Managed Cyber Protection is the service where Charter Technology Solutions owns the day to day security work: watching for threats, responding when one appears, training your staff, protecting your email, backing up your cloud, and finding the weak spots before someone else does.
Most organizations already own some security tools. What they usually do not have is someone whose job it is to watch those tools at two in the morning, decide whether an alert is real, and act on it before it spreads.
That is what Managed Cyber Protection provides. CTS deploys the stack, monitors it continuously, investigates what it sees, and takes action on your behalf. You get a security operation without having to hire, staff, or run one.
It layers onto whatever IT arrangement is already in place. Where CTS already manages your IT, this adds the security operation on top of what is running today, using the inventory and the access that already exist. Where someone else manages it, in house or another provider, Managed Cyber Protection sits alongside them without taking over the help desk.
Security work fails quietly. An alert fires into an inbox nobody owns, a backup runs for months without a restore test, a policy is written once and never opened again.
The value of a managed program is not the tooling. It is that someone is accountable for the watching, every day, and reports on it.
Five components, delivered as one program and priced per user and per site. There are separate education and business tiers.
Continuous monitoring of endpoints, cloud and identity, watched 24/7 by a security operations team. When something real is found, it is investigated and contained rather than forwarded to you as an alert.
Ninety days of security log history is standard, which is what makes it possible to answer how far an incident reached and when it started.
Ongoing training for staff, with simulated phishing so the training is measured against real behavior rather than completion rates. Results are reported back to leadership.
A protection layer above what your mail platform does on its own, aimed at the attacks that get through: credential harvesting, impersonation of leadership, and invoice and payment fraud.
Independent backup of the data living in your cloud tenant, including mail, files and shared drives, so a deletion, a ransomware event or a departed account is recoverable.
Regular internal scanning for missing patches, weak configuration and exposed services, with a review that turns the findings into a short list of what to fix next.
A written plan naming who decides, who is called, in what order and on what clock, so the first hour of a real incident is not spent deciding who is in charge.
The program starts with a scoped implementation, then settles into a recurring service.
Managed Cyber Protection is the operational half. Managed Cyber Advisory is the governance half. They are sold separately and many organizations take one before the other.
Managed Cyber Protection
Managed Cyber Advisory
The two are complementary rather than sequential. Advisory produces the written record that boards, auditors and cyber insurers ask for. Protection produces the monitoring and the response that closes what the record finds.
Every component can be bought on its own. The bundle exists because the pieces reinforce each other, not because they are locked together.
| Component | How it is counted |
|---|---|
| Managed Detection and Response | Per user |
| Managed Detection and Response, Core tier | Per user |
| Managed security awareness training | Per user |
| Managed advanced email protection | Per user |
| Outbound email protection and data loss prevention | Per user |
| Managed cloud backup | Per user, plus storage |
| SaaS management | Per user |
| Internal vulnerability management | Per asset |
| Internal vulnerability management, quarterly review | Per quarter |
| Extended security log retention beyond ninety days | Per month |
| Incident response plan development | One time |
Components carry their own one time implementation where one applies. Current pricing for any line above is available from your CTS team.
Worth knowing before a first conversation, because two of these decide what is deliverable.
What can be protected is decided by what can be reached: the devices under management, the cloud tenant your organization administers, and the network the two run across.
Where CTS already manages the estate, that inventory exists and scoping is quick. Where it does not, establishing it is the first piece of work.
Detection and response on a laptop or desktop requires an agent on that machine. Where staff work entirely on personal devices, the endpoint components cannot be delivered there, and we will say so rather than quote around it. The cloud and identity components still apply.
Email protection, cloud backup and log retention attach to a tenant your organization administers. Where accounts sit outside one, that has to be settled first.
Many organizations are already paying for a capability they have not turned on. Where that is the case, the right answer is configuration, not a second license, and we would rather find that in scoping than after a signature.
For an organization CTS already supports, much of this is on record and the conversation starts from what is actually deployed.
Sachin Gujral, Chief Executive Officer, Charter Technology Solutions
Choosing between managed and professional services is really an ownership question: who owns IT after go live. A service owner closes the ticket when the user can work again, not when a response is sent.
Most security problems are ownership gaps rather than tooling gaps. An alert fired and nobody was assigned to read it. A backup existed and nobody verified it. A policy was written once and never reviewed.
Managed Cyber Protection is CTS taking ownership of that recurring work, with a named team and a reporting cadence, so the answer to who is watching is a person and not a product.