

Abnormal Security
By Abnormal Security Corp.
The implementation process for Abnormal Security software is designed to be quick and straightforward, leveraging its cloud-native API-based approach. Here's a detailed overview of the typical implementation steps and timeline:
Pre-Implementation Planning:
Internal Kick-Off Meeting: An initial meeting is held to allocate roles, agree on responsibilities, set a target implementation date, and identify stakeholders.
Pre-Service Workshop: Before going live, a workshop is conducted to ensure a full understanding of the solution and confirm necessary implementation measures, such as SEG migration.
API Integration:
Abnormal Security integrates with cloud email platforms like Microsoft 365 and Google Workspace via APIs. This integration is seamless and does not require complex setup or MX record changes, which can take days with traditional solutions.
The API-based approach ensures real-time threat detection without disrupting email delivery, eliminating the need for planned outages or email delays during migration.
Implementation Timeline:
The entire setup process typically takes less than a minute to initiate, thanks to the cloud-native API integration. However, full deployment and configuration might require a few days to ensure all features are properly set up and tested.
Users have reported that within a short period, such as four days, Abnormal Security can identify and block sophisticated threats like business email compromise (BEC) emails that might have bypassed other security measures.
Post-Implementation Support:
Abnormal Security's platform is designed to be highly effective out-of-the-box, with minimal need for customization. However, it does offer some flexibility to fit specific business needs:
API Integration Flexibility:
The platform integrates with various cloud services, allowing businesses to leverage existing infrastructure without significant customization.
This integration provides access to thousands of signals that are invisible to other solutions, enabling comprehensive threat detection.
Behavioral Analysis Customization:
While not explicitly customizable, the platform uses machine learning to adapt to each organization's unique behavior patterns. This means it learns and improves over time based on the specific context of the business.
It analyzes over 40,000 signals to understand what is normal for each customer, including employees, tenants, applications, and vendors.
Automation and Workflow Customization:
Abnormal Security automates user-reported phishing processes and correlates malicious reports using AI. This automation can be tailored to fit specific workflows by integrating with existing security operations tools.
The platform automates more email security processes than traditional solutions, reducing manual intervention.
Reporting and Feedback:
While there is limited customization in reporting, the platform provides detailed insights into detected threats and blocked emails. This helps businesses understand their security posture and make informed decisions.
Integration with Other Tