Skip to content
TecLeads
RetailEMEACybersecurity

Standing up a 24×7 managed SOC for a fast-growing e-commerce group

Built a Sentinel-based SOC, rolled out passkeys for the workforce, and ran two tabletop exercises before peak season.

Client: A multi-brand e-commerce holding

Challenge

What we walked into

After a credential-stuffing incident during a sale event, the group needed real detection, real response, and real evidence — fast.

Approach

How we engaged

  • Deployed Microsoft Sentinel with custom analytic rules tuned to retail attack patterns
  • Migrated workforce identity to Entra ID with FIDO2 passkeys and Conditional Access
  • Hardened the storefront edge with WAF rules, bot management, and rate-limiting
  • Ran red-team exercises and quarterly tabletop incident drills
  • Stood up a follow-the-sun SOC with documented escalation into the client's IT leadership
Results

What changed

Mean-time-to-detect
from hours to under 8 minutes
Account-takeover incidents
−96% YoY
Phishing susceptibility
from 22% to 1.3%

Looking for similar outcomes?

Tell us about your situation. We respond within one business day.

This case study is an illustrative, anonymized representation of recent client work.