24/7/365 expert monitoring for Trend Micro Apex One SaaS
Managed Security Service for Apex One SaaS
Trend Micro Apex One SaaS is an endpoint security solution that monitors enterprise and organizational endpoints using a management server provided by Trend Micro in the cloud. At Asgent, logs generated by Apex One SaaS are monitored 24 hours a day, 365 days a year by our Security Operations Center (SOC), where dedicated security analysts perform ongoing analysis.
Features
-
Early Incident Detection by Experienced Security Analysts
Asgent’s highly experienced security analysts continuously monitor the environment from the SOC and notify customers of security events reported by Apex One SaaS, enabling rapid awareness and response.
-
24/7/365 Monitoring of Customer Systems
Asgent’s SOC monitors customer environments on 24/7/365 basis, when high-risk security alerts are detected, designed contacts – including system administrators – are immediately notified via email and phone. -
Automated Operations and Reduced Operational Cost
The automatic updates provided by Apex One SaaS ensure the environment is always up to date, while Astemt’s SOC provides continuous monitoring. Together, they enable efficient threat mitigation without operational burden, maintaining a high level of network security and substantially lowering operational costs.
System Configuration Overview
- The SOC security receives encrypted logs transmitted from the management server (Apex Central) via the internet.
- Log transmission configuration on Apex Central are handled by the SOC to ensure proper and continuous monitoring.
- ・All service-related communications, excluding log transmission, are established via standard Internet connectivity.
Monitoring Scope
The following outlines the Apex One features subject to monitoring and their corresponding monitoring details.
| Apex One Feature | Security Monitoring Details | |
| Machine Learning-Based Detection | Protects computers from malware threats. | If a malicious file is not deleted or quarantined, a ticket is issued. For high-risk incidents, a ticket is issued and customer is notified by phone. | Viruses/Malicious Programs | Protects computers from file-based threats. |
| Web Reputation | Blocks access to malicious URLs. | If the communication is not blocked, the destination URL is investigated, and a ticket is issued. |
| C&C Callback | Blocks access to Command & Control (C&C) server IP addresses or URLs. | If communication is blocked, a ticket is issued and the customer is notified by phone. |