sunoco Rookie-of-the-Year honors. “We are excited that Proficio can participate in such a high profile sporting competition as NASCAR K&N ProSeries , said Tim McElwee, Chairman of Proficio, Inc. “Seldom a day goes by without a headline reporting a data breach or cyber security incident. Our mission is to help businesses, hospitals, and government protect their data using the most advanced security technology and 24x7 security monitoring and alerting. This is a great opportunity for Proficio to get nationwide visibility, and in so doing enable us to help more business improve their IT security.” Schutte and the No. 21 Proficio team will get a head start on next season by making their series debut this Oct. 11 at All American Speedway in Roseville, Calif. Veteran crew chief Dusty O’Connell, who called the shots and won three races with driver Steve Portenga during the 2005-06 K&N Pro Series West seasons, will perform the same duties for this one race with Schutte. “The opportunity to drive the No. 21 Proficio Chevrolet for T Squared Motorsports Marketing/Steve Portenga Racing is something I’ve worked hard to prepare myself for since I was racing go-karts,” said Schutte. “The NASCAR K&N Pro Series West is the next major step in my career and I feel very fortunate to be working with Steve Portenga, with his vast NASCAR racing knowledge and talent, teamed up with the business acumen Tim Adolphson and Tim McElwee bring to the table through T Squared Motorsports Marketing. It’s also very important that I thank my family for all they’ve done to get me to this level. I’m really looking forward to everything this weekend at All American Speedway.” For more information on Proficio and to get a free pilot of ProSOC, email us at freepilot@proficio.com. About Proficio Proficio is a leading provider of next-generation managed security services. We are changing the way organizations meet their IT security and compliance goals by providing the most advanced cloud-based solutions to monitor and scan critical assets without the need for added headcount or costly software or hardware systems. Proficio’s ProSOC is a Next-Generation Security Operations Center (SOC) subscription service that logs, monitors and analyzes organizations’ security events. Staffed 24×7 by security experts and using industry leading SIEM technology, ProSOC helps organizations address critical security and compliance needs, minimize business risk, and reduce costs. Proficio’s ProSCAN is a cloud-based service including vulnerability management, automated asset discovery, web application scanning, malware detection, and compliance controls. Our customers value our insight, experience and unrelenting passion for defending their networks and applications from cyber attacks. For more information see:https://www.proficio.com. - [PROFICIO LAUNCHES SYNERGY PARTNER PROGRAM FOR CLOUD-BASED MANAGED SECURITY SERVICES](https://www.proficio.com/press-release/proficio-launches-synergy-partner-program-cloud-based-managed-security-services/): RVINE - CALIFORNIA, October 2, 2014 – Proficio, a leading provider of next-generation managed security services, today announced the launch of its new partner program. Proficio’s Synergy Partner Program enables partners to participate in the fast growing cloud-based managed security services market, and benefit from higher margins and recurring revenues. “Resellers of traditional security and networking products are experiencing reduced margins as product categories mature and vendors expand their distribution,” said Brad Taylor, CEO, Proficio, Inc. “We designed our partner program for resellers and consultants who see their customers migrating to cloud-based managed security models and want to participate in this opportunity without incurring the cost of building a SIEM-as-a-Service infrastructure and staffing 24x7 Security Operations Center (SOC).” - [PROFICIO LAUNCHES NEXT-GENERATION MANAGED SECURITY SERVICES IN ASIA AND OPENS SINGAPORE SOC AND REGIONAL HQ](https://www.proficio.com/press-release/proficio-launches-next-generation-managed-security-services-asia-opens-singapore-soc-regional-hq/): SINGAPORE, July 22, 2014 – Proficio, a leading provider of next-generation managed security services, today announced that it is expanding into Asia and opening a Security Operations Center (SOC) and Regional Headquarters in Singapore. Proficio has appointed Alex Tok, as Managing Director of Proficio Asia. Alex is a senior executive with many years of experience running IT businesses in the region. Singapore fosters a culture of excellence in every aspect of corporate governance and this applies particularly to cyber security,” said Tim McElwee, COO and Chairman of Proficio. “However, traditional approaches to security monitoring are no longer effective in accurately identifying critical security threats in a changing cyber security landscape.  Proficio’s ProSOC service is the only next-generation SOC-as-a-Service that provides true actionable intelligence and proactive defense. “ “I am excited to be joining Proficio at this pivotal time in the company’s growth,” said Alex Tok, Managing Director, Proficio Asia. “Proficio is a leader in bringing next-generation cloud-based security to the mid-market and our unique combination of advanced technology and an affordable service model is ideally suited to the needs of the local market.” Next-Generation Managed Security Services Through Proficio’s managed security services, organizations benefit from the most advanced security monitoring that previously was outside the budget of all but the very largest enterprises. For about the annual cost of one security engineer, typical Proficio customers receive: - [PROFICIO LAUNCHES NEXT-GENERATION MANAGED SECURITY SERVICES IN AUSTRALIA AND NEW ZEALAND](https://www.proficio.com/press-release/proficio-launches-next-generation-managed-security-services-australia-new-zealand/): IRVINE, CALIFORNIA and SYDNEY, AUSTRALIA, June 20, 2013 – Proficio, a leading provider of next-generation managed security services, today announced that it is expanding into Australia and New Zealand. In support of this initiative, Proficio has opened an office in Sydney and signed a reseller partnership with CloudPort. CloudPort is a cyber security solutions provider headquartered in Brisbane. "Seldom a week goes by in Australia and New Zealand without a cyber attack or data breach making news,” said Brad Taylor, CEO, Proficio. “Traditional approaches to security monitoring are no longer effective in accurately identifying and prioritizing critical security threats. Proficio’s ProSOC service is the only next-generation SOC-as-a-Service that provides true actionable intelligence and proactive defense. “ “Proficio is one of the fastest growing Managed Security Service Providers (MSSPs) in the North American market,” said Ken Bartlett, Managing Director of CloudPort. “We chose to partner with Proficio because they provide leading edge technology, 24x7 support from security experts, and the most up-to-date security intelligence based on billions of security events that they monitor for their US clients.” Next-Generation Managed Security Services Proficio is a leader in bringing next-generation cloud-based security to the mid-market. Through Proficio’s managed security services, organizations benefit from the most advanced security monitoring that previously was outside the budget of all but the very largest enterprises. For about the annual cost of one security engineer, typical Proficio customers receive: - [RPX SELECTS PROFICIO’S PROSOC AND PROSCAN SERVICES FOR ADVANCED CYBER SECURITY](https://www.proficio.com/press-release/rpx-selects-proficios-prosoc-proscan-services-advanced-cyber-security/): Irvine, California – May 20, 2014 – Proficio, a provider of next-generation managed security services, today announced that RPX Corporation has chosen Proficio’s ProSOC and ProSCAN security and compliance services. ProSOC and ProSCAN protect applications and data residing on RPX’s network and in the cloud. “We view Proficio as a valued service to our team,” said Eric Hoppe, Vice President, Systems Development, RPX Corporation. “Proficio provides us advanced security technology monitored around the clock by security experts.” “We appreciate RPX’s vote of confidence in Proficio’s capabilities and are pleased that they have selected our managed services for 24x7 security and network event monitoring as well as vulnerability scanning,” said Tim McElwee, COO, Proficio. ProSOC and ProSCAN Managed Services - [PROFICIO LAUNCHES FIRST NEXT-GENERATION SOC-AS-A-SERVICE FOR HEALTHCARE ORGANIZATIONS](https://www.proficio.com/press-release/proficio-launches-first-next-generation-soc-service-healthcare-organizations/): HIMSS14, Orlando – February 24, 2014 – Proficio, a provider of next-generation managed security services, today announced ProSOC Healthcare – the first next-generation SOC-as-a-Service addressing the demanding security and compliance requirements of healthcare providers and payers. ProSOC Healthcare is also the first managed security service to provide Proactive Threat Defense helping healthcare organizations identify and respond to threats before they result in PHI breaches. “ProSOC Healthcare is designed for the demanding security and compliance challenges facing healthcare organizations today,” said Brad Taylor, CEO, Proficio Inc. “Our Proactive Threat Defense technology surpasses existing security event monitoring tools which at best only detect security incidents after a PHI data breach has occurred. ProSOC Healthcare, with Proactive Threat Defense, identifies the early stages of advanced cyber attacks and suspicious behavior and can initiate an automated real-time response.” PROFICIO’S ProSOC HEALTHCARE ProSOC Healthcare is a powerful family of managed services designed to meet the security and compliance requirements of the healthcare industry. Key advantages include: - [TORRANCE MEMORIAL MEDICAL CENTER SELECTS PROFICIO’S PROSOC SERVICE FOR IT SECURITY AND HIPAA COMPLIANCE](https://www.proficio.com/press-release/torrance-memorial-medical-center-selects-proficios-prosoc-service-security-hipaa-compliance/): Irvine, California – February 6, 2014 – Proficio, a provider of next-generation managed security services, today announced that Torrance Memorial Medical Center has selected Proficio’s ProSOC service for 24x7 managed security, compliance, and remediation. “We selected Proficio to meet our IT security and compliance needs because they are experts in their field with a deep understanding of the requirements of healthcare organizations like ourselves,” said J. Todd Felker, Infrastructure and Security Architect, Torrance Memorial Medical Center. “Proficio’s ProSOC service protects our confidential data by analyzing the millions of events that cross our network and prioritizing the critical alerts that require action. This helps me sleep better at night.” “Our customers want the benefits of advanced security and compliance technology without the burden of becoming SIEM experts or the cost of building a Security Operations Center (SOC),” said Tim McElwee, COO, Proficio Inc. “We are delighted to have had the opportunity to assist Torrance Memorial Medical Center with several security projects over the past five months. The recent deployment of our ProSOC service will further enhance Torrance’s security and help them meet their HIPAA requirements. We look forward to expanding our partnership over the years to come.” - [PROFICIO’S ANNUAL SURVEY HIGHLIGHTS TOP SECURITY CONCERNS FACING HEALTHCARE ORGANIZATIONS IN 2014](https://www.proficio.com/press-release/proficios-annual-survey-highlights-top-security-concerns-facing-healthcare-organizations-2014/): Irvine, California - December 19, 2013 – Proficio, a leading provider of next-generation managed security services, today announced the results of its annual survey highlighting the top issues of concern to IT security professionals in the healthcare industry. Respondents rated mobile security exploits, compliance requirements, medical device vulnerabilities, insider threats, and the protection of cloud-based data and applications as their top five concerns in 2014. “As doctors and healthcare staff increasingly turn to the convenience of cloud applications and mobile devices, we are not surprised to see IT professionals are concerned with the impact of these technologies on their organizations’ security in 2014,” said Brad Taylor, CEO, Proficio Inc. “Proficio’s mission is to work with