HomeResources
How REST Solution boosted its managed SOC business with Sekoia

How REST Solution boosted its managed SOC business with Sekoia

14 days

value seen within

8/10

satisfaction with Sekoia

As a 24/7 managed services specialist, REST Solution helps companies worldwide manage their IT systems, migrate to the cloud, strengthen their cybersecurity, and adopt proactive monitoring and response.

A PDF version of this case study is available

Download case study

"The intuitive, user-friendly Sekoia platform was quickly adopted by both our team and our customers, showing concrete results in just a few weeks."
Chief Information Security Officer (CISO)
Anusha Luchoomun

Background & challenges

REST Solution is a Managed Service Provider (MSP). With a presence in 9 countries, the group currently offers global coverage in 45 countries and 5 languages.

Initially focused on outsourcing and project support, the company has set up a cybersecurity (SOC, consulting, governance, engineering) available 24/7 thanks to a SOC service spread over three countries: the Philippines, Mauritius and Mexico.

Relying on experienced talents, the major challenge was to set up a cybersecurity business unit equipped with effective, robust technologies and processes.

Why the Sekoia AI SOC platform?

REST Solution was looking for a multi-tenant solution capable of managing the IT systems of numerous customers operating in different environments. In response to this challenge, Sekoia has distinguished itself by its ability to:

  • Effectively detect threats,
  • Collect logs from a wide range of security sources,
  • Easily integrate third-party products (>200 integrations in the catalog),
  • Enable fine-tuning of detection rules,
  • Provide comprehensive documentation and responsive support to REST Solution teams,
  • All with controlled costs.

The platform also features a user-friendly, intuitive interface, which facilitated rapid adoption by the entire REST Solution SOC team.

Finally, compliance is a major differentiating factor. Sekoia is in fact PCI-DSS certified, which met the requirements of REST Solution, itself engaged in the ISO27001 certification process to provide guarantees to the organizations whose digital assets it protects.

Benefits

The ease with which the SOC platform can be deployed, thanks to the SaaS model, was the tool’s main advantage during implementation. Sekoia facilitated deployment thanks to its intuitive, free agent. The Sekoia agent was therefore a game changer, helping REST Solution to win new customers by improving their security posture in a very short time.

Combined with the performance of the detection rules, this quickly translated into very concrete results: within two weeks, a customer could see the added value of the solution, with alerts on suspicious activities detected.

In addition to monitoring, the native integration of CTI (Sekoia Intelligence) brings additional value to the managed SOC. From ongoing cyber-threat research carried out by the Sekoia TDR team itself, through the regular sharing of strategic reports for decision-makers (FLINT or Flash Intelligence Reports), to the enrichment of the intelligence produced, as well as the retro-hunting functionality integrated into the platform: this complete cycle ultimately enables REST Solution to automate its activities to strengthen its cyber-threat intelligence services.

From an economic point of view, the transparency of licensing costs based on assets is also highlighted: this aspect has provided a convincing predictive model for the partner, who now has a strong sales argument for his customers and prospects.

Mathieu Quéré, the CEO of REST Solution, summarised it saying, "By optimizing REST Solution’s 24/7 managed SOC, the Sekoia platform has supported the rapid development of our cybersecurity services. The partnership model, based on transparency and predictability, is exactly what we expect from a technology partner."

Use cases

REST Solution monitors the cybersecurity of its customers worldwide 24/7 with the Sekoia SOC platform. The platform addresses a number of key SOC use cases:

  • Alert management in diverse environments,
  • Deployment of detection rules covering most of the attack techniques described in the MITRE ATT&CK framework
  • Automated incident response thanks to the platform’s integrated playbooks and SOAR.

In addition, REST Solution takes advantage of Sekoia’s threat intelligence to strengthen its CTI services and develop new associated services for SOC beneficiaries.

In this way, REST Solution leverages its own expertise to meet the needs expressed by its customers.

FAQ

Can MSSPs use Sekoia with their customers’ existing security tools?

Yes, you can. Sekoia uses an open and extensible architecture to avoid vendor lock-in. It comes with over 300 integrations.

With Sekoia Reveal, you ingest data from existing tools like EDRs, CMDBs, IAM platforms, and vulnerability scanners. On the output side, Sekoia Intelligence feeds high-confidence threat data directly into your customers' SIEMs, SOARs, firewalls, or TIPs via native APIs and TAXII endpoints.

What is a Managed Security Service Provider (MSSP)?

An MSSP is a third-party company that monitors and manages an organization's digital security. Today, many are evolving into Managed Detection and Response (MDR) providers to offer deeper threat hunting and faster incident containment.

How does Sekoia support multi-tenant MSSP security operations?

The platform has built-in features to manage multiple communities from a single view. Through Sekoia Elevate, you can tailor the AI agent's context and memory for each specific sub-tenant. This lets the platform handle every customer’s unique environment and edge cases perfectly.

How can Sekoia help MSSPs scale their managed security services?

Scaling a traditional SOC is expensive because alert volumes grow much faster than human capacity. Hiring more analysts to clear backlogs just burns out your team and eats your margins.

Sekoia fixes this by deploying specialized AI agents that automate alert triage and investigations end-to-end. The AI handles the hours of repetitive research and documentation. Your current team can then focus entirely on making critical decisions and managing threat responses. You scale your customer base without a matching spike in headcount.