SOT

SOT

SOAR
Security Orchestration, Automation and Response

Automation of response to information security incidents using dynamic playbooks and information security tools, building an attack chain and with an object-oriented approach

NG SOAR
Next Generation SOAR

Automation of response to information security incidents with built-in basic correlation (SIEM), vulnerability Scanner (VS), collection of raw events directly from information security tools, dynamic playbooks, building an attack chain and an object-oriented approach. AM and VM are included

AM
Asset Management

Description of the IT landscape, detection of new objects on the network, categorization of assets, inventory, life cycle management of equipment and software on automated workstations and servers of organizations

VS
Vulnerability Scanner

Scanning information assets with enrichment from any external services (additional scanners, The Data Security Threats Database and other analytical databases) to analyze the security of the infrastructure.

VM
Vulnerability Management

Building a process for detecting and eliminating technical vulnerabilities, collecting information from existing security scanners, update management platforms, expert external services and other solutions

FinCERT
Financial Computer Emergency Response Team

Bilateral interaction with the Central Bank, namely the transfer of information about incidents and receipt of prompt notifications/bulletins from the regulator

GovCERT
Government Computer Emergency Response Team

Bilateral interaction with the state coordination center for computer incidents, namely the transfer of information about incidents and receipt of prompt notifications/bulletins from the regulator

Mail us to sales@securityvision.ru or get demo presentation

Security Vision has created a product for monitoring and protecting personal data

Security Vision has created a product for monitoring and protecting personal data
14.05.2026

Security Vision has launched its Security Vision Personal Data Management product, which maintains a registry of information systems that process personal data, calculates security levels, models threats, and generates a comprehensive set of documents.


Security Vision Personal Data Management ensures compliance with three key regulatory and legal acts:

   -  Federal Law of July 27, 2006 No. 152-FZ "On Personal Data"

   -  Decree of the Government of the Russian Federation of November 1, 2012 No. 1119 "On approval of requirements for the protection of personal data when processing them in personal data information systems"

   -  Order of the Federal Service for Technical and Export Control of Russia dated February 18, 2013, No. 21 "On approval of the composition and content of organizational and technical measures to ensure the security of personal data when processing them in personal data information systems"


Personal Data Management meets the needs of all personal data operators — from small companies to large organizations with branch networks and subsidiaries — and can be integrated with various local systems without loss of functionality.


The product includes the following features:

   -  Formation of processes related to the processing of personal data (PD)

   -  Formation of personal data information systems (PDIS)

   -  Determining the level of security of personal data processed in the information system of personal data

   -  Accounting and monitoring of requests from personal data subjects

   -  Monitoring consents and revocations of consents of personal data subjects

   -  Accounting and control of machine-readable media with personal data

   -  Accounting for personal data protection measures

   -  Accounting and control of computer incidents related to personal data

   -  Modeling threats to personal data security

   -  Formation of basic measures for the protection of personal data with the possibility of adaptation, clarification and supplementation

   -  Conducting an assessment of compliance with personal data security (protection) requirements

   -  Planning measures to protect personal data

   -  Formation of a documentation package based on the requirements of regulatory legal acts


Process accounting and ISPDN


Lists of processes and information systems that process personal data are formed on the basis of questionnaires sent to responsible persons in the organization, or by entering existing data into the system.


When creating an ISPD, a full range of information on the processing and protection of personal data is entered, including:

   -  Purposes of processing

   -  Legal basis

   -  Categories, categories of subjects, list of personal data and actions on them


Data is collected and accumulated from all available information systems for personal data, with the ability to generate the necessary notifications to Roskomnadzor.


Determining the level of security and developing protective measures


The level of security for personal data processed in the personal data information system (ISPD) , which is necessary for building further protection, is automatically calculated for each ISPD. Based on the determined security level, a basic set of personal data protection measures is also automatically generated, with the ability to adapt, refine, and supplement them for a specific ISPD.


Threat modeling and compliance assessment


Modeling of threats to the security of personal data can be carried out in accordance with the methodological document of the Federal Service for Technical and Export Control of Russia “Methodology for Assessing Information Security Threats”.


