Skip to content

Business · Partners

Defend your organization

We run the security your team cannot cover: detection, compliance and vulnerability remediation, with a report a board can understand.

TuthorIA runs your organization's cybersecurity: a managed SOC and SIEM on Wazuh, an ISO 27001 ISMS in a compliance portal, support for Law 21,663 and Law 21,719, and vulnerability tracking. We also offer ethical hacking and backup, and deliver it under your brand if you are a partner.

Managed SOC and SIEM

We deploy and run Wazuh on your infrastructure or ours, with rules tuned to your reality and not to a generic catalog.

  • Continuous monitoring of endpoints, servers and network devices
  • Our own use cases: brute force, exfiltration, privilege changes
  • A weekly report on what happened, what we did and what is still open

ISO 27001 ISMS and compliance portal

We build the full management system and keep it alive in a portal where every control has an owner, evidence and a date.

  • Gap analysis against Annex A
  • Policies, procedures and records written for your operation
  • Evidence traceability for external audit day

Law 21,663 on cybersecurity

We tell you whether you are an essential service or an operator of vital importance, and get you ready to report within the deadlines set by Chile's National Cybersecurity Agency (ANCI).

  • Scope and obligations assessment
  • Incident reporting procedure, with a rehearsal
  • Continuity and response plan agreed with your people

Law 21,719 on personal data

Record of processing activities, impact assessments and privacy notices ready before the agency starts enforcing.

  • Data inventory and legal bases
  • Breach and data subject rights procedure
  • Contracts with processors and international transfers

Vulnerability management and attack surface

We discover what you expose to the internet, prioritize by real risk and follow each finding until it is closed.

  • Recurring external scans of domains, subdomains and services
  • Prioritization by exploitability, not just by CVSS score
  • Monitoring of leaked credentials from your domain

Ethical hacking, backup and continuity

Penetration testing with a scope agreed in writing, and backup and recovery schemes that are actually tested.

  • External and internal penetration tests with an executive and a technical report
  • Verified backups with a test restore
  • Recovery plan with recovery time objectives (RTO) agreed with you

White label

We deliver it under your brand

If you are an integrator or a consultancy, we operate behind you: the report goes out with your logo, the portal with your colors and the contact with your people. We provide the operation and the technical expertise; you keep the client relationship.

Let's talk about white label

Frequently asked questions

What is a managed SOC and what does TuthorIA do in it?
It is a security operations center that monitors your infrastructure for you. TuthorIA deploys and runs Wazuh on your infrastructure or ours, watches endpoints, servers and network devices, and sends you a weekly report on what happened and what is still open.
What is Wazuh and why do we use it?
Wazuh is the SIEM platform we run monitoring on. We use it because we can tune its rules to your reality and not to a generic catalog, with our own use cases such as brute force, exfiltration and privilege changes.
What does the ISO 27001 ISMS and compliance portal include?
It includes a gap analysis against Annex A and the policies, procedures and records written for your operation. Everything lives in a portal where every control has an owner, evidence and a date, with traceability for external audit day.
What is Law 21,663 and what do we offer to comply with it?
It is the cybersecurity law that sets obligations for essential services and operators of vital importance. We tell you whether it applies to you, define your obligations and prepare an incident reporting procedure, with a rehearsal, plus a continuity and response plan.
What is Law 21,719 and what do we offer to comply with it?
It is the personal data law, which will be enforced by a dedicated agency. We prepare the record of processing activities, impact assessments and privacy notices, plus the data inventory, the breach and rights procedure, and the contracts with processors.
What does white label mean for a partner?
It means we operate behind you if you are an integrator or a consultancy. The report goes out with your logo, the portal with your colors and the contact with your people: we provide the operation and the technical expertise, and you keep the client relationship.