A Fortify 24x7 brand. Records room habits, applied to clinical systems.Your shelfRecords desk
MediTrust Cyber
Jacket 416SentinelOne with Fluency

Somebody has to be reading it while the building is dark.

Six lines turning on two questions. Is a piece of software on this machine behaving like a problem, and who acts on the answer at three on a Sunday morning? An agent settles the first. The second is a rota question, and most detection products hand that one quietly back to whoever bought them.

In this jacket

Prices arrive live from billing. Whatever goes into the file waits for you, however long the reading takes.

What an agent on the hardware actually buys

A behavioral agent watches how software conducts itself instead of checking each file against a catalogue of items somebody already flagged as trouble. The difference tells hardest on the encryption morning, since the opening minutes of a ransomware run resemble ordinary file activity performed extremely fast, and a catalogue has nothing useful to contribute.

It tells again on hardware that travels. A laptop opened at somebody's kitchen table has no route home to anything. SentinelOne settles the question on the machine, so the decision never waits on a connection that is not present.

Where the response tier belongs first

Not every desk needs an engineer permitted to isolate it without asking. Begin where waiting costs the most: the box carrying practice management, the workstation in the billing room, the laptop the office manager takes home on a Friday. Reception hardware often sits perfectly well one tier below that.

Whichever way you split it, the authority gets written into your scope before anything is switched on. Nobody at your office should encounter that phrase for the very first time while an incident is running.

Lines filed here

What each line is, and what it costs.

Prices land on this page straight from billing the moment it opens. Shelve what you like while you read. None of it leaves your hands before the card is signed.

Fortify-MDRFiled spec

Managed Detection and Response

SentinelOne on the machine, with our desk reading it

A behavioral agent rides on each covered workstation or server, and our desk reads what it says at every hour there is. Judgment forms locally on the hardware, which is why a laptop opened at a kitchen table on a home visit still holds a defense.

  • Windows, macOS and Linux alike, weighed by conduct instead of against a catalogue of known files.
  • What surfaces reaches people already on shift. It does not queue in a console somebody was told to check.
  • Malicious change rolled back where the platform allows, so a desk returns instead of being rebuilt.
  • Verdicts keep forming with the network down, which is exactly the case that matters on travelling hardware.
Filed underSentinelOne, jacket 41
CoversOne workstation, laptop or server for each unit, on Windows, macOS or Linux
RetainedDetection history and agent telemetry, kept in the platform through the term
Released byOur desk, staffed by Fortify 24x7 around the clock
Checked againstNamed detections carrying timestamps, beside the action taken on each
Reading the rateper protected endpoint
one month at a time, paid ahead
QTY
Fortify-XDRFiled spec

Extended Detection Across Layers

SentinelOne, with Fluency pulling the rest in

The identical agent, now with Fluency laying sign-ins, mailbox movement and network records alongside whatever the endpoint witnessed. A single stream under a single clock, so a strange sign-in and a strange process on one desk stop looking like two separate accidents.

  • Endpoint findings sit next to identity and mail evidence in the same place, not in a second console.
  • A faint signal showing up in three records gets read as the one solid signal it really is.
  • Worth the step up wherever trouble announces itself through an account rather than through a file.
Filed underSentinelOne with Fluency, jacket 41
CoversOne protected endpoint for each unit, plus the log sources wired in on its behalf
RetainedCorrelated events kept inside the Fluency grid for the window recorded in your scope
Released byOur desk, reading the correlated stream
Checked againstA written case carrying every source that fed the finding
Reading the rateper protected endpoint
one month at a time, paid ahead
QTY
Fortify-XDR+Filed spec

Extended Detection with Response

SentinelOne Complete with Fluency, plus authority in writing

All of the line above, and on top of it a standing authority for our engineers to step in without first reaching somebody at your office by telephone. Isolation, killing a process and rolling change back turn into decisions rather than into recommendations.

