We're researching how IT and security teams at mid-sized organisations handle security alerts and monitoring day to day — what tools generate them, who looks at them, what happens when something needs investigating, and how the work gets divided between an internal team and any outside provider.
We're particularly interested in:
- How alerts actually reach a person, and what that person does next
- Which systems someone has to open to work out whether an alert matters
- What takes the most time, and what gets left unreviewed
- How the work is split between internal staff and any external provider
- What would change if a tool could handle more of this work automatically
This is a 30-minute discovery conversation, not a sales call. We want to learn how your team operates today. The session is recorded for note-taking only.