Background & challenges
REST Solution is a Managed Service Provider (MSP). With a presence in 9 countries, the group currently offers global coverage in 45 countries and 5 languages.
Initially focused on outsourcing and project support, the company has set up a cybersecurity (SOC, consulting, governance, engineering) available 24/7 thanks to a SOC service spread over three countries: the Philippines, Mauritius and Mexico.
Relying on experienced talents, the major challenge was to set up a cybersecurity business unit equipped with effective, robust technologies and processes.
Why the Sekoia AI SOC platform?
REST Solution was looking for a multi-tenant solution capable of managing the IT systems of numerous customers operating in different environments. In response to this challenge, Sekoia has distinguished itself by its ability to:
- Effectively detect threats,
- Collect logs from a wide range of security sources,
- Easily integrate third-party products (>200 integrations in the catalog),
- Enable fine-tuning of detection rules,
- Provide comprehensive documentation and responsive support to REST Solution teams,
- All with controlled costs.
The platform also features a user-friendly, intuitive interface, which facilitated rapid adoption by the entire REST Solution SOC team.
Finally, compliance is a major differentiating factor. Sekoia is in fact PCI-DSS certified, which met the requirements of REST Solution, itself engaged in the ISO27001 certification process to provide guarantees to the organizations whose digital assets it protects.
Benefits
The ease with which the SOC platform can be deployed, thanks to the SaaS model, was the tool’s main advantage during implementation. Sekoia facilitated deployment thanks to its intuitive, free agent. The Sekoia agent was therefore a game changer, helping REST Solution to win new customers by improving their security posture in a very short time.
Combined with the performance of the detection rules, this quickly translated into very concrete results: within two weeks, a customer could see the added value of the solution, with alerts on suspicious activities detected.
In addition to monitoring, the native integration of CTI (Sekoia Intelligence) brings additional value to the managed SOC. From ongoing cyber-threat research carried out by the Sekoia TDR team itself, through the regular sharing of strategic reports for decision-makers (FLINT or Flash Intelligence Reports), to the enrichment of the intelligence produced, as well as the retro-hunting functionality integrated into the platform: this complete cycle ultimately enables REST Solution to automate its activities to strengthen its cyber-threat intelligence services.
From an economic point of view, the transparency of licensing costs based on assets is also highlighted: this aspect has provided a convincing predictive model for the partner, who now has a strong sales argument for his customers and prospects.
Mathieu Quéré, the CEO of REST Solution, summarised it saying, "By optimizing REST Solution’s 24/7 managed SOC, the Sekoia platform has supported the rapid development of our cybersecurity services. The partnership model, based on transparency and predictability, is exactly what we expect from a technology partner."
Use cases
REST Solution monitors the cybersecurity of its customers worldwide 24/7 with the Sekoia SOC platform. The platform addresses a number of key SOC use cases:
- Alert management in diverse environments,
- Deployment of detection rules covering most of the attack techniques described in the MITRE ATT&CK framework
- Automated incident response thanks to the platform’s integrated playbooks and SOAR.
In addition, REST Solution takes advantage of Sekoia’s threat intelligence to strengthen its CTI services and develop new associated services for SOC beneficiaries.
In this way, REST Solution leverages its own expertise to meet the needs expressed by its customers.
.png)