  • Containment lands at the hour it is wanted, not at the opening of the next working day.
  • Each isolation is recorded, carrying the name of whoever ordered it and the minute it happened.
  • The authority is set out in your scope, so nobody first encounters the idea during an incident.
Filed underSentinelOne Complete with Fluency, jacket 41
CoversOne protected endpoint for each unit, with response authority granted in the written scope
RetainedEach containment logged against its operator and its minute
Released byOur engineers, moving unprompted wherever the scope permits it
Checked againstAn action record fit to put before an underwriter or an investigator
Reading the rateper protected endpoint
one month at a time, paid ahead
QTY
Fortify-MDR-K8Filed spec

Managed Detection, Kubernetes Node

SentinelOne over cluster nodes

The same watching, applied to Kubernetes nodes. It matters to organizations carrying an analytics or interoperability workload of their own, and to billing houses whose software was written rather than purchased.

  • Tallied by node, so the charge tracks the cluster and not the container count riding on it.
  • Container runtime conduct read by the same people reading your desktops.
  • Sensible wherever a workload handles claims or clinical detail outside the practice management system.
Filed underSentinelOne, jacket 41
CoversOne Kubernetes node for each unit
RetainedNode detection history, kept through the term
Released byOur desk, staffed by Fortify 24x7 around the clock
Checked againstNamed detections against that node, beside the action taken on each
Reading the rateper Kubernetes node
one month at a time, paid ahead
QTY
Fortify-XDR-K8Filed spec

Extended Detection, Kubernetes Node

SentinelOne Complete over cluster nodes, correlated

Watching at node level, with the cluster evidence drawn into the same correlated stream as everything else you run. A hijacked workload and an odd administrative sign-in then get read together, rather than a fortnight apart by two different people.

  • Cluster activity joins endpoint and identity records instead of keeping its own separate console.
  • Tallied by node, which is how a cluster gets sized and how it gets budgeted.
  • For teams whose own software reaches clinical or claims detail directly.
Filed underSentinelOne Complete with Fluency, jacket 41
CoversOne Kubernetes node for each unit, plus the cluster log sources wired in for it
RetainedCorrelated cluster events kept for the window recorded in your scope
Released byOur desk, reading the correlated stream
Checked againstA case showing cluster evidence beside everything else that fed it
Reading the rateper Kubernetes node
one month at a time, paid ahead
QTY
Fortify-XDR+K8Filed spec

Response Tier, Kubernetes Node

SentinelOne Complete over cluster nodes, with authority in writing

The tier that acts, for cluster nodes. Our engineers carry the same standing authority to contain a node without pausing that they carry over your desktops, written on the same terms and recorded the same way.

  • A node contained without a telephone call first, wherever your scope has granted it.
  • The same people, the same stream, and the same trail of recorded action underneath.
  • Chosen where a cluster sits close enough to patient or claims detail that waiting is the larger risk.
Filed underSentinelOne Complete with Fluency, jacket 41
CoversOne Kubernetes node for each unit, with response authority granted in the written scope
RetainedContainment against the node logged with operator and minute
Released byOur engineers, moving unprompted wherever the scope permits it
Checked againstAn action record covering each intervention taken over the cluster
Reading the rateper Kubernetes node
one month at a time, paid ahead
QTY
Honest scope

Detection shortens a distance. It does not prevent an event.

These lines close the gap between something happening and somebody competent knowing about it. Closing that gap is worth a great deal, and it is emphatically not the same as nothing having happened.

  • An agent cannot go where a manufacturer has forbidden it. Imaging units, analysers and dental sensors frequently arrive under a written ban on third party software. Those machines want separation on the network and a decision somebody recorded, and no line filed here stands in for that work.
  • It watches machines. It does not watch people. A colleague entitled to open a chart, opening that chart, and photographing the screen is not a detection event. That is an access review, and an access review sits on your desk rather than on ours.
  • Correlation reads only what has been wired into it. Fluency works with the sources it was given. Sign-in and mailbox evidence has to be connected during scoping, and a source nobody connected contributes precisely nothing however capable the platform is.
  • An outcome cannot be promised to you. The written part is who is watching, what they may do unasked, and what reaches your desk afterwards. A vendor offering more than that is describing a hope with a price on it.
Filed note

Heads up: card statements show FORTIFY 24X7 - MediTrust Cyber is a Fortify 24x7 brand, and your subscription is billed by Fortify 24x7.

Elsewhere on the rack