Two modeling approaches have been implemented:

   -  a new section on threats, including threat groups, threats within groups, and the corresponding methods for implementing these threats

   -  a general list of threats, methods of their implementation and scenarios, based on the sequence of tactics and corresponding techniques, to determine the current methods of implementing information security threats


Compliance with personal data security requirements is assessed in accordance with the regulatory legal acts specified above. The assessment is conducted by completing information on the current status of personal data protection in the Personal Data Information System (PDIS), with the option to delegate (in whole or in part) the questionnaires to the appropriate specialists.


Based on the results of the compliance assessment, a list of unimplemented requirements is compiled, followed by the creation of an action plan and necessary tasks.


Monitoring consents, responses, and requests from personal data subjects


We've implemented the ability to store consents from personal data subjects for personal data processing and monitor their revocation after a request. All requests from personal data subjects are recorded in a log of requests and inquiries, with a record of the request completion deadline and the assignment of tasks to performers based on the specific request type. We also monitor the established deadlines for completing requests.


Documentation


Following the completion of the product's core processes, a complete documentation package is generated based on regulatory legal requirements and developed templates. If necessary, the documentation can be adapted to the organization's local requirements.


Key metrics and the current state of processes in the organization are monitored at any given time using a set of dashboards.

Recommended

Who and why attacks the public sector: comments by Maxim Repko in Cyber Media
Who and why attacks the public sector: comments by Maxim Repko in Cyber Media
Cybersecurity becomes a reality: Security Vision and KidZania train future specialists in the territory of the future
Cybersecurity becomes a reality: Security Vision and KidZania train future specialists in the territory of the future
Security Vision entered 15 categories of the Russian Information Security Market Map from TAdviser
Security Vision entered 15 categories of the Russian Information Security Market Map from TAdviser
New cybersecurity challenges: Nikolai Goncharov's comments for "PSB Dengi"
New cybersecurity challenges: Nikolai Goncharov's comments for "PSB Dengi"
Security Vision athletes go to the next level
Security Vision athletes go to the next level
Security Vision and Garda strengthen technological sovereignty
Security Vision and Garda strengthen technological sovereignty
Security Vision opens cybersecurity academy for young generation
Security Vision opens cybersecurity academy for young generation
Roman Dushkov presented Security Vision at the Russian-Serbian Business Mission in Belgrade
Roman Dushkov presented Security Vision at the Russian-Serbian Business Mission in Belgrade
Welcome to the Security Vision VS Basic SMB Vulnerability Management Solution Webinar
Welcome to the Security Vision VS Basic SMB Vulnerability Management Solution Webinar
Security Vision Expands the Boundaries of Automation: New Integration, Analytics, and Control Capabilities
Security Vision Expands the Boundaries of Automation: New Integration, Analytics, and Control Capabilities
Alexander Padurin will speak at the AM online conference Live "Cybersecurity for Small and Medium Businesses (SMB)"
Alexander Padurin will speak at the AM online conference Live "Cybersecurity for Small and Medium Businesses (SMB)"
Security Vision introduces ASOC, a unified secure Development management platform
Security Vision introduces ASOC, a unified secure Development management platform

Recommended

Who and why attacks the public sector: comments by Maxim Repko in Cyber Media
Who and why attacks the public sector: comments by Maxim Repko in Cyber Media
Cybersecurity becomes a reality: Security Vision and KidZania train future specialists in the territory of the future
Cybersecurity becomes a reality: Security Vision and KidZania train future specialists in the territory of the future
Security Vision entered 15 categories of the Russian Information Security Market Map from TAdviser
Security Vision entered 15 categories of the Russian Information Security Market Map from TAdviser
New cybersecurity challenges: Nikolai Goncharov's comments for "PSB Dengi"
New cybersecurity challenges: Nikolai Goncharov's comments for "PSB Dengi"
Security Vision athletes go to the next level
Security Vision athletes go to the next level
Security Vision and Garda strengthen technological sovereignty
Security Vision and Garda strengthen technological sovereignty
Security Vision opens cybersecurity academy for young generation
Security Vision opens cybersecurity academy for young generation
Roman Dushkov presented Security Vision at the Russian-Serbian Business Mission in Belgrade
Roman Dushkov presented Security Vision at the Russian-Serbian Business Mission in Belgrade
Welcome to the Security Vision VS Basic SMB Vulnerability Management Solution Webinar
Welcome to the Security Vision VS Basic SMB Vulnerability Management Solution Webinar
Security Vision Expands the Boundaries of Automation: New Integration, Analytics, and Control Capabilities
Security Vision Expands the Boundaries of Automation: New Integration, Analytics, and Control Capabilities
Alexander Padurin will speak at the AM online conference Live "Cybersecurity for Small and Medium Businesses (SMB)"
Alexander Padurin will speak at the AM online conference Live "Cybersecurity for Small and Medium Businesses (SMB)"
Security Vision introduces ASOC, a unified secure Development management platform
Security Vision introduces ASOC, a unified secure Development management platform

Other news

Dmitry Semidotsky told CISOCLUB about the development of services for running personal data
Dmitry Semidotsky told CISOCLUB about the development of services for running personal data
Security Vision announces the release of a new version of the cybersecurity Threat Analysis and Cyber Intelligence (TIP) product
Security Vision announces the release of a new version of the cybersecurity Threat Analysis and Cyber Intelligence (TIP) product
Security Vision will become a strategic partner of Kaspersky Industrial Cybersecurity  Conference 2025
Security Vision will become a strategic partner of Kaspersky Industrial Cybersecurity Conference 2025
Artem Gribkov, Angara Security: We chose the Security solution for ourselves back in 2021 Vision IRP/SOAR
Artem Gribkov, Angara Security: We chose the Security solution for ourselves back in 2021 Vision IRP/SOAR
Nikolai Goncharov in the podcast "Change Password!" spoke about the use of LLM in information security
Nikolai Goncharov in the podcast "Change Password!" spoke about the use of LLM in information security
Security Vision: A Course toward Technological Sovereignty and Sustainable Security. 2025 Results
Security Vision: A Course toward Technological Sovereignty and Sustainable Security. 2025 Results
We invite you to the webinar "New features of the Incident Management Module (SOAR) from Security Vision"
We invite you to the webinar "New features of the Incident Management Module (SOAR) from Security Vision"
Sergey Zelenin will speak at the AM Live online conference "Career in information security: how to grow and earn more"
Sergey Zelenin will speak at the AM Live online conference "Career in information security: how to grow and earn more"
Cybersecurity 2025: Security Vision experts reveals secrets of protection at "Moscow digital technologies"
Cybersecurity 2025: Security Vision experts reveals secrets of protection at "Moscow digital technologies"

Other news

Dmitry Semidotsky told CISOCLUB about the development of services for running personal data
Dmitry Semidotsky told CISOCLUB about the development of services for running personal data
Security Vision announces the release of a new version of the cybersecurity Threat Analysis and Cyber Intelligence (TIP) product
Security Vision announces the release of a new version of the cybersecurity Threat Analysis and Cyber Intelligence (TIP) product
Security Vision will become a strategic partner of Kaspersky Industrial Cybersecurity Conference 2025
Security Vision will become a strategic partner of Kaspersky Industrial Cybersecurity  Conference 2025
Artem Gribkov, Angara Security: We chose the Security solution for ourselves back in 2021 Vision IRP/SOAR
Artem Gribkov, Angara Security: We chose the Security solution for ourselves back in 2021 Vision IRP/SOAR
Nikolai Goncharov in the podcast "Change Password!" spoke about the use of LLM in information security
Nikolai Goncharov in the podcast "Change Password!" spoke about the use of LLM in information security
Security Vision: A Course toward Technological Sovereignty and Sustainable Security. 2025 Results
Security Vision: A Course toward Technological Sovereignty and Sustainable Security. 2025 Results
We invite you to the webinar "New features of the Incident Management Module (SOAR) from Security Vision"
We invite you to the webinar "New features of the Incident Management Module (SOAR) from Security Vision"
Sergey Zelenin will speak at the AM Live online conference "Career in information security: how to grow and earn more"
Sergey Zelenin will speak at the AM Live online conference "Career in information security: how to grow and earn more"
Cybersecurity 2025: Security Vision experts reveals secrets of protection at "Moscow digital technologies"
Cybersecurity 2025: Security Vision experts reveals secrets of protection at "Moscow digital technologies"