healthcare organizations to highlight the changing security landscape and bring next-generation solutions to security and compliance management.” - [PROFICIO PARTNERS WITH QUALYS TO PROVIDE CLOUD-BASED IT SECURITY AND COMPLIANCE](https://www.proficio.com/press-release/proficio-partners-qualys-provide-cloud-based-security-compliance/): REDWOOD CITY, CA–(Marketwired – May 21, 2013) – Qualys, Inc. (NASDAQ: QLYS), a pioneer in cloud-based security and compliance solutions, and Proficio Inc., a leading provider of managed security services, today announced a partnership to provide the QualysGuard suite of IT security and compliance solutions along with Proficio’s managed services — providing customers with a cost-effective, comprehensive security and compliance solution that includes continuous monitoring, logging, analysis and remediation. Proficio’s new ProSCAN service helps customers proactively manage risk, meet compliance requirements and maximize uptime. The cloud service includes SIEM-as-a-service, real-time security event monitoring and log retention. Now, with its partnership with Qualys, the service will include the QualysGuard Cloud Platform and integrated suite of IT security and compliance solutions — including Vulnerability Management, Web Application Scanning, PCI and Policy Compliance — to deliver a unified, comprehensive solution that helps customers proactively and continuously protect their data and IT assets against security threats. “We are excited to partner with Qualys to offer its industry-leading, easy-to-use, highly accurate solutions to our customers as part of our ProSCAN service,” said Tim McElwee, Chairman and COO, Proficio Inc. “Leveraging QualysGuard, ProSCAN is now the easiest way to meet security and compliance monitoring, logging, and scanning requirements in one simple cloud-based service for a very affordable subscription fee.” “Proficio ProSCAN combines the power of QualysGuard with Proficio’s security event monitoring in a single unified cloud solution, thus helping medium-sized organizations tackle their security challenges more effectively and at an affordable cost,” said Philippe Courtot, chairman and CEO for Qualys. For a free trial of ProSCAN+ leveraging QualysGuard, visit www.proficio.com/proscan. About QualysGuard Cloud Platform The QualysGuard Cloud Platform and its integrated suite of security and compliance solutions helps provide organizations of all sizes with a global view of their security and compliance posture, while reducing their total cost of ownership. The QualysGuard Cloud Suite, which includes Vulnerability Management, Web Application Scanning, Malware Detection Service, Policy Compliance, PCI Compliance and Qualys SECURE Seal, enable customers to identify their IT assets, collect and analyze large amounts of IT security data, discover and prioritize vulnerabilities and malware, recommend remediation actions and verify the implementation of such actions. About QualysQualys, Inc. (NASDAQ: QLYS), is a pioneer and leading provider of cloud security and compliance solutions with over 6,000 customers in more than 100 countries, including a majority of each of the Forbes Global 100 and Fortune 100. The QualysGuard Cloud Platform and integrated suite of solutions help organizations simplify security operations and lower the cost of compliance by delivering critical security intelligence on demand and automating the full spectrum of auditing, compliance and protection for IT systems and web applications. Founded in 1999, Qualys has established strategic partnerships with leading managed service providers and consulting organizations worldwide. The company is also a founding member of the Cloud Security Alliance(CSA). For more information, please visit www.qualys.com. About ProficioProficio is a leading provider of managed security and network monitoring services. ProSOC is Proficio’s real-time security event monitoring and analysis service. ProSOC security experts use industry leading SIEM technology to monitor, prioritize and respond to security alerts 24×7. Proficio’s ProNOC service provides 24×7 monitoring of networks, servers, circuits, and applications helping to ensure continuous uptime. Proficio offers comprehensive security assessment services including penetration testing and vulnerability analysis. Proficio’s customers benefit from receiving highly cost effective solutions, which ensure the security, health, and performance of their networks and applications. For more information please visit: www.proficio.com. - [PROFICIO PARTNERS WITH THYCOTIC TO PROVIDE SECRET SERVER AS A MANAGED SERVICE](https://www.proficio.com/press-release/proficio-partners-thycotic-provide-secret-server-managed-service/): Irvine, California – August 02, 2013 – Proficio Inc., a leading managed security services provider (MSSP), today announced a strategic partnership with Thycotic Software, a leading password management software provider.  Through this partnership, Proficio will offer Thycotic’s Secret Server as a managed service. “Without effective password management our customers are vulnerable to security exploitations and at risk of violating critical industry compliance mandates like HIPAA, PCI, SOX, and others,” said Brad Taylor, President and CEO, Proficio Inc. “Working with Thycotic’s industry leading solution for password management, Proficio offers organizations the advantages of a secure central repository for privileged passwords along with the benefits of outsourced management and 24×7 security monitoring.” “We are excited that Proficio has selected Thycotic’s software to be part of their portfolio of managed security services,” said Thycotic’s spokesperson. “Proficio is a leading MSSP working closely with their customers to identify threats, prioritize alerts, and off-load security operations through their 24×7 Security Operations Center.” Thycotic’s Secret Server password management software controls access to critical enterprise passwords in one centralized, web-based repository. With Secret Server, passwords can be effectively shared and managed across teams, and expired and changed on a schedule. Proficio offers Thycotic’s password management software through its managed security service called ProSOC. ProSOC analyzes multiple log and event sources using the most advanced event correlation techniques to proactively find the real threats in a sea of noise. Highly trained ProSOC security experts enable Proficio’s clients to off-load tasks like 24×7 monitoring and systems administration, leaving their security teams more time to focus on resolving critical issues, proactive planning, and other internal priorities. Proficio is a fully trained on Thycotic products and certified at the highest level in Thycotic’s partner program. About Proficio Proficio is changing the way organizations meet their IT security and compliance goals by providing the most advanced cloud-based solutions to monitor and scan critical assets without the need for added headcount or costly software and hardware systems. ProSOC is Proficio’s real-time security monitoring and managed security service. ProSOC security experts use industry leading SIEM technology to monitor, prioritize and respond to security alerts 24×7. ProSCAN is a highly accurate vulnerability management service protecting against security threats and automating compliance reporting and workflow. Proficio’s ProNOC service provides 24×7 monitoring of networks, servers, circuits, and applications helping to ensure continuous uptime. For more information, visit https://www.proficio.com. About Thycotic Thycotic Software (founded in 1996) is headquartered in Washington, DC, (USA) and provides secure enterprise password management solutions. Over 78,000 IT admins worldwide trust Thycotic products to manage their passwords. Secret Server is an on-premise, web-based vault for storing privileged passwords like Windows local administrator passwords, UNIX root passwords and service account passwords. For more information, visit http://www.thycotic.com. - [PROFICIO GROWS REVENUE RAPIDLY IN FAST GROWING SECURITY MARKET](https://www.proficio.com/press-release/proficio-grows-revenue-rapidly-fast-growing-security-market/): Irvine, California, March 8, 2013 – Proficio Inc., a leading provider of managed security and network monitoring services, announced that its 2012 annual revenue exceeded 400% growth, reflecting strong service offerings and market share gains in a fast growing security market. To accommodate growth, Proficio has moved into an expanded corporate headquarters in Irvine, California. The new facility will accommodate hiring to support the company’s rapid growth and house a new Security Operations Center (SOC). “Customer demand for our unique combination of managed security and network monitoring services is driving triple digit growth in revenue,” said Brad Taylor, CEO, Proficio Inc. “We are excited to move to a new facility with the capacity to accommodate our continued growth.” Rapid Growth The growth in security threats, increased expectations for 24×7 availability of business applications, and mounting requirements to meet compliance mandates are driving demand for services that monitor and manage organizations’ security devices, applications, and networks. The gap in readiness to meet these challenges is underscored by Proficio’s recent 2013 Security Survey that found nearly half of security professionals surveyed were dissatisfied with their existing security systems. Proficio’s ProSOC and ProNOC services address these needs by providing IT teams a flexible approach to deploying managed services. ProSOC is available as a full management and monitoring service or as SIEM as a Service. Organizations can use ProNOC for core 24×7 monitoring of their networks, servers, and circuits, or select from an additional range of change management, trouble shooting and problem resolution services. State-of the-Art Security Operations Center (SOC) Proficio’s new headquarters houses a new SOC where certified security engineers monitor customer networks and provide expert advice. The ProSOC service is supported by multiple SOC facilities and redundant cloud-based systems. About Proficio Inc. Proficio is a leading provider of managed security and network monitoring services. ProSOC is our security monitoring and analysis service. ProSOC security experts use industry leading SIEM technology to monitor, prioritize and respond to security alerts 24×7. Our experts have managed some of the largest and most respected Security Operation Centers in America. Proficio’s ProNOC service provides 24×7 monitoring of networks, servers, circuits, and applications ensuring continuous uptime. Proficio offers comprehensive security assessment services including penetration testing and vulnerability analysis. Our customers benefit from receiving highly cost effective solutions that ensure the security, health, and performance of their networks and applications. For more information see: www.proficio.com. - [PROFICIO INC. AND NRI SECURE FORM STRATEGIC PARTNERSHIP TO LEAD THE NEXT GENERATION OF MANAGED SECURITY SERVICES](https://www.proficio.com/press-release/proficio-inc-nri-secure-form-strategic-partnership-lead-next-generation-managed-security-services/): Irvine, CA (PRWEB) April 05, 2013 Proficio Inc., a leading provider of managed security and network monitoring services, today announced details of their strategic partnership with NRI Secure, the leading provider of managed security services in Japan. The alliance between the two companies includes a strategic investment in Proficio Inc. by NRI SecureTechnologies, expansion of Proficio’s Security Operations Centers (SOC), joint sales and marketing efforts, and technology sharing. Strategic Partnership “Proficio’s technical leadership and focus on excellence aligns closely with NRI Secure’s core values,” said Naoshi Matsushita, COO, NRI SecureTechnologies, North America. “Our strategic partnership leverages the strengths of both companies. Working together, I am confident that Proficio and NRI Secure will achieve a leadership position in the managed security and monitoring services market.” The strategic collaboration between Proficio and NRI Secure includes: - [PROFICIO PARTNERS WITH QUALYS TO PROVIDE CLOUD-BASED IT SECURITY AND COMPLIANCE FOR MEDIUM-SIZED BUSINESSES](https://www.proficio.com/press-release/proficio-partners-qualys-provide-cloud-based-security-compliance-medium-sized-businesses/): Proficio to Offer Qualys IT Security and Compliance