Gartner® Report: Questions to Ask When Selecting an MDR Provider

Gartner® Report: Questions to Ask When Selecting an MDR Provider

Measuring against the right criteria

The “right” criteria is whatever works to further your security organization’s specific needs in detection and response (D&R). There’s only so much budget to go around—and successfully obtaining a significant year-over-year increase can be rare. The last thing anyone wants to be known for is depleting that budget on a service provider that doesn’t deliver.

At Rapid7, we’ve spoken extensively about how a security operations center (SOC) can evaluate its current D&R proficiency to determine if it would be beneficial to extend those capabilities with a managed detection and response (MDR) provider. In an ongoing effort to help security organizations thoughtfully consider potential providers, we’re pleased to offer this complimentary Gartner® report, Quick Answer: What Key Questions Should I Ask When Selecting an MDR Provider?

This asset acts as a time-saving report for quick answers when vetting several potential providers. Key questions to ask yourself and your service providers include:

Yourself: Are we looking for providers that can improve our incident response capabilities?Yourself: Do we have use cases specific to our environment that the MDR provider must accommodate?Yourself: What functionality do we need from the provider’s portal?Provider: How good are you at detecting threats that have bypassed existing, preventative controls?Provider: How do you secure, and how long do you retain, the data you collect from customers?Provider: What response types are provided as a component of the MDR service, and what is the limit of those response activities?

Before expecting any quick answers though, it’s crucial to consider…

Your criteria framework

Your organization might conduct a new audit of desired ou ..

Support the originator by clicking the read the rest link below.