A product of SOFTNET Technologies

One platform for
detection, response & device control.

SOFTNET USP unifies SIEM, XDR, endpoint and network detection, unified device management and a licensed 24×7 managed SOC — with strict tenant isolation and Malaysia data residency built in from the first event.

25k+ EPSSustained per pilot cell
<60sStreaming detection latency
90 daysHot search, 7-year archive
99.95%Ingestion availability target
Capabilities

Six security services, one system of record

Every layer shares the same raw-first evidence store, entity model and audit trail — so an alert on an endpoint, an identity and the network resolve into a single case.

🛡️

SIEMSecurity data platform

Ingest logs over Syslog/TLS, OTLP, webhooks and cloud APIs. Raw evidence is committed with a content hash before any transform, normalized to OCSF, and searchable with our own query language.

Ingestion · evidence integrity · SNQL search
🎯

XDRDetection & correlation

Streaming, threshold and sequence rules mapped to MITRE ATT&CK, versioned and ring-deployed. Related signals correlate into prioritized cases with an evidence timeline.

MITRE coverage · risk scoring · hunting
💻

EDREndpoint agent

Memory-safe agent for Windows and Linux with typed, signed response actions — isolate, quarantine, terminate — always reversible and preserving the management channel.

Signed commands · reversible isolation
📱

UEMEndpoint & mobile mgmt

Federated management through Intune, Apple MDM and the Android Management API. One management authority per device — always — with ownership-gated wipe.

Federated first · ownership aware
🌐

NDRNetwork detection

Passive sensors and flow logs resolved to entities and correlated with endpoint and identity evidence. Metadata-first, with tightly governed packet retention.

Passive sensors · unified timelines
🧠

MDRManaged SOC

Optional 24×7 monitoring, threat hunting and DFIR, staffed separately and licensed under Malaysia's Cyber Security Act 2024. Sold on measurable MTTA/MTTR outcomes.

Act 854 licensed · SLA-backed
Why SOFTNET

Engineered for trust, not just telemetry

🔒 Tenant isolation, tested every release

Server-side tenant filters injected on every query path. Cross-tenant reads return zero rows — verified in CI and by independent testing.

🧾 Defensible evidence

Raw events committed immutably with hashes and full lineage; an append-only, hash-chained audit trail proves the platform's own integrity.

✋ Safe response by design

Destructive actions need two-person approval, blast-radius limits and a per-tenant kill switch. Nothing touches a device without a signed, expiring command.

🇲🇾 Residency & compliance

Tenant data never silently leaves its region. Built to PDPA 2010 (2024 amendments), with RMiT support packs and dedicated Malaysia cells.

Subscription model

Pricing that follows the cost drivers

Subscriptions meter what actually drives cost — sustained event rate, retained volume, managed endpoints and analyst seats. Move up a tier or add the managed SOC at any time.

Essentials
Core / pooled cell
SIEM + XDR for teams standardizing detection and compliance.
  • Up to 2,500 sustained EPS
  • 90-day hot search · 13-month archive
  • Cloud & identity connectors
  • Shipped detection content, MITRE coverage
  • Cases, dashboards & reporting
  • Endpoint & device management
  • Managed SOC
Request a quote
Most popular
Professional
Full XDR / pooled cell
Detection, endpoint response and device control in one operation.
  • Up to 10,000 sustained EPS
  • Everything in Essentials, plus:
  • EDR agent — isolate, quarantine, respond
  • Unified endpoint & mobile management
  • SOAR playbooks & response connectors
  • Threat intelligence (STIX/TAXII)
  • API access & webhooks
Start a pilot
Enterprise
Dedicated / single-tenant cell
Regulated and high-volume environments needing isolation and scale.
  • 25,000+ sustained EPS, burst headroom
  • Everything in Professional, plus:
  • Dedicated or Malaysia-resident cell
  • Customer-managed encryption keys
  • NDR sensors & deception
  • RMiT support pack & audit rights
  • Custom retention up to 7 years
Talk to sales

🧠 Managed Detection & Response — add-on

Add a licensed 24×7 SOC to any tier: monitoring, triage, proactive hunting and DFIR retainer, with MTTA of 15 minutes for priority-1 alerts and monthly service reviews. Delivered under a CSSP licence (Act 854).

Add managed SOC

Indicative packaging. Final pricing is set per workload against measured event volume, retention and endpoint count. All tiers include tenant isolation, evidence integrity and the full audit trail.

Compliance & assurance

Procurement-ready from day one

Certifications and control mappings maintained under DPO oversight, available to customers under NDA through the trust portal.

Malaysia Cyber Security Act 2024 (Act 854)
PDPA 2010 + 2024 amendments
ISO/IEC 27001 (targeted)
SOC 2 Type II (roadmap)
BNM RMiT support pack
ISO 27017 / 27018 mapping
Data residency — Malaysia
Get started

See it on your own data

Pilot programmes run on a dedicated evaluation tenant with your sources, shipped detection content and a full case workflow. Talk to us about scope and timelines.