Cloud Solutions Along With Its Real-Time Event Monitoring for a Unified, Easy-to-Use Service REDWOOD CITY, CA–(Marketwired – May 21, 2013) – Qualys, Inc. (NASDAQ: QLYS), a pioneer in cloud-based security and compliance solutions, and Proficio Inc., a leading provider of managed security services, today announced a partnership to provide the QualysGuard suite of IT security and compliance solutions along with Proficio’s managed services — providing customers with a cost-effective, comprehensive security and compliance solution that includes continuous monitoring, logging, analysis and remediation. Proficio’s new ProSCAN service helps customers proactively manage risk, meet compliance requirements and maximize uptime. The cloud service includes SIEM-as-a-service, real-time security event monitoring and log retention. Now, with its partnership with Qualys, the service will include the QualysGuard Cloud Platform and integrated suite of IT security and compliance solutions — including Vulnerability Management, Web Application Scanning, PCI and Policy Compliance — to deliver a unified, comprehensive solution that helps customers proactively and continuously protect their data and IT assets against security threats. “We are excited to partner with Qualys to offer its industry-leading, easy-to-use, highly accurate solutions to our customers as part of our ProSCAN service,” said Tim McElwee, Chairman and COO, Proficio Inc. “Leveraging QualysGuard, ProSCAN is now the easiest way to meet security and compliance monitoring, logging, and scanning requirements in one simple cloud-based service for a very affordable subscription fee.” “Proficio ProSCAN combines the power of QualysGuard with Proficio’s security event monitoring in a single unified cloud solution, thus helping medium-sized organizations tackle their security challenges more effectively and at an affordable cost,” said Philippe Courtot, chairman and CEO for Qualys. For a free trial of ProSCAN+ leveraging QualysGuard, visit www.proficio.com/proscan. About QualysGuard Cloud Platform The QualysGuard Cloud Platform and its integrated suite of security and compliance solutions helps provide organizations of all sizes with a global view of their security and compliance posture, while reducing their total cost of ownership. The QualysGuard Cloud Suite, which includes Vulnerability Management, Web Application Scanning, Malware Detection Service, Policy Compliance, PCI Compliance and Qualys SECURE Seal, enable customers to identify their IT assets, collect and analyze large amounts of IT security data, discover and prioritize vulnerabilities and malware, recommend remediation actions and verify the implementation of such actions. About Qualys Qualys, Inc. (NASDAQ: QLYS), is a pioneer and leading provider of cloud security and compliance solutions with over 6,000 customers in more than 100 countries, including a majority of each of the Forbes Global 100 and Fortune 100. The QualysGuard Cloud Platform and integrated suite of solutions help organizations simplify security operations and lower the cost of compliance by delivering critical security intelligence on demand and automating the full spectrum of auditing, compliance and protection for IT systems and web applications. Founded in 1999, Qualys has established strategic partnerships with leading managed service providers and consulting organizations worldwide. The company is also a founding member of the Cloud Security Alliance(CSA). For more information, please visit www.qualys.com. About Proficio Proficio is a leading provider of managed security and network monitoring services. ProSOC is Proficio’s real-time security event monitoring and analysis service. ProSOC security experts use industry leading SIEM technology to monitor, prioritize and respond to security alerts 24×7. Proficio’s ProNOC service provides 24×7 monitoring of networks, servers, circuits, and applications helping to ensure continuous uptime. Proficio offers comprehensive security assessment services including penetration testing and vulnerability analysis. Proficio’s customers benefit from receiving highly cost effective solutions, which ensure the security, health, and performance of their networks and applications. For more information please visit: www.proficio.com. - [PROFICIO’S NEW PROSCAN+ SERVICE MAKES CLOUD-BASED IT SECURITY AND COMPLIANCE EASY](https://www.proficio.com/press-release/proficios-new-proscan-service-makes-cloud-based-security-compliance-easy-locked-proficios-new-proscan-service-makes-cloud-based-security-compli/): IRVINE, Calif. – May 21, 2013 – Proficio Inc., a leading provider of managed security services, today announced the introduction of its ProSCAN+ cloud-based solution for IT security and compliance. ProSCAN+ combines Proficio’s ProSOC services for Security Information Event Management (SIEM) and Log Retention with Qualys’ integrated suite of Vulnerability Management, Web Application Scanning, PCI and Policy Compliance. “Our customers are under pressure to address increasing security threats and mounting compliance requirements without making CAPEX expenditures or hiring additional IT security experts,” said Tim McElwee, Chairman and COO, Proficio Inc. “ProSCAN+ is the most cost effective way for organizations to meet their monitoring, logging, and scanning requirements all in one simple cloud-based service.” - [PROFICIO INC. AND NRI SECURE FORM STRATEGIC PARTNERSHIP TO LEAD THE NEXT GENERATION OF MANAGED SECURITY SERVICES](https://www.proficio.com/press-release/proficio-inc-nri-secure-form-strategic-partnership-lead-next-generation-managed-security-services-2/): Irvine, CA (PRWEB) April 05, 2013. Proficio Inc., a leading provider of managed security and network monitoring services, today announced details of their strategic partnership with NRI Secure, the leading provider of managed security services in Japan. The alliance between the two companies includes a strategic investment in Proficio Inc. by NRI SecureTechnologies, expansion of Proficio’s Security Operations Centers (SOC), joint sales and marketing efforts, and technology sharing. Strategic Partnership “Proficio’s technical leadership and focus on excellence aligns closely with NRI Secure’s core values,” said Naoshi Matsushita, COO, NRI SecureTechnologies, North America. “Our strategic partnership leverages the strengths of both companies. Working together, I am confident that Proficio and NRI Secure will achieve a leadership position in the managed security and monitoring services market.” The strategic collaboration between Proficio and NRI Secure includes: - [PROFICIO SURVEY HIGHLIGHTS TOP IT SECURITY ISSUES FOR 2013](https://www.proficio.com/press-release/proficio-survey-highlights-top-security-issues-2013/): Proficio surveyed over 200 IT security professionals and asked them what security issues are most likely to keep them up at night in 2013. The Top 5 issues are: - [PROFICIO’S NEW PROSOC SERVICE TAKES THE PAIN OUT OF SIEM AND LOG MONITORING](https://www.proficio.com/press-release/proficios-new-prosoc-service-takes-pain-siem-log-monitoring/): Irvine, California (PRWEB) February 01, 2013 – Proficio, a leading provider of managed security and network monitoring services, today announced details of its ProSOC Service. ProSOC is a powerful yet flexible family of 24×7 outsourced security services that includes SIEM as a Service, Security Event Monitoring, and Managed Security Services. “Our customers want the benefits of a SIEM without the burden of becoming SIEM experts,” said Brad Taylor, CEO, Proficio Inc. “We are excited to announce our family of ProSOC Services including SIEM as a Service, Security Event Monitoring, and Managed Security Services. Unlike the majority of vendors who are only good at solving yesterday’s problems, ProSOC proactively finds the real threats in a sea of noise by analyzing multiple event sources through cross-device and functional correlation.” Existing Security Monitoring Systems Fall Short The need for SIEM and Log Monitoring solutions to address new security challenges and compliance requirements has never been greater. Many organizations find existing products and services hard to use, complex, and inflexible. Proficio’s 2013 Security Survey found nearly half of security professionals surveyed were dissatisfied with their existing security systems, and among organizations that used an outsourced SOC with an MSSP, satisfaction was 22% higher than those who operated an in-house SOC. Despite the wide use of SIEM and Log Management products and services, over half the respondents to the same survey say a significant percentage of serious alerts are never investigated or resolved. The volume of high priority alerts, the lack of actionable data accompanying alerts, and the shortage of qualified in-house security experts all contribute to the gap in performance of existing systems. ProSOC Advantages ProSOC addresses the critical limitations with existing approaches to security event monitoring. ProSOC advantages include: - [PROFICIO ANNUAL SECURITY SURVEY HIGHLIGHTS TOP IT SECURITY ISSUES FOR 2013](https://www.proficio.com/press-release/proficio-annual-security-survey-highlights-top-security-issues-2013/):   “As a managed security service provider tasked with monitoring and responding to security alerts, we are finding insider threats to be a growing source of serious security incidents,” said Brad Taylor, CEO, Proficio Inc.  “By correlating users’ activity with their roles and application use, we are able to identify anomalies in the behavior of high-risk users, detect abuse, and reduce the threat of damaging activity by insiders.” Top 5 Issues for 2013 Proficio surveyed over 200 IT security professionals and asked them what security issues are most likely to keep them up at night in 2013. The Top 5 issues are: - [Proficio Opens London Office to Meet Growing Demand for Managed Security Services](https://www.proficio.com/press-release/proficio-opens-london-office-to-meet-growing-demand-for-managed-security-services-2/): London, UK – April 9, 2019 – Proficio, an award-winning managed security services provider (MSSP) delivering managed detection and response (MDR), today announced the opening of its new London office. The new office is part of Proficio’s expanded EMEA presence and reflects the increasing demand for Proficio’s managed security services in the UK. ## Resources - [Safeguard Your Business: Unlock the Power of Cybersecurity Knowledge](https://www.proficio.com/resources/cyber-security-awareness-month-webinar/): Join us on October 22nd, 1-2 pm, for a FREE webinar - [ProSOC XDR](https://www.proficio.com/resources/prosoc-xdr/): In the face of ever-evolving cyber threats, Proficio® advances the global mission of MDR with our latest service, ProSOC® XDR. - [ProSOC XDR Datasheet](https://www.proficio.com/resources/prosoc-xdr-datasheet/): ProSOC® XDR delivers remotely managed, 24/7 security monitoring through our cloud-hosted platform, blending AI-driven detection, expert analysis, and rapid response to disrupt and contain threats in under 4 minutes (Mean Time to Contain). Seamlessly integrating with over 350 log sources—endpoints, networks, identities, SaaS, and cloud—our XDR solution provides unparalleled visibility and smarter, unified protection across your entire IT stack. With a Mean Time to Detect (MTTD) of under 11 minutes and 14+ years of trailblazing innovation, we stop ransomware, phishing, and advanced persistent threats in their tracks, delivering a comprehensive security fortress without complexity. - [What Is A Managed Security Service Provider (MSSP)? – Your Cybersecurity Shield](https://www.proficio.com/resources/what-is-a-managed-security-service-provider-mssp/): Cyber threats are larger and more destructive than ever and businesses are increasingly turning to Managed Security Service Providers (MSSPs) to safeguard their digital assets. MSSPs provide specialized, outsourced services to manage and monitor the security of a company's IT infrastructure. From real-time monitoring to incident response, they offer a suite of services designed to protect against a wide range of cybersecurity threats. This article explores what MSSPs are, the crucial services they offer, and why they are becoming an integral part of modern cybersecurity strategies. - [What is a Security Information and Event Management (SIEM)?](https://www.proficio.com/resources/what-is-a-security-information-and-event-management-siem/): Security Information and Event Management (SIEM) represents a pivotal cybersecurity technology that organizations implement to enhance their security architecture. Combining Security Information Management (SIM) and Security Event Management (SEM), SIEM systems provide a holistic view of an organization’s information security. These tools are crucial for the real-time analysis, detection, and reporting of security incidents and events. Understanding SIEM's functionality and its role in modern cybersecurity can help organizations optimize their security processes and compliance management. - [XDR vs EDR: Understanding the Differences and Choosing the Right Solution](https://www.proficio.com/resources/xdr-vs-edr/): Organizations continuously seek more effective ways to thwart attackers and mitigate risks. Two significant advancements in this field are Extended Detection and Response (XDR) and Endpoint Detection and Response (EDR). While both technologies aim to improve security detection and response, they belong  to different aspects of cybersecurity management. This article delves into the functionalities, benefits, and limitations of EDR vs XDR to highlight their essential differences and help organizations choose the appropriate technology based on their specific needs. - [MSP Cybersecurity Solutions: ProactiveProtection for Your Organization](https://www.proficio.com/resources/msp-cybersecurity/): Organizations of all sizes must prioritize robust cybersecurity measures to protect against increasingly sophisticated and pervasive threats.  