
Unified Security Operations and Managed Detection Built on a Cyber-Antifragility Model
A3Sec Grupo is a managed security operations provider serving large enterprises across banking and insurance, telecommunications, and energy and industrial (OT) in Spain and Latin America. The company was established in 2012 and forms part of the Teldat Group; its founding team was part of the team that developed the OSSIM open-source SIEM and was involved in the creation of AlienVault. It maintains offices in Madrid, Mexico City, Bogota and Quito, running around-the-clock security operations centers for more than 360 clients across more than forty countries.
Delivery is organized around five service lines: continuous exposure and attack surface management, detection and response architecture management, incident detection and containment, threat intelligence, and crisis management and incident response. Telemetry from host, identity, cloud, IT/OT and network sources is collected in real time and correlated to filter noise and rank alerts, with behavioral analysis mapped to MITRE ATT&CK driving investigation. Those services run on CyberRisk OS, A3Sec's own platform, which operates agentically in production — making decisions and taking containment actions such as revoking access or isolating affected systems on client infrastructure, with a verification window held on every containment before it is counted as complete. A3Sec operates the platform rather than selling it to other SOC teams.
Rather than deploying only vendor-supplied rules, A3Sec authors its own detection content: an in-house engineering team maintains 297 detection rules under version control, each attributable by author and date, layered on a curated open Sigma pack. The company publishes a public advisory feed, 801 advisories to date, 21 of which cover attacks against AI systems, and a free CVE prioritizer. The operating philosophy is described as cyber antifragility, treating each incident as an input that strengthens defenses rather than simply restoring the prior state, and rests on data-driven operations, intelligence generation, hyperautomation, business alignment and continuous improvement. Published service targets cite 30-minute detection and 60-minute response. Credentials include ISO 9001, ISO 27001, ISO 22301, ISO 27017, ISO 20000-1, ISO 27018, ISO 27701, ISO 27032, NIST CSF 2.0, Spain's ENS and ENS High schemes and FIRST membership, with partner relationships spanning Splunk, CrowdStrike, Wazuh, Rapid7 and Checkmarx.



