Skip to content
CybersecurityBARUCH / 13

Cyber Defence and Access Management

Strengthen detection. Review who can access.

Assess logs, defensive rules, identities and privileges to identify coverage gaps and organise improvements with the technical team.

Scope and deliverables defined for your business.

Illustrative scene: Security keys, an access card and a computer displaying a permissions matrix.BARUCH / ANALYSIS AND EXECUTION
WHAT YOU RECEIVE

Defensive assessment

Access risk inventoryImprovement plan

01 / When it makes sense

When to engage this service.

Low-value alerts, detection gaps or excessive permissions make exposure harder to control and suspicious behaviour harder to address.

For decision makers

Information Security, SOC, IT and identity and access teams responsible for the environments.

Discuss the decision you need to make

In practice

Does this sound familiar?

Hypothetical examples of situations where this solution can help your organisation.

  • Access after a role change or departure

    An account can still change registrations, commissions or payments after a staffing change. IT and process owners need to review permissions and decide who approves and removes each type of access.

  • Low-value alerts

    The team needs to review logs and rules to understand what it can detect and where gaps remain.

  • Unclear response procedures

    Teams want to review configurations and procedures to better address suspicious behaviour in their systems.

What to share in your first enquiry

These questions help us understand the context and define the service.

  1. Is the priority threat detection, access management or both?
  2. Which environments and accounts should be included in the assessment?
  3. Which logs, rules and procedures does the team currently use?
Request a proposal

02 / From analysis to decisions

Decisions the analysis helps you make.

  • 01

    Determine which permissions need review

  • 02

    Prioritise missing logs and detection alerts

  • 03

    Assign owners and criteria for control reviews

03 / Your deliverables

What you receive.

Choose an option to see an example deliverable.

Swipe the options to see more deliverables →

Inside the deliverable

Defensive assessment

Logging and detection coverage, operational gaps and recommendations for response procedures.

Fictional example

Coverage from event to response

Illustrative structure. No client data or results.

  1. Available record

    The example system records role changes.

    Fictional source EX-01
  2. Detection gap

    Review of exceptional privileges is not defined.

    Coverage to validate
  3. Expected response

    Define an owner and procedure for assessing the exception.

    Referral criterion
How to interpret this example

The assessment connects logging, detection and response; having a log does not mean the control is complete.

Content and depth are defined according to your project scope.

Which decision should this deliverable support?

Tell us what you need

04 / The work

How Baruch carries out the work.

Explore the stages of the work. The scope starts with your context, available information and the decision your business needs to make.

01

Map controls and access

We review log sources, defensive configurations, identities, roles and privileges included in scope.

02

Assess coverage

We validate detection and procedures through controlled scenarios and examine authentication, access provisioning and removal.

03

Organise improvements

We prioritise configuration, detection and permission recommendations with suggested owners and review criteria.

05 / A tailored scope

What your project can include

Combine the capabilities your challenge requires.

Blue Team

We review log sources, defensive configurations, detection rules and response procedures, assessing their coverage through controlled scenarios alongside the teams responsible for the environment.

Deliverable: A defensive coverage assessment, configuration and detection recommendations, and prioritized response procedures to address operational gaps identified in the organization's existing security practices.

Identity and access management

We map identities, roles and privileges, reviewing authentication and access provisioning and removal processes against responsibilities, segregation of duties and the criticality of assets.

Deliverable: An inventory of access risks and an improvement plan with priorities, suggested owners and review criteria to support consistent management of permissions across the organization.

Contact Baruch

Talk to our specialists.

Chat on WhatsApp or prepare your enquiry using the form below.

Talk to our specialists

Let's talk

Tell us what your company needs.

Add your details and a short description to prepare your enquiry by email or WhatsApp.

Business enquiries[email protected]+55 (11) 98961-1704

Name, email, company and message are required.

Contact details

Describe what you need in a few lines, without documents or sensitive information.

Opens a draft in your email app. You review it and send it.

Your details help the Baruch team assess your enquiry and contact you. You review and send the message through your chosen email app or WhatsApp.

Prefer WhatsApp?

Take this summary into the conversation. You review it before sending.

Open WhatsApp