that pose serious risks to data integrity and business continuity. Managed Service Providers (MSP) play a pivotal role in this context by offering dynamic cybersecurity solutions that protect organizations against emerging threats. - [What is SOC as a Service? (SOCaaS)?](https://www.proficio.com/resources/what-is-soc-as-a-service/): Cyber threats are becoming more sophisticated and have been increasing, as much as 28% in Q1 2024. Organizations are finding it imperative to enhance their cybersecurity measures. This need for robust security practices has popularized SOC-as-a-Service (SOCaaS), an outsourced solution that combines the expertise of security professionals with the efficiency of cloud technology to protect against cyber threats effectively. - [ProBAS Breach and Attack Simulation Service](https://www.proficio.com/resources/probas-breach-and-attack-simulation-service/): Cyber incidents are growing in both complexity and frequency, posing significant challenges for organizations. With threats like ransomware and phishing becoming more sophisticated, a dynamic and robust security strategy is essential. ProBAS rigorously tests your security defenses to ensure they can prevent and detect attacks across the entire threat detection process. From device alerts to SIEM and SOC detection,  With ProBAS, your cybersecurity team can be confident that attacks will be detected and contained after testing thousands of scenarios. - [A Proactive Stance on Cybersecurity Keeps Rosedale Union School District Safe](https://www.proficio.com/resources/case-study-cybersecurity-protects-rosedale-union-school-district/): Rosedale Union School District in California’s Central Valley educates over 6,500 students and faces significant cybersecurity challenges with a small IT team of six, including one security analyst. - [State of Ransomware Report – Predictions for 2024](https://www.proficio.com/resources/the-state-of-ransomware-a-2023-retrospective-and-predictions-for-2024/): The State of Ransomware - A 2023 Retrospective and Predictions for 2024 analysis by Proficio incorporates the most recent data compiled from our Cyber Exposure Monitoring analysis and reporting and external threat intelligence sources to deliver a thorough examination of the current and future ransomware landscape. - [Fireside Chat with International SOS and Microsoft: Navigating Cybersecurity with Microsoft Sentinel & Security Co-Pilot](https://www.proficio.com/resources/international-sos-microsoft-sentinel-security-co-pilot/): https://youtu.be/-TmpDsG4hgI   Watch on demand our engaging and moderated virtual fireside chat on cyber security operations, featuring Brad Taylor, CEO of Proficio, Ravi Rai, Senior Manager, Cybersecurity at International SOS, a Proficio and Microsoft customer, and Anil Malekani, Principal Cybersecurity Global Black Belt, Microsoft. They explore how automation, playbooks, UEBA, and SOAR within Microsoft Sentinel revolutionize threat detection and response, with real-world use cases illustrating these benefits.  Brad, Anil and Ravi also discuss how AI and Microsoft Security Co-Pilot enhance decision-making and discover future roadmaps for AI in cyber defense. Contact us to learn more about ProSOC MDR for Microsoft >>     - [Benefits of Automated Threat Response with Managed Detection and Response in Strengthening Cyber Resilience](https://www.proficio.com/resources/automated-threat-response-with-managed-detection-and-response/): In an era where cyber threats evolve at an alarming rate, the integration of automated threat response capabilities within managed detection and response (MDR) services is crucial for maintaining robust cyber resilience. This guide explores how automation enhances the effectiveness of MDR by streamlining incident management, optimizing operations, and ensuring continuous protection against cyber threats. - [Benefits of Cyber Exposure Monitoring with Managed Detection](https://www.proficio.com/resources/benefits-of-cyber-exposure-monitoring-with-managed-detection-and-response-in-strengthening-cyber-resilience/): In the complex landscape of cyber threats where proactive and reactive security measures are essential, integrating cyber exposure monitoring (CEM), including dark web monitoring, with managed detection and response (MDR) offers a sophisticated approach to cybersecurity. This guide delves into how cyber exposure monitoring, when combined with managed detection and response, can strengthen and organization’s cyber resilience by enhancing visibility into external threats and improving response capabilities. - [Benefits of Patch Management with Managed Detection](https://www.proficio.com/resources/patch-management-and-managed-detection-and-response/): In today's complex cybersecurity landscape, organizations continually face numerous threats that exploit various vulnerabilities. The integration of patch management with managed detection and response (MDR) services provides a robust defense mechanism, crucial for maintaining the integrity and security of IT systems. This guide explores how patch management, when enhanced by MDR, significantly strengthens cyber resilience. - [Fireside Chat: Navigating Cyber Security with Microsoft Sentinel & Security Co-Pilot](https://www.proficio.com/resources/fireside-chat-navigating-cyber-security-with-microsoft-sentinel-security-co-pilot/): Watch on demand our engaging and moderated virtual fireside chat on cyber security operations, featuring Brad Taylor, CEO of Proficio, Ravi Rai, Senior Manager, Cybersecurity at International SOS, a Proficio and Microsoft customer, and Anil Malekani, Principal Cybersecurity Global Black Belt, Microsoft. - [Benefits of Integrated Vulnerability Management](https://www.proficio.com/resources/integrated-vulnerability-management-and-managed-detection-and-response/): In the contemporary digital environment, organizations face an increasing number of sophisticated cyber threats. This emphasizes the need for an integrated approach in cybersecurity measures combining vulnerability management with managed detection and response (MDR) services. The combination aims to not only identify vulnerabilities but also ensure timely responses to potential threats, thus enhancing an organization’s cyber resilience. - [MDR vs MSSP: Key Differences for Your Business Security Needs](https://www.proficio.com/resources/mdr-vs-mssp/): In the fast-evolving world of cybersecurity, businesses confront the challenge of selecting robust security solutions to protect against increasingly sophisticated threats. MDR providers and MSSPs provide services that cater to distinct aspects of cybersecurity but are often misunderstood due to their overlapping functionalities. This article aims to demystify these services, highlighting their unique roles, advantages, and disadvantages, to help businesses make informed decisions. - [What is a Security Operations Center (SOC)?](https://www.proficio.com/resources/what-is-a-security-operations-center-soc/): In an era where cyber threats loom large and data breaches are costly (up to $9.48 million), understanding the core functions and strategic importance of a Security Operations Center (SOC) has never been more crucial. A SOC acts as the central hub for all security processes and technologies used by an organization to monitor, assess, and defend against cyber incidents. This article will jump into what is a Security Operations Center (SOC) is, its key components, and the benefits it brings to an organization. - [What is an Outsourced Security Operations Center (SOC)?](https://www.proficio.com/resources/outsourced-soc/): As cyber threats continue to escalate in complexity and frequency, organizations worldwide are finding it increasingly challenging to manage their cybersecurity in-house. The evolution of threats like ransomware, phishing attacks, and state-sponsored hacking has necessitated a more robust approach to cyber defense, prompting many businesses to consider the advantages of an outsourced security operations center (SOC). This article explores the concept of an outsourced SOC, its operational benefits, and the strategic importance of integrating one within your business framework. - [Microsoft Defender for Endpoint: A Complete Guide](https://www.proficio.com/resources/defender-for-endpoint/): Microsoft Defender for Endpoint, formerly known as Microsoft Defender Advanced Threat Protection (ATP), is a comprehensive enterprise endpoint security platform designed to help enterprises prevent, detect, investigate, and respond to advanced threats. This evolved version of what was initially a traditional antivirus software has expanded its capabilities to offer a full spectrum of endpoint security solutions, integrating seamlessly with other Microsoft security products. - [A Proactive Approach: Strengthening Cyber Resilience – Webinar](https://www.proficio.com/resources/on-demand-webinar-strengthening-cyber-resilience-a-proactive-approach/): https://youtu.be/Jh_J6nYDKe4 - [Strengthening Cyber Resilience: A Proactive Approach](https://www.proficio.com/resources/strengthening-cyber-resilience-a-proactive-approach/): In today's digital age cyber resilience is no longer a luxury - it's a necessity. - [MSP vs MSSP vs MDR Providers: Understanding Key Differences for Business Security Needs ](https://www.proficio.com/resources/msp-vs-mssp-vs-mdr/): In today’s rapidly evolving digital landscape, businesses of all sizes find themselves at a crossroads, navigating complex information technology and cybersecurity challenges. With cyber threats becoming more sophisticated and frequent, understanding the nuances of IT management and security services is crucial for protecting valuable data and ensuring operational continuity. This is particularly important when considering the strategic implementation of managed services and deciding between a Managed Service Provider (MSP), Managed Security Service Provider (MSSP), or a Managed Detection and Response (MDR) Provider. In this article I'm going to discuss the definitions, key differences, and individual benefits of MSP vs MSSP vs MDR Providers, offering insights to help you or your business chose the best managed services provider. - [Strengthen Your Cyber Resilience with ProSOC MDR Enhancements](https://www.proficio.com/resources/strengthen-your-cyber-resilience-with-prosoc-mdr-enhancements/): This essential resource provides a detailed look at how to enhance your cyber resilience through advanced vulnerability management, real-time patching, and strategic threat mitigation techniques. Discover how to effectively shield your organization from cyber threats by making yourself a challenging target for attackers. With insights on managing digital risks, such as compromised credentials and dark web activities, this guide is indispensable for any organization aiming to strengthen its cyber defenses. - [Outsmarting Ransomware: Essential Cybersecurity Checklist](https://www.proficio.com/resources/outsmarting-ransomware-essential-cybersecurity-checklist/): Ransomware