Your Security Operations Center, live 24/7 from day one.
SecureCore AI is CyCal-Hub's managed SOC, combining agentic AI with certified analysts. We detect, analyse and stop threats before they disrupt your business, without you building an in-house SOC.
From signal to action, in minutes.
Agentic AI checks every alert against 12 months of history and threat intelligence. It assigns a priority score and proposes an action. The analyst confirms or escalates, typically within 15 minutes.
Collection
Logs, endpoints, network and cloud flow into a single platform, through a dedicated tunnel isolated for each client.
Detection
Correlation rules, ML models and indicators of compromise refreshed every 6 hours.
Response
Automated playbooks for ransomware, BEC and data exfiltration. Containment actions run only with your approval.
Reporting
Real-time dashboards, a weekly report and evidence ready for compliance audits.
Everything you need to see and stop an attack.
SIEM & Log Management
Centralised event collection and correlation, with 12-month retention on immutable (WORM) storage.
EDR – Endpoint
Tamper-proof agents for Windows, Linux and macOS to detect and isolate compromised devices.
NDR – Network
Traffic analysis to spot lateral movement, beaconing and anomalous communications.
SOAR & automation
Playbooks for the most common scenarios, 300+ integrations and guided containment.
Threat Intelligence
Community and commercial feeds, with automatic retrohunting across the last 12 months of logs.
Vulnerability Management
Scheduled authenticated scans and remediation prioritised by real risk.
Choose the level of protection that fits you.
Monthly fee, 12-month contract, no hardware investment.
SecureCore AIEssential
For professional firms and small businesses that want constant visibility.
- 24/7 SIEM monitoring
- AI alert triage
- Monthly report
- 12-month log retention
SecureCore AIProfessional
Most popularFor SMEs that want full detection & response.
- Everything in Essential
- EDR on endpoints and servers
- NDR on network traffic
- SOAR automation
- Incident response support
SecureCore AIEnterprise
For NIS2 and DORA entities, healthcare and complex environments.
- Everything in Professional
- Proactive threat hunting
- NIS2 / ISO 27001 / GDPR compliance reports
- Dedicated analyst
The fee depends on the number of assets, data sources and scope. Email us at info@cycalhub.com for a tailored quote.
SecureCore AI FAQ
Do we need to buy hardware or software?
No. We run the platform. On your side you only need endpoint agents and log forwarding, which we configure during onboarding.
How long does it take to go live?
Standard onboarding takes up to 5 working days. By then, all agreed sources are being monitored.
Does the AI take decisions on our systems by itself?
No. The AI classifies alerts and suggests actions. Containment on your assets runs only according to the approval rules agreed with you.
Does the SOC help with NIS2 obligations?
Yes. Continuous monitoring, incident handling and exportable evidence cover a significant part of the Art. 21 measures and support the 24h and 72h reporting required by Art. 23.
Where is our data stored?
Logs are kept for 12 months in the cloud on immutable, encrypted storage, segregated per client. [TO COMPLETE: data centre region and cloud provider].