UnderDefense

MDR, managed SOC and compliance services delivered from the US, Poland and Ukraine

CompanyManaged Security Service ProvidersCloud

Pricing: MDR published from $11 per device per month; Standard, Enhanced and Professional tiers are custom quoted and all MDR plans are sold as annual contracts. A free tier gives 14 days of platform access. Penetration testing engagements are stated at $5,000 to $30,000 depending on scope.

Reviewed by the CyberSecTool editorial team against the public sources cited below · Last reviewed August 2026 · How we review listings

What is UnderDefense?

UnderDefense is a managed security services firm offering 24/7 managed detection and response, managed SOC and SIEM, incident response, penetration testing and compliance services. Delivery is vendor-agnostic: the firm's MAXI platform layers alert triage, automation and reporting on top of a client's existing EDR and SIEM tools, and it operates co-managed SIEM on Elastic, Splunk, QRadar, LogRhythm and Sumo Logic. Founded in 2017, it is headquartered in New York and runs delivery teams from Jacksonville in the US, Krakow in Poland and Lviv in Ukraine. Its own site states 120 certified security engineers across three continents.

Best for: Mid-market organisations that want a 24/7 outsourced SOC layered onto security tools they already own, often alongside SOC 2 or ISO 27001 readiness work.
Pros
  • Clutch lists UnderDefense at 4.9 out of 5 across 66 verified reviews, with a stated minimum project size of $5,000 and an hourly range of $50 to $99 (source: Clutch profile)
  • The firm publishes an entry MDR rate of $11 per device per month on its own pricing page, which is more than most MSSPs disclose publicly
  • MDR is designed to run on tools the client already owns rather than requiring replacement, with co-managed SIEM support named for five SIEM products (source: UnderDefense MDR services page)
  • UnderDefense states it achieved SOC 2 Type I attestation on 25 November 2024, audited by Prescient Assurance (source: UnderDefense company news)

Key Features

Managed detection and response with 24/7 monitoring across endpoint, cloud, identity, SaaS and network
Managed SOC (SOC as a service) and co-managed SIEM on Elastic, Splunk, QRadar, LogRhythm and Sumo Logic
MAXI platform providing AI-assisted alert triage, SOAR automation, dark web monitoring and reporting
Managed EDR and managed cloud security covering AWS, Azure, GCP, Kubernetes and containers
Incident response, including retainer hours bundled into MDR plans (40 hours at the Standard tier)
Penetration testing across web, mobile, network, cloud, IoT and wireless, plus social engineering and red teaming
Compliance readiness and automation for SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR and NIST CSF
Virtual CISO advisory services

Are you UnderDefense? Improve this listing with screenshots, case studies and more.

Quick Info
PricingMDR published from $11 per device per month; Standard, Enhanced and Professional tiers are custom quoted and all MDR plans are sold as annual contracts. A free tier gives 14 days of platform access. Penetration testing engagements are stated at $5,000 to $30,000 depending on scope.
ModelPer device or asset per month on an annual contract, plus project fees for penetration testing and compliance work
Founded2017
CloudYes
Self-HostedNo

Last updated: Aug 3, 2026

Certifications
SOC 2 Type I (attested by Prescient Assurance, November 2024)