CSOC operates a managed security operations center (MDR/SOC) built on Linux, Kubernetes, PostgreSQL, and Elasticsearch—a fully open-source observability stack that reflects their pitch around independence from US-headquartered cloud giants. Active projects center on infrastructure-as-code, SRE practices, and container modernization, while hiring leans toward infrastructure and security roles; the pain list (stable platform, IT/OT monitoring, team restructuring) suggests they're scaling their own ops to match client demand.
Notable leadership hires: Infrastructure Lead
CSOC is a managed detection and response (MDR/SOC) provider headquartered in Bornheim, Germany, serving mid-market organizations. The service covers on-premises and cloud systems (AWS, Azure, Google Cloud), with optional agent-free monitoring for Azure environments. Beyond 24/7 security monitoring, the company offers vulnerability management and incident response, positioning itself as an alternative to US-based SOC vendors. The founding in 2020 and 11–50 headcount suggest a specialist boutique targeting the German and EU mid-market.
CSOC's platform runs on Linux, Kubernetes, PostgreSQL, and Elasticsearch (OpenSearch), with Prometheus/Grafana for monitoring, Ansible for orchestration, and GitLab CI/CD for deployment automation.
Yes. CSOC's MDR service covers both on-premises and cloud environments (AWS, Azure, Google Cloud), with agent-free monitoring options available for Azure deployments.
Other companies in the same industry, closest in size