Strengthen your security posture

Cyber Threat Intelligence helps anticipate attacks and fortify your defenses. Our Cassini CTI Services will provide proactive protection.
Talk to an expert
Uncover security risks

Get proactive protection from our market leading Cassini CTI service

The Cassini CTI service was designed from the ground up to be a disruption capability first and foremost.
No items found.
No items found.
Discover our services

A cohesive and integrated security offering

Our Cassini CTI service is designed to work seemlessly with our Managed Detection and Response and DFIR capabilities to provide a cohesive, fully integrated service
No items found.
Security Operations
Energy Sector
"Excellent customer engagement and a thorough understanding of our diverse requirements. Outstanding testing and communication throughout the testing phase."
Service detail

Protect your organisation

Our Cassini CTI service aggregates high trust, high confidence threat intelligence from CERT NZ and the NCSC to detect and disrupt malicious activity occurring on our network, devices or within the services you use.

Rapid EDR protection in no time at all

Zero to protected in as little as 10 minutes

Our EDR integrations with Microsoft Defender for Endpoint and CrowdStrike Falcon are super simple to deploy and will have your organisation protected in only a few minutes.

  • Inserts the IoCs directly into your EDR tenancy
  • Works with Defender for Endpoint and CrowdStrike Falcon
  • Supports all indicator types
Our delivery process

Benefits

Why work with us

We've the trusted experts and have been doing this a while now. The Cassini CTI service was the first integration with CERTNZ's PDS and the first with NCSC's MFN. We have kept pace with each change.
Independent standalone service
The Cassini CTI plaform will work with multiple different vendor technologies in complex multivendor environments.
Broad spectrum capability
With our range of integrations, we can provide broad coverage and defence in depth for most environments.
Trusted capability
We protect a large number of public and private sector organisations across a range of industries including local and central government, finance.
What comes next

Expand your security coverage

The Cassini CTI service is fantastic as a standalone capability, but provides even more value when integrated with one of our Managed Services or DFIR retainers.

  • Couple Cassini CTI with MDR to get improved protection and detection
  • Combine a DFIR retainer with Cassini CTI for early warning that a security incident may be imminent
Red Teaming
Red teaming simulates real attacks to test your systems, people, and physical security. Our red team penetration testing reveals how well your defences hold up.
Secure Development Training
We train developers and engineers to identify, avoid, and mitigate common security issues — making secure coding part of everyday practice.
Testimonials

Our customers

Look what our customers have to say
Security Operations
Energy Sector
"Excellent customer engagement and a thorough understanding of our diverse requirements. Outstanding testing and communication throughout the testing phase."
Cyber security news

Latest advisories

Stay ahead of emerging threats with our expert blog posts, research, and industry updates.
Silverstripe - Cross-Site Scripting (XSS) Vulnerability
A Cross-Site Scripting (XSS) vulnerability has been identified in the administrator panel of Silverstripe CMS, specifically in the handling of the user input within the form messages module.
Silverstripe - Host Header Injection
A Host header injection vulnerability in Silverstripe has been identified that allows an attacker to poison the password rese
Statamic CMS
Sam Schroder found a local file inclusion (write only) vulnerability inside of the upload functionality of Statamic CMS. This affects front end components like forms with `assets` fields.
Frequently asked questions

Frequently asked questions

From risk assessment to rapid response - we’re with you every step of the way.

Where does Cassini get its threat intelligence from?

We partner with both the GCSB's National Cyber Security Centre for access to its Malware Free Networks feed (MFN), and CERT NZ for access to its phishing feed. We can also integrate other third party feeds if you have a commercial feed you want included.

What sorts of Cassini CTI Integrations are available?

We have a range of out of the box integrations that support common Firewalls, DNS servers, Proxy Servers, SIEMs and EDR products (such as Microsoft Defender for Endpoint, CrowdStrike and Zscaler). However, if we don't already have something that meets your needs, or if you have special requirements we can build an integration to meet your specific needs.

What Endpoint Detection and Response (EDR) products do you support?

We support Microsoft Defender for Endpoint, CrowdStrike Falcon. EDR integrations are extremely quick to deploy taking as little as 10 minutes of configuration time. If you have another EDR solution you would like us to support get in touch.

What firewalls do you support?

We support Fortigate, Palo Alto, Cisco FMC and Checkpoint firewalls via simple configuration. Get in contact with us to discuss what your other firewall requirements are, there's a good chance that we already support the threat intelligence feed format your firewall requires. If not our product is designed so that we can very quickly add new formats as required.

What SIEMs do you support?

Our proven integration with Microsoft Sentinel allows organisations to ingest indicators directly into their Microsoft SIEM. We are actively adding other SIEM platform support so if you use something else get in touch to discuss your needs.

Contact us

Talk to an expert

Please call our office number during normal business hours or submit a form below
Where to find us
If you experience a security breach outside normal working hours, please complete the form and we will respond as soon as possible.