Home / Services / SecureCore AI
SecureCore AI · SOC-as-a-Service / MDR

Your Security Operations Center, live 24/7 from day one.

SecureCore AI is CyCal-Hub's managed SOC, combining agentic AI with certified analysts. We detect, analyse and stop threats before they disrupt your business, without you building an in-house SOC.

How SecureCore AI works

From signal to action, in minutes.

Agentic AI checks every alert against 12 months of history and threat intelligence. It assigns a priority score and proposes an action. The analyst confirms or escalates, typically within 15 minutes.

1 · Collect

Collection

Logs, endpoints, network and cloud flow into a single platform, through a dedicated tunnel isolated for each client.

2 · Detect

Detection

Correlation rules, ML models and indicators of compromise refreshed every 6 hours.

3 · Respond

Response

Automated playbooks for ransomware, BEC and data exfiltration. Containment actions run only with your approval.

4 · Report

Reporting

Real-time dashboards, a weekly report and evidence ready for compliance audits.

Modules

Everything you need to see and stop an attack.

SIEM & Log Management

Centralised event collection and correlation, with 12-month retention on immutable (WORM) storage.

EDR – Endpoint

Tamper-proof agents for Windows, Linux and macOS to detect and isolate compromised devices.

NDR – Network

Traffic analysis to spot lateral movement, beaconing and anomalous communications.

SOAR & automation

Playbooks for the most common scenarios, 300+ integrations and guided containment.

Threat Intelligence

Community and commercial feeds, with automatic retrohunting across the last 12 months of logs.

Vulnerability Management

Scheduled authenticated scans and remediation prioritised by real risk.

Plans

Choose the level of protection that fits you.

Monthly fee, 12-month contract, no hardware investment.

SecureCore AIEssential

Price on request

For professional firms and small businesses that want constant visibility.

  • 24/7 SIEM monitoring
  • AI alert triage
  • Monthly report
  • 12-month log retention
Response SLA · 8h
Request a quote

SecureCore AIProfessional

Most popular
Price on request

For SMEs that want full detection & response.

  • Everything in Essential
  • EDR on endpoints and servers
  • NDR on network traffic
  • SOAR automation
  • Incident response support
Response SLA · 4h
Request a quote

SecureCore AIEnterprise

Price on request

For NIS2 and DORA entities, healthcare and complex environments.

  • Everything in Professional
  • Proactive threat hunting
  • NIS2 / ISO 27001 / GDPR compliance reports
  • Dedicated analyst
Response SLA · 1h
Request a quote

The fee depends on the number of assets, data sources and scope. Email us at info@cycalhub.com for a tailored quote.

FAQ

SecureCore AI FAQ

Do we need to buy hardware or software?

No. We run the platform. On your side you only need endpoint agents and log forwarding, which we configure during onboarding.

How long does it take to go live?

Standard onboarding takes up to 5 working days. By then, all agreed sources are being monitored.

Does the AI take decisions on our systems by itself?

No. The AI classifies alerts and suggests actions. Containment on your assets runs only according to the approval rules agreed with you.

Does the SOC help with NIS2 obligations?

Yes. Continuous monitoring, incident handling and exportable evidence cover a significant part of the Art. 21 measures and support the 24h and 72h reporting required by Art. 23.

Where is our data stored?

Logs are kept for 12 months in the cloud on immutable, encrypted storage, segregated per client. [TO COMPLETE: data centre region and cloud provider].