The system must meet the following requirements:
The SOAR solution must support bidirectional integration with systems from various vendors, including Fortinet, Kaspersky, and Microsoft.
The SOAR solution must support on-premise deployment within the Customer’s infrastructure.
The SOAR solution must support the creation of custom integrations.
The SOAR solution must include built-in incident response playbooks.
The SOAR solution must support the creation of custom response playbooks.
The SOAR solution must support task creation for automation purposes.
The SOAR solution must support alert enrichment and scoring.
The SOAR solution must support mapping alerts to the MITRE ATT&CK framework.
The SOAR solution must support assignment of alerts to relevant analysts (L1, L2).
The SOAR solution must support automatic closure of alerts.
The SOAR solution must support both manual and automatic escalation of alerts to incidents.
The SOAR solution must include an Incident Response Platform (IRP) module.
The SOAR solution must include a dashboard providing an overview of alerts and incidents.
The SOAR solution must support launching a dedicated channel for optimized and collaborative incident management, including private communication for high-priority incidents.
The SOAR solution must support report generation and export capabilities.
The SOAR solution must support definition and management of task queues, shift schedules, and personnel calendars for supervisors.
The SOAR solution must support definition and tracking of SLA metrics for teams and individual employees.
The SOAR solution must provide an extensive and continuously updated library of ready-to-use content, widgets, and response playbooks via an intuitive web portal integrated into the product.
The SOAR solution must support role-based access control (RBAC) to restrict access to the user interface and data at different levels.
Email:
TenderAnorbank@anorbank.uz
ANORBANK@exat.uz
Please, introduce yourself to start the conversation