24/7 Managed SOC Services & Monitoring
Whether an incident goes down at 3:00 p.m. or 3:00 a.m., the BULLZIGA elite AI-assisted SOC team has your back with always-on SOC monitoring and rapid response.
People-Powered Threat Hunting
8 min
100+
across the globe
98.8%
<1%
78k
8k
How Our SOC Gets it Done
Other solutions build security tools without thinking about their SOC or how they’ll use it. We built our entire platform to work seamlessly with our AI-assisted SOC to give them—and you!—the right tools to stop modern threats. Our tech and our team are never separated, so you get the best of both.
Purpose-Built
Tech
Designed for our SOC = high-fidelity detections, low noise, fast response
Detections
Expert tradecraft uncovering the latest threats
Investigations
Finding and rooting out hackers wherever they hide
Response
MTTR of 8 minutes. Containment of the threat on your behalf
Managed Remediations
Automated remediation to evict hackers. Expert guidance to bolster defenses
Threat Research + Detection Engineering + SOC Analysis, Support, and Hunting + Tactical Response
BULLZIGA Managed Security Platform
Threats Our SOC’s Been Wrecking
SlashAndGrab
CVE-2024-1709, CVE-2024-1708
- Quickly reverse-engineered the ScreenConnect vulnerability delivering a universal hotfix
- Issued first public detection guidance (with ongoing updates)
- Collaborated directly with ConnectWise to facilitate their response
FOUNDATION Accounting Software
- Uncovered an emerging threat affecting the construction industry
- Confirmed 33 publicly exposed hosts with unchanged default
- Shared findings with FOUNDATION to support their response plan
Cleo
- Stopped active threats to endpoints with Managed EDR IP Blocking feature
- Created custom detections for compromised Cleo Lexicom, VLTransfer, and Harmony products
- Launched investigation guide to triage in a scalable and consistent way
CrushFTP
- Found additional post-exploitation threat actvity abusing RMM tooling
- Notified 70+ customer companies running unpatched versions of CrushFTP
- Released two public Sigma rules to help improve detection for the broader community
Qakbot
- Delivered 10,000+ incident reports to customer and partners
- Created internal vaccine to shutdown Qakbot on endpoints
- Cut new Qakbot infections to nearly zero in two weeks post-vaccine
Kaseya
- Hosted a community webinar for MSPs and resellers during the recovery phase
- Pushed internal vaccine to all Huntress agents within hours of initial attack
- Partnered with law enforcement, cloud service providers, and Kaseya security team on recovery efforts
The Ethical Badasses Behind The SOC
Jonathan Johnson
Principal Product Researcher
Jonathan Johnson
Principal Product Researcher
Jonathan Johnson
Principal Product Researcher
Jonathan Johnson
Principal Product Researcher
Jonathan Johnson
Principal Product Researcher
Jonathan Johnson
Principal Product Researcher
Jonathan Johnson
Principal Product Researcher
Jonathan Johnson
Principal Product Researcher
Jonathan Johnson
Principal Product Researcher
Prominently featured in



Inside the Mind of a Hacker
What People Are Saying About our SOC Services