attacks have evolved. Cybercriminals today are targeting  organizations of all sizes, using more sophisticated penetration techniques, and demanding seven-figure ransoms. - [5 Tips How to Operationalize Your SOC: How to Shift from Reactive to Proactive](https://www.proficio.com/resources/operationalize-your-soc-how-to-shift-from-reactive-to-proactive/): Read our new eBook to learn what’s required to operationalize your SOC for proactive, true threat detection and response, including: - [How to Optimize Your Microsoft Security to Build a Custom Security Program](https://www.proficio.com/resources/on-demand-webinar-how-to-optimize-your-microsoft-security/): https://youtu.be/Tvi0JJ4RzGE - [How to Optimize Your Microsoft Security to Build a Custom Security Program](https://www.proficio.com/resources/how-to-optimize-your-microsoft-security-to-build-a-custom-security-program/): Watch this ondemand webinar, hosted by Proficio in partnership with Redmond Magazine, to learn and see how to optimize your Microsoft Security investments and leverage advanced cybersecurity to develop a custom security program to fortify your organization against cyberattacks without overtaxing your resources. - [Proficio Partner Program Guide](https://www.proficio.com/resources/proficio-partner-program-guide/): Explore the Proficio Partner Program Guide to discover how you can accelerate your growth, differentiate your offerings, and deliver unparalleled value to your clients with Proficio as your cybersecurity partner. - [How Ransomware is Deployed and How to Stop an Attack in the Early Stages | A Cyber Chat with CrowdStrike pt. 3](https://www.proficio.com/resources/how-ransomware-is-deployed-and-how-to-stop-an-attack-in-the-early-stages-a-cyber-chat-with-crowdstrike-pt-3/): https://youtu.be/yvE892WFIrU - [A Cyber Chat with CrowdStrike pt. 2 | Why Healthcare Is Such An Attractive Target For Hackers](https://www.proficio.com/resources/why-healthcare-is-such-an-attractive-target-a-cyber-chat-with-crowdstrike-pt-2/): https://youtu.be/NFZDG2mqqmc - [Tips for Cybersecurity Teams to Take a Proactive Approach | A Cyber Chat with CrowdStrike pt. 1](https://www.proficio.com/resources/tips-for-cybersecurity-teams-to-take-a-proactive-approach-cyber-chat-crowdstrike-pt1/): https://youtu.be/BkfSaXMlwZg - [Cyber Insurance in the Age of Cyber Crime: What Every Business Should Know with Wes Spencer of FifthWall Solutions](https://www.proficio.com/resources/on-demand-webinar-cyber-insurance-in-the-age-of-cyber-crime-what-every-business-should-know-with-wes-spencer-of-fifthwall-solutions/): https://youtu.be/xwsXPJDSv-o - [Mastering Security Orchestration with Microsoft Sentinel](https://www.proficio.com/resources/mastering-security-orchestration-with-microsoft-sentinel-combined-with-azure-openai/): The second part of our two-part ondemand webinar series dives deep into the world of SOAR-as-a-Service for automated and orchestrated response remediation with Microsoft Sentinel and AzureOpenAI. While we’ve previously explored the operationalization of Sentinel to enable accurate threat detection and response, part-two will explore SOAR-as-a-Service response and remediation automation as a force multiplier for your response team using Sentinel. - [MDR Market Global Forecast to 2027](https://www.proficio.com/resources/mdr-market-global-forecast-to-2027/): The study provides an analysis of the global MDR market since 2016, based on contemporary market trends and developments and its potential growth from 2022 to 2027. It provides detailed market trends, vendors’ market shares, market sizes, forecasts, and analysis of the key players in the market. - [Cybersecurity Guide for the Hospitality Industry](https://www.proficio.com/resources/cybersecurity-guide-for-the-hospitality-industry/): While cybersecurity is a primary concern for numerous organizations, those in the hospitality sector frequently encounter a more challenging task: safeguarding a multitude of sensitive data, often without the essential resources needed for continuous network protection. Given the high costs associated with establishing and staffing a Security Operations Center (SOC), the abundance of vendors and tools in the cybersecurity space, and the continually expanding cyber skills gap, many hospitality organizations are unsure where to begin in enhancing their cybersecurity. This guide aims to spotlight prevalent threats facing the hospitality industry and provide recommendations on bolstering your organization's security posture. - [Cyber Exposure Monitoring for the Dark Web](https://www.proficio.com/resources/cyber-exposure-monitoring-for-the-dark-web/): Sensitive data leaked on the dark web is one of the worst nightmares for anyone in leadership. Credentials, APIs, financial and business documents, or any amount of technical data can be used to exploit a company. With Proficio's Cyber Exposure Monitoring (CEM) service, business leaders can rest easy knowing that they have eyes in the deepest parts of the dark web monitoring for leaked information. Whether you have real-time alerting or scheduled reports, Proficio makes sure you're continuously aware of your external threat exposure, so you stay one step ahead of cybercriminals. - [Checklist for Evaluating Managed Detection and Response (MDR) Service Providers](https://www.proficio.com/resources/mdr-checklist/): In cybersecurity, it’s no longer a matter of if you’ll get attacked, but when. That is why partnering with a Managed Detection and Response (MDR) service provider is one of the fastest-growing trends in enterprise security. But what do you look for in a partner, and how do you know if you’re getting the most effective security service? Review our MDR checklist to find out. - [Managing Cyber Risk: Threat Protection and Cyber Insurance](https://www.proficio.com/resources/cyber-insurance-guide/): Organizations increasingly face the risk of cyber attacks that result in operational disruption, reputation damage, and significant unforeseen costs. To address this risk, businesses need a proactive plan, robust cyber defenses, and cyber insurance; these three pillars work together. To stay secure, organizations need to invest in people, tools, and have a plan for how to respond if a breach occurs. Threat prevention is a continuous process starting with improving an organization’s security posture and including threat detection and response. Cyber insurance is needed to buffer organizations from the unexpected costs of dealing with a security breach. - [Securing the Endpoint: Threats and Best Practices](https://www.proficio.com/resources/endpoint-guide/): Endpoint devices, including employee workstations, laptops, tablets, and smartphones, connect to and communicate with an organization’s network. Given their integration within an organization, the successful exploitation of a single endpoint can provide threat actors with a pathway to cause significant harm throughout the network. - [10 Cybersecurity Best Practices for Law Firms and Legal Departments](https://www.proficio.com/resources/legal-industry-checklist/): 10 Cybersecurity Best Practices for Law Firms and Legal Departments provides proactive ways to make sure legal clients’ confidential data remains secure. - [10 Tips for Securing Cloud Environments](https://www.proficio.com/resources/cloud-security-checklist/): As more and more organizations begin to host a portion of their infrastructure in the cloud, it is no wonder that the cloud has become a big target for attackers. Virtual servers can be infected with malware or ransomware, credentials can be stolen, and cyber criminals can exfiltrate data. - [Checklist for Evaluating Managed Security Service Provider (MSSP) Services](https://www.proficio.com/resources/mssp-checklist/): If you currently use, or are investigating using a Managed Security Service Provider (MSSP), you are not alone. Outsourcing 24x7 security event monitoring, analysis and alerting is one of the fastest growing trends in the enterprise security. Review our MSSP Checklist to help determine if you are getting the most effective security service. - [SOC-as-Service](https://www.proficio.com/resources/soc-as-service-datasheet/): Proficio's Security Operations Center (SOC) as a Service empowers your organization to address its distinctive security and compliance challenges by leveraging global, 24x7 security monitoring. This service utilizes expert security analysts, advanced SIEM technology, and next-generation threat defense to ensure comprehensive protection for your business. - [Supported Log Sources and Devices – Integrations](https://www.proficio.com/resources/supported-log-sources-and-devices-integrations-guide/): Explore Proficio's comprehensive Integrations Guide to seamlessly integrate and optimize your cybersecurity infrastructure. This detailed resource provides a comprehensive list of supported log sources and devices, empowering you to enhance the efficiency and effectiveness of your security operations. Whether you are a seasoned cybersecurity professional or just starting to build your defense mechanisms, this guide serves as a valuable reference, ensuring compatibility and smooth integration with Proficio's cutting-edge solutions. Download now to unlock a wealth of insights and elevate your cybersecurity posture. - [ProSOC MDR for Microsoft Sentinel](https://www.proficio.com/resources/mdr-for-microsoft-sentinel-overview/): Augment your IT team's capabilities by collaborating with Proficio to oversee and manage your Microsoft Sentinel environment. Proficio's ProSOC MDR for Sentinel is designed to identify actionable threats, minimize false alerts, and facilitate the orchestration and management of network responses. Integrating Proficio's services not only helps mitigate risks and safeguard your enterprise but also liberates your team to focus on other key priorities. - [Precision in Protection – Operationalizing Threat Detection and Response with Microsoft Sentinel](https://www.proficio.com/resources/on-demand-webinar-precision-in-protection-operationalizing-threat-detection-and-response-with-microsoft-sentinel/): https://www.youtube.com/watch?v=QtEKcF2h5-Y - [Precision in Protection with Microsoft Sentinel](https://www.proficio.com/resources/precision-in-protection-operationalizing-threat-detection-and-response-with-microsoft-sentinel/): During part one of our two-part webinar series, we’ll explore how to operationalize Microsoft Sentinel’s SIEM (Security Information and Event Management) and SOAR (Security Orchestration Automation and Response) capabilities combined with Security Operation Center analysis and response to rapidly detect, triage, and respond to actionable threats to your organization. - [Mastering Security Orchestration with Microsoft Sentinel and Azure OpenAI](https://www.proficio.com/resources/on-demand-webinar-mastering-security-orchestration-with-microsoft-sentinel-and-azure-openai/): https://www.youtube.com/watch?v=A0FDy_kTM1w - [ProSOC Identity Threat Detection and Response](https://www.proficio.com/resources/prosoc-identity-threat-detection-and-response-overview/): Prosoc Identity-based attacks are one of the top cybersecurity threats facing organizations today, often present in ransomware and supply chain attacks. More attackers are attempting to steal credentials, escalate privileges, and move laterally across an organization's infrastructure, leading to an estimated 60 to 80% of security breaches involving credential abuse. Gartner recommends treating "identity as the new perimeter" and investing in solutions to protect identity systems. Proficio's ProSOC Identity Threat Detection and Response service detects threats to Identity and Access Management (IAM) platforms and enables rapid response to contain attacks and compromises. - [ProSOC MDR](https://www.proficio.com/resources/prosoc-overview/): In the face of ever-evolving cyber threats, Proficio® advances the global mission of MDR with our flagship service, ProSOC® MDR. - [ProView™ Portal](https://www.proficio.com/resources/proview-overview/): Protecting your organization requires more than just selecting the right security technologies - you need to understand who is attacking you, where your security can be improved, and what your cyber risk is. Proficio's ProView™ Portal provides security teams a comprehensive view of their organization's threat environment. From incident management to gap analysis, we provide you the tools needed to better secure your organization. - [AWS Managed Security Services](https://www.proficio.com/resources/aws-security-overview/): To reduce and mitigate risk, organizations must have continuous monitoring and alerting of their organization's security events. Proficio's AWS Managed Security Services give you peace of mind with our 24/7 security protection. Our team of security experts performs investigations, provides actionable alerts, and incident remediation orchestration to efficiently triage security events. Partnering with Proficio is an effective way to increase your cloud security posture and gain full visibility into security alerts related to your AWS environment. - [Risk Based Vulnerability Management Service](https://www.proficio.com/resources/risk-based-vulnerability-management-overview/): Vulnerability Management (VM) is a key part of a mature security program, helping organizations reduce their overall business risk. However, VM scanning tools often generate many vulnerabilities that teams can be overwhelmed by the number of vulnerabilities discovered and lack the resources to effectively patch and remediate. Proficio's Risk-Based Vulnerability Management (RBVM) solution uses vulnerability intelligence and prioritization to help you focus on the vulnerabilities that pose the greatest risk to your environment, significantly improving your organization's security posture and reducing your remediation level of effort. - [Proficio Security Device Management](https://www.proficio.com/resources/managed-devices-overview/): Selecting the right security technologies and maximizing their value is an important part of an effective cybersecurity program. Ranging from next-generation firewalls to sophisticated SIEM software and related tools, technologies must be consistently managed to help reduce your risk. Proficio offers Security Device Management services to help offload lifecycle management functions from your team so they can focus on other priorities. Services are delivered through our SOCs and operate on a 24/7 basis to ensure that your security assets are maintained efficiently, and there's a team always ready to assist. - [MDR for Endpoint](https://www.proficio.com/resources/managed-edr-overview/): Endpoints are the most vulnerable element of an organization's IT infrastructure. Whether it's exposure to phishing scams, ransomware, or malware attacking unpatched software, your endpoints are constantly at risk. Our Managed Detection and Response for Endpoint (MEDR) service detects these risks in real-time. When an incident is identified, we provide device audits, perform analyst investigations, and offer automated response capabilities so you can quickly contain threats and prevent hackers from gaining access to an entry point to your network. - [ProSOC MDR for Splunk](https://www.proficio.com/resources/managed-splunk-overview/): By partnering with Proficio for the monitoring and management of your Splunk Enterprise or Splunk Enterprise Security instance, you have a team of Splunk experts on your side. Proficio's Global Security Operations Centers are staffed by security experts who are dedicated to Splunk infrastructure management, content creation, and cyber detection and response. Adding Proficio's services allows you to maximize the value of your Splunk investment by providing actionable intelligence, minimizing false positives, and freeing up your team to concentrate on other priorities. - [Active Defense Threat Response-as-a-Service](https://www.proficio.com/resources/soar-services-overview/): Cyber threats today are constantly changing, leaving many organizations struggling to keep up with the speed of cyber criminals and latest threats. To minimize damage, fast action is needed to block active attacks and contain compromises. Proficio's Active Defense, our Threat Response-as-a-Service, was created to address this need. By combining the power of our Threat Monitoring, Incident Response, and Threat Intelligence Profiler (TIP), you can quickly react to and contain high-fidelity threats at any time. - [On-Demand Webinar: Identity Behavior Monitoring Best Practices](https://www.proficio.com/resources/on-demand-webinar-precision-in-protection/):   - [Mastering Security Orchestration: Automating Response and Remediation with Microsoft Sentinel Combined with Azure OpenAI](https://www.proficio.com/resources/mastering-security-orchestration-part-2/): Master Class Series – Part Two - [Precision in Protection: Operationalizing Threat Detection and Response with Microsoft Sentinel](https://www.proficio.com/resources/precision-in-protection-part-one-1/): In today's rapidly evolving cybersecurity threat landscape, the ability to distinguish and prioritize real threats from false alarms is crucial for safeguarding your organization's digital assets, enabling efficient response, and thwarting alert fatigue and burnout. - [AWS Identity Behavior Monitoring (IBM) Best Practices](https://www.proficio.com/resources/on-demand-webinar-aws-identity-behavior-monitoring-ungated/):   - [AWS Identity Behavior Monitoring with Amazon Web Services](https://www.proficio.com/resources/aws-identity-behavior-monitoring-ibm-best-practices/): Managing user access and identities in AWS is a critical component of cloud security. However, traditional security measures may not be enough to detect and prevent unauthorized access in complex cloud environments. Identity Behavior Monitoring (IBM) is a unique approach that provides greater visibility into user behavior and detects abnormal user activity in AWS. - [Best Practices for Cloud Security for Microsoft Sentinel](https://www.proficio.com/resources/best-practices-for-cloud-security-with-microsoft-sentinel/): However, implementing comprehensive cloud security tools without interfering with day-to-day operations is a major challenge. Many companies do not have the in-house resources to manage this complexity and require the expertise of a Managed Services Security Provider (MSSP). - [Best Practices for Cloud Security with Microsoft Sentinel](https://www.proficio.com/resources/on-demand-webinar-best-practices-for-cloud-security-with-microsoft-sentinel-ungated/):   - [Overcoming Cloud Security Challenges](https://www.proficio.com/resources/overcoming_cloud_security_challenges_in_aws_ungated/):   - [Cyber Insurance in the Age of Cybercrime](https://www.proficio.com/resources/cyber-insurance-in-the-age-of-cyber-crime/): The cybersecurity insurance market is in flux. As demand soars and payouts skyrocket, more and more providers lower coverage, raise premiums or opt out of the cyber insurance game entirely. Does your business need cyber insurance? And if so, will you qualify? - [SOC as a Service Market – Global Forecast to 2027](https://www.proficio.com/resources/soc-as-a-service-global-forecast-2027/): Analyze and forecast the global SOC as a Service market, covering segmentation, regional trends, key factors, stakeholder opportunities, competitive landscapes - [Identity Threat Detection and Response Webinar](https://www.proficio.com/resources/how-to-prevent-identity-attacks-and-credential-abuse-gated/):   - [Case Study: Naropa University Prioritizes Cybersecurity](https://www.proficio.com/resources/case-study-university-cybersecurity-naropa/): Based in Boulder, Colorado, Naropa University provides a unique learning experience for its students. As the first accredited university to bring contemplative education to the West, their students combine introspection and experiential learning with their academic study. They offer a variety of courses and majors for their students, both at the undergraduate and graduate levels, creating a classroom culture of engagement and equity.  - [Case Study: La Jolla Institute for Immunology Keeping Research Protected](https://www.proficio.com/resources/case-study-la-jolla-institute-for-immunology-cybersecurity/): Founded with the goal of building a partnership between basic science and applied research, the La Jolla Institute for Immunology (LJI) has made it their mission to better understand the immune system and improve human health by developing treatments and cures for immune system disorders. LJI, a top immunology research institution, has been operating for more than 30 years and has over 450 employees.  - [Identity Threat Detection and Response Webinar](https://www.proficio.com/resources/identity-threat-detection-and-response-webinar/): In this on-demand webinar we discuss Identity Threat Detection and Response (ITDR), including: - [Funding Societies Protects Client Data with ProSOC MDR for Splunk](https://www.proficio.com/resources/funding-societies-looks-for-cybersecurity-partner/): Funding Societies is the largest Small and Medium Enterprises (SME) digital financing platform in Southeast Asia. Given the amount of sensitive data that is processed on Funding Societies’ website, cybersecurity is of the utmost importance. Protecting their clients’ information is critical to maintaining trust in the relationships between both parties so when it came to looking for a security partner, they were determined to find a company that would take the role seriously and view their security as a shared responsibility. - [Securing Your Transition to the Cloud](https://www.proficio.com/resources/securing-your-transition-to-the-cloud-webinar/): Moving your infrastructure to the cloud is a good way to modernize your operations. It creates a more flexible environment that can easily support a remote or hybrid workforce. Done correctly, it also makes security more consistent and scalable. But for many, it's still a daunting prospect and concerns remain around keeping your data safe. - [A Discussion Around The Challenges Todays Cybersecurity Officers Face | A Cyber Chat with EVOTEK – Full Episode](https://www.proficio.com/resources/discussion-challenges-cybersecurity-officers-face/): From budget cuts to cyberattacks, today’s CISOs must continuously stay on their toes to keep their organizations protected. On this episode of Cyber Chats, industry veterans Brad Taylor, Proficio’s CEO, and Macy Dennis, EVOTEK Chief Security Officer, sit down to discuss the challenges many Security Officers face. - [Utility Company Automates Threat Responses for their AWS Cloud Environment](https://www.proficio.com/resources/smarter-security-ensures-continuation-of-utility-company-operations/): This utility company typically performed data service applications using on-premises data centers, but as their business evolved, they looked to begin migrating various utility service applications to AWS. They initially tested a shift of water applications to the cloud, but not long after migration, they began experiencing a high volume of attacks on their new cloud infrastructure, which required high volume of manual response actions.  - [Construction Manufacturer Modernizes Security Operations – Case Study](https://www.proficio.com/resources/construction-manufacturer-modernizes-security-operations/): This global manufacturer manages a large volume of products to meet demands for construction clients. They invested in Splunk for their security needs, but their internal IT and cybersecurity teams didn’t have the experience to utilize it to its full potential nor support 24/7 operations; additional, they were building up their cloud infrastructure in AWS. Without having the internal resources to support their infrastructure, they needed to find a partner that could help with their in-house SIEM solution and AWS data to ensure that their data was always safe.  - [Smart Home Automation Company Utilizes MDR for Cloud to Protect Webcam Data Stored in Cloud](https://www.proficio.com/resources/case-study-home-automation-company-focuses-on-cloud-security/): When this well known home automation company came to Proficio, they were already housing their webcam data in Amazon Web Services (AWS). Cloud security was a priority, so they needed to have around the clock protection to ensure their data was secure but didn’t have the resources to monitor their networks 24/7 while also managing a cloud infrastructure, which is often time consuming and overwhelming for a security team.  - [Life Insurance Company Strives for Superior Security with MDR for AWS](https://www.proficio.com/resources/life-insurance-cybersecurity-case-study/): This major life insurance provider was pleased with the abilities of AWS, but their team had limited resources. Since their system processed millions of log events every day, investigating notables and remediating critical events without a dedicated 24/7 Security Operations Center (SOC) became an overwhelming task. In addition, they were hosting significant data in the cloud. So, they decided to partner with subject matter experts that could provide an additional layer of security for both platforms.  - [IPH Unifies Security Operations](https://www.proficio.com/resources/iph-case-study/): Given the group’s growth and expansion, cybersecurity was a key priority for the IPH IT team. While the team had providers in place, they felt their needs weren’t being met; they did not have adequate incident tracking mechanisms or a centralized location to go to for any issues. So, the team decided to search for a new security provider that could provide quicker response times and a unified view of security alerts across the group, which would alleviate internal resource constraint that comes with investigating security incidents from multiple vendors. - [How Organizations Protect Against Ransomware – Proficio Chats with CrowdStrike](https://www.proficio.com/resources/how-organizations-protect-against-ransomware-a-chat-with-crowdstrike-full-episode/): While ransomware remains one of the biggest cyberthreats, there are steps that cybersecurity teams can take to keep themselves better protected. Threat intelligence experts, Ardan Toh of Proficio and Scott Jarkoff of CrowdStrike, share their thoughts on how organizations can stay safe. - [How Organizations Can Prepare For A Security Incident](https://www.proficio.com/resources/preparing-for-a-security-incident/): Since it often not a question of if but when a security incident will occur, they also impart strategies on the best way to be prepared so the team is ready, and the damage can be minimized. Tune in to hear their advice and learn how forming a successful partnership with security experts may be the best way to stay safe. - [MDR Spotlight – What Does a Next-Generation MDR Service Look Like?](https://www.proficio.com/resources/idc-technology-spotlight-next-gen-mdr/): What Does a Next-Generation MDR Service Look Like? - [Establishing a Modern SOC With Splunk APAC Director for Specialization | Matthew Joseff](https://www.proficio.com/resources/cyber_chats_splunk_modern_soc/): In the on-going war against cybercrime, many organizations are looking for ways to modernize their Security Operations Centers (SOCs) to keep up with the ever-evolving threat landscape. On this episode of Cyber Chats, Proficio’s Shane Talbot is joined by Matthew Joseff of Splunk. They provide their tips to companies looking to stay ahead of the curve and why moving to the cloud is key.  - [CISO Challenges: Proficio Chats With IT Security Guru’s Tony Morbin](https://www.proficio.com/resources/ciso-challenges-cyber-chats/): While the year 2020 will always be known for the covid-19 pandemic, it has drastically changed how companies operate in the short- and long-term. But how has it impacted cybersecurity? And what additional CISO challenges has this created? On this episode of Cyber Chats, Proficio’s Chris Jenkins sits down with IT Security Guru’s Tony Morbin. They start off discussing the challenging role of today’s CISOs and how that has evolved in recent years. Chris believes that this role is no longer as technical as in the past, and it’s shifting due to the ever-changing responsibilities and expectations. Does Tony agree? The pair continue to debate what the future of cybersecurity holds, including movement to the cloud and the next-generation of the cybersecurity workforce. - [Benefits of a Risk-based Approach for MDR: Proficio Chats With Qualys CISO | Ben Carr](https://www.proficio.com/resources/cyber-chats-qualys/): One of best ways to stay safe, and maximize your time, is to prioritize your risk. Ben Carr, Qualys CISO, and Zane West, Proficio’s VP of Products and Development, chat about the benefits of solutions like Risk-Based Vulnerability Management and what’s key to better understanding your risk profile. This is critical when dealing with a hybrid workforce, but what else is essential? Learn what they recommend and also hear their tips on how to stay compliant in an increasingly challenging time. - [SOAR in MDR: Proficio Chats With Form Gartner Analyst Oliver Rochford](https://www.proficio.com/resources/proficio-cyber-chats-with-oliver-rochford/): One of the most popular buzzwords today is SOAR, Proficio and former Gartner Analyst, Oliver Rochford dive into the concept of SOAR in cybersecurity. Oliver provides his unique perspective of how the term came to be while he was working as an analyst at Gartner. Does he think SOAR lived up to its potential? Tune in to find out! - [How Companies with Limited Resources Can Adjust to Current Threat Landscape: Proficio Chats With ePlus](https://www.proficio.com/resources/threat-landscape-cyber-chats/): How are cybersecurity teams adjusting to the current threat landscape and what can they do to stay ahead? Hear what Proficio CEO and Co-Founder, Brad Taylor and ePlus had to say about this and other topics influencing todays cybersecurity industry. - [Building a Mature Cyber Program: Proficio chats with VMware Carbon Black](https://www.proficio.com/resources/develop-a-mature-cyber-program-cyber-chats/): How do you develop a mature cyber program? A question that many organizations struggle with. On this episode of Cyber Chats, Proficio and VMWare Carbon Black's discussion kicks off with possible answers to that question. Their experience both from the provider and vendor side gives them a unique perspective on how companies can build up a strong internal program. - [Splunk Managed Security Services for Government Organizations](https://www.proficio.com/resources/proficio-splunk-managed-security-services-for-government-organizations/): Proficio partners with Splunk to provide Managed Detection and Response services for government organizations. Our cybersecurity experts act as an extension of your team to help you build a customized solution to keep ahead of today’s cyberthreats. - [Splunk Managed Security Services: Introduction to Proficio](https://www.proficio.com/resources/proficio-splunk-services-part-1-of-6-introduction-to-proficio/):   - [Splunk Managed Security Services: Proficio Service Highlights](https://www.proficio.com/resources/proficio-splunk-services-part-2-of-6-proficio-service-highlights/):   - [Splunk Managed Security Services: ProSOC Managed Detection and Response for Splunk](https://www.proficio.com/resources/proficio-splunk-services-part-3-of-6-managed-detection-and-response/):   - [Splunk Managed Security Services: MDR Alert Notifications and Automated Incident Response](https://www.proficio.com/resources/proficio-splunk-services-part-4-of-6-alert-notifications-and-automated-incident-response/):   - [Splunk Managed Security Services: Proficio’s Value Add Services for MDR for Splunk](https://www.proficio.com/resources/proficio-splunk-services-part-5-of-6-additional-services/):   - [Splunk Managed Security Services: Proficio’s Managed Splunk Services Overview](https://www.proficio.com/resources/proficio-splunk-services-part-6-of-6-managed-splunk-services/):   - [Proficio Managed Security Services for Splunk](https://www.proficio.com/resources/proficio-splunk-managed-services-video/): By partnering with Proficio for your Splunk Management and Monitoring requirements you get a team of experts on your side. Our global Security Operations Centers (SOCs) are staffed by security experts who are dedicated to Splunk infrastructure management, content development and threat detection and response. - [Markets and Markets SOC as a Service Global Forecast to 2024](https://www.proficio.com/resources/soc-as-a-service-market-report-by-markets-and-markets/): A Global Forecast to 2024 by Markets and Markets - [Forrester: The Total Economic Impact™ Of Proficio®](https://www.proficio.com/resources/forrester-the-total-economic-impact-of-proficio/): Discover the impact that Proficio’s Managed Security Services can have on an organization by downloading the report. - [Optimizing Your Splunk SIEM Investment](https://www.proficio.com/resources/optimizing-your-splunk-investment/): Watch Proficio’s CEO Brad Taylor and Splunk Evangelist Aleem Cummins discuss how to optimize your Splunk investment and the advantages of partnering with Proficio for monitoring and management of your Splunk Enterprise and Splunk Enterprise Security to maximize your SIEM results. - [The SOC of the Future at Splunk .Conf](https://www.proficio.com/resources/the-soc-of-the-future-at-splunk-conf/): How will Security Operation Centers (SOCs) need to change to respond to threats, leverage technology, and overcome the cyber skills gap. - [How Healthcare Organizations Can Avoid Damaging Security Incidents](https://www.proficio.com/resources/how-healthcare-organizations-can-avoid-damaging-security-incidents-and-loss-of-patient-data/): Your organization has just had a security breach and now you have to notify your management. You need to call your boss. This is never an easy call and invariably includes questions like: What data has been compromised? How bad is it and do we need to report a PHI disclosure? How and when did you find out about this? Have we closed the security hole? I thought we passed an audit or assessment recently. Why didn’t that new security product you just bought stop this? You may have been fortunate and found the problem quickly, contained it, and can reassure your management that the expo-sure is limited. Reality is often different. Studies by Proficio, Verizon, and others show that the majority of security incidents are discovered by third parties, and in two thirds of the cases not detected for a month or longer. Once detected over half of the cases took a week or more to contain. Hackers like to target healthcare organizations Cyber criminals target patient records, SSNs, and credit card numbers. Foreign actors are searching for intellectual property including proprietary medical research and processes. Medical identity theft is growing and is a significant problem. According to the 2013 Survey on Medical Identity Theft conducted by Ponemon Institute, medical identity theft affects nearly 2 million people and has increased 20% in the last year. - [Ransomware: Detection and Prevention](https://www.proficio.com/resources/ransomware-detection-and-prevention/): Ransomware is a form of malware that restricts or prevents users from accessing their own systems, usually by means of encrypting files automatically. It requires users to provide payment through online methods before restoring access to the systems. The first observed instance of ransomware, which locked the screen and demanded payment, was in 2009 and found in Russian-speaking countries. In the past few years, ransomware has posed a very real threat to the world. There is evidence of thousands of infections, ranging from typical home users to enterprise networks. Defense measures are rapidly being developed to detect and prevent ransomware, but it’s highly likely that ransomware will continue to evolve and present a danger for years to come. - [Secrets to AI Success in Your SOC](https://www.proficio.com/resources/secrets-to-ai-success-in-your-soc/): In today’s rapidly evolving cybersecurity landscape, integrating AI and machine learning into Security Operation Centers (SOCs) is no longer a luxury but a necessity. Our webinar above, "Secrets to AI Success in Your Security Operation Center," provides invaluable insights into this transformative journey. - [Pharmacy Quality Solutions Shares Why Their Business Chose Proficio MDR](https://www.proficio.com/resources/pharmacy-quality-solutions-shares-why-their-business-chose-proficio/): Pharmacy Quality Solutions, the leading provider of performance management services, talks about why they partnered with Proficio to strengthen their security posture. - [Proficio CEO, Founder of SOC As A Service, Brad Taylor, chats with Cyber Defense TV about Proficio’s SOC as a Service, MSSPs, and MDRs.](https://www.proficio.com/resources/proficio-ceo-brad-taylor-chats-with-cyber-defense-tv-about-proficios-soc-as-a-service-mssps-and-mdrs/) - [IDC Profile Highlights Differentiators of Proficio’s Cybersecurity Services](https://www.proficio.com/resources/idc-profile/): This IDC Vendor Profile analyzes Proficio's global managed security service (MSS) offerings and highlights the company's differentiation factors in the market. The IDC Vendor Profile reviews key success factors including strategy, offerings, partnerships, and target market. - [How to Achieve HIPAA Compliance](https://www.proficio.com/resources/how-to-achieve-hipaa-compliance/): In today's increasing cyber threat environment, protecting patient information is more critical than ever. Healthcare organizations must adhere to the Health Insurance Portability and Accountability Act (HIPAA), which sets the standard for safeguarding sensitive patient data. Achieving HIPAA compliance is not just a regulatory requirement but also a crucial step in building trust with patients and ensuring the security of their personal health information (PHI). ## News - [Proficio CEO, Brad Taylor, in Solutions Review](https://www.proficio.com/news/proficio-ceo-brad-taylor-in-solutions-review/): Proficio CEO, Brad Taylor, discusses why CISOs need continuous cybersecurity education in this video excerpt from this Solutions Review Panel on “Closing the Gap: Cybersecurity in the Boardroom. - [Proficio is Mentioned in Solutions Review’s “Identity Management and Information Security News for the Week](https://www.proficio.com/news/proficio-is-mentioned-in-solutions-reviews-identity-management-and-information-security-news-for-the-week/): Solutions Review covered Proficio’s inclusion in the 2024 Gartner Market Guide for Co-Managed Security Monitoring Services Report in its “Identity Management and Information Security News for the Week on April 5. - [Proficio’s Brad Taylor Participates in Insights Jam Panel on “Closing the Gap: Cybersecurity in the Boardroom”](https://www.proficio.com/news/proficios-brad-taylor-participates-in-insights-jam-panel-on-closing-the-gap-cybersecurity-in-the-boardroom/): On April 4, Solutions Review hosted a panel on “Closing the Gap: Cybersecurity in the Boardroom,” as part of its Insight Jam social media community for enterprise technology. Six cybersecurity leaders, including Proficio CEO, Brad Taylor, participated in the roundtable discussion on what can be done to close the cybersec knowledge gap in company boardrooms and why it absolutely matters in the modern cyberthreat landscape. - [Proficio Continues Advancing the Global Mission of MDR with ISO 27001:2013 Certification](https://www.proficio.com/news/proficio-continues-advancing-the-global-mission-of-mdr-with-iso-270012013-certification/): I am thrilled to share a momentous achievement for Proficio – the successful attainment of the ISO 27001:2013 certification. This isn't just any certification; it's the gold standard in information security – emblematic of our dedication to upholding the highest international standards for data protection for our company and our MDR clients across the globe.  - [Proficio in MSSP Alert’s MDR 40-Plus: Top Managed Detection and Response MDR Companies: 2023 Edition](https://www.proficio.com/news/proficio-in-mssp-alerts-mdr-40-plus-top-managed-detection-and-response-mdr-companies-2023-edition/): Proficio is listed among the top MDR companies, noting the company’s partnership to deliver Proficio’s Managed Security Services to CyberSix clients and its partnership with Cyber Intelligence House, a U.S. government entity specializing in helping cybersecurity professionals assess and monitor cyber exposure from the dark web, deep web, data breaches and online asset. Check out the coverage here - [CyberCatch, Proficio Partner for AI-Powered MDR in MSSP Alert.](https://www.proficio.com/news/cybercatch-proficio-partner-for-ai-powered-mdr-in-mssp-alert/): MSSP Alert covers the partnership announcement between Proficio and CyberCatch. The two companies are working together to provide global organizations "with the ability to achieve continuous compliance while safeguarding against pervasive cyber threats.” Under the partnership, CyberCatch and Proficio will promote their combined continuous compliance and cyber risk mitigation offering to their respective customers. Read the story here. - [Proficio in MSSP Alert’s Market News](https://www.proficio.com/news/proficio-in-mssp-alerts-market-news/): Noted are the recent leadership moves by Proficio, including the appointment of the company’s new VP of marketing, Jen Ferguson. Check out the mention here - [Channel Futures Notes Proficio Hires in MSP News Round Up](https://www.proficio.com/news/channel-futures-notes-proficio-hires-in-msp-news-round-up/): Channel Futures covers the strategic hires of Jen Ferguson et al at Proficio in their weekly news round up. Read the coverage now - [CIOSE Covers the Licensing of Proficio to Provide Managed SOC Monitoring Services in Singapore](https://www.proficio.com/news/ciose-covers-the-licensing-of-proficio-to-provide-managed-soc-monitoring-services-in-singapore/): Proficio announced that it received its license by the Cyber Security Agency of Singapore to provide Managed SOC Monitoring Services. Conferred by the 2018 Cyber Security Act, this licensing framework is required to operate in Singapore and aims to safeguard consumer interests and improve service provider standards. Read more here - [Proficio launches detection and response service to tackle identity-based threats](https://www.proficio.com/news/proficio-launches-detection-and-response-service-to-tackle-identity-based-threats/): Managed detection and response (MDR) service provider Proficio has launched ProSOC Identity Threat Detection and Response to protect businesses from identity-based attacks and credential abuse. The firm claimed the service is the industry’s only vendor-agnostic Open XDR solution that supports identity threat detection and response and works with existing security tools without proprietary agents or sensors. - [Directory Of Managed Security Service Providers (MSSPs) To Watch In 2019](https://www.proficio.com/news/directory-of-managed-security-service-providers-mssps-to-watch-in-2019/): The global shortage of cybersecurity professionals is expected to reach 3.5 million unfilled positions by 2021, up from 1 million in 2014. MSSPs are responding to the labor crunch by providing organizations of all types and sizes with a growing portfolio of services to choose from... - [Proficio Covered in Help Net Security](https://www.proficio.com/news/proficio-covered-in-help-net-security/): Help Net Security covers Proficio’s ProView Plus Portal with ThreatInsight risk scoring and executive dashboards. The ThreatInsight Scoring Dashboard gives customers visibility into the gaps in their security controls and automatically providing recommendations on how to maximize current investments and minimize risks. Check out the coverage here - [125+ cybersecurity companies in healthcare to know | 2018](https://www.proficio.com/news/125-cybersecurity-companies-in-healthcare-to-know-2018/): Here are more than 125 companies focused on cybersecurity for hospitals, health systems and other healthcare organizations... - [Global MSSP Proficio opens new Melbourne base to serve Aussie businesses](https://www.proficio.com/news/global-mssp-proficio-opens-new-melbourne-base-to-serve-aussie-businesses/): Global managed security services provider Proficio has established a new base in Melbourne that it will use to further push into the Australian and Asia Pacific markets. - [Proficio Extends MDR, Managed Security Services to Australia](https://www.proficio.com/news/proficio-extends-mdr-managed-security-services-to-australia/): Proficio, a Top 100 MSSP for 2017 that provides managed detection and response (MDR), log monitoring and other cybersecurity services, has opened a facility in Melbourne, Australia. The Melbourne hub is Proficio’s third location in the Asia-Pacific (APAC) region. - [Proficio Wins Eleven Cybersecurity Awards in 2018](https://www.proficio.com/news/proficio-wins-eleven-cybersecurity-awards-in-2018/): Proficio, a world-class managed security services provider (MSSP) delivering managed detection and response (MDR), has received eleven top honours by several industry award outlets in the first quarter of 2018. - [Veterans: A Good Bet to Fill the Cybersecurity Skills Gap](https://www.proficio.com/news/veterans-a-good-bet-to-fill-the-cybersecurity-skills-gap/): The cybersecurity industry is projecting a staffing shortage of 1.8 million unfilled jobs globally by 2022, according to Forrester Research. And research from Enterprise Strategy Group and the Information Systems Security Association indicates that 45 percent of organizations claim to have a problematic shortage of cybersecurity skills... - [Cybersecurity Services Provider Proficio Secures Additional Investment](https://www.proficio.com/news/cybersecurity-services-provider-proficio-secures-additional-investment/): Proficio, a Carlsbad, Calif.-based cybersecurity company announced on Dec. 14 that it had completed a round of funding led by Kayne Anderson Capital Advisors. - [Proficio nets more funding for cybersecurity as a service platform](https://www.proficio.com/news/proficio-nets-more-funding-for-cybersecurity-as-a-service-platform/): Proficio, a Carlsbad firm providing managed cybersecurity services to businesses, said last week that it has received a second round of funding from current investor Kayne Anderson Capital Advisors, bringing the total raised by the firm to more than $20 million. - [What should be done to prevent more credit data hacks like Equifax’s](https://www.proficio.com/news/what-should-be-done-to-prevent-more-credit-data-hacks-like-equifaxs/): In the wake of the hacking last week of U.S. consumer credit reporting agency Equifax Inc., security experts bemoaning are calling for big changes, including big penalties for the data brokers that hold so much information critical to everyone’s financial life. - [107+ cybersecurity companies in healthcare | 2017](https://www.proficio.com/news/107-cybersecurity-companies-in-healthcare-2017/): Healthcare organizations across the globe are more susceptible than ever to hacks and data breaches, which can cost a hospital or health system millions to fix and damage their reputation. As a result, hospitals are investing more in cybersecurity and risk management services. - [The 4 biggest healthcare IT headaches](https://www.proficio.com/news/the-4-biggest-healthcare-it-headaches/): To avoid violating regulations, which could result in tens of thousands of dollars (or more) of fines and negative publicity, healthcare providers must ensure that their facilities are in compliance and be constantly on the lookout for security threats. - [Companies ramp up recruiting veterans as cybersecurity urgency grows](https://www.proficio.com/news/companies-ramp-up-recruiting-veterans-as-cybersecurity-urgency-grows/): Managed security services provider Proficio, Inc., plans to grow its cybersecurity team from about 100 employees today to more than 450 people by the end of 2018.  It may seem like a daunting task for most companies given the shortage of workers with cybersecurity skills, but Proficio executives believe they have tapped into a goldmine of potential cybersecurity talent – the veterans coming out of San Diego’s military bases near the company’s headquarters... - [The Cloudification of Healthcare: Benefits and Risks](https://www.proficio.com/news/the-cloudification-of-healthcare-benefits-and-risks/): Many organizations are moving most of their business-critical applications and workloads to the cloud. The healthcare industry is no exception – hospitals, payers and other organizations also are making moves to the cloud. - [Frost & Sullivan Names Tim McElwee “Mover & Shaker”](https://www.proficio.com/news/frost-sullivan-names-tim-mcelwee-mover-shaker/): The interview covered a wide range of topics, including why Proficio was formed, about our company’s global expansion and other managed security topics. - [Proficio Survey Highlights Cybersecurity Challenges for 2016](https://www.proficio.com/news/proficio-survey-highlights-cybersecurity-challenges-2016/): Carlsbad, CA — January 4, 2016 — Proficio, an award-winning provider of cloud-based security services, announced today the results of its 2016 Cybersecurity Survey. Indicating another challenging year, less than half of the IT security professionals surveyed said they are satisfied that they have the technology, processes, and expertise to prevent a damaging cyber attack in 2016. - [Managed Security Services Firm Proficio Raises $12 Million](https://www.proficio.com/news/managed-security-services-firm-proficio-raises-12-million/): Proficio, a provider of managed detection and response services, announced on Monday that it has closed a $12 million round of funding from private equity firm Kayne Anderson Capital Advisors and Singapore-based telecommunications provider M1. ## Categories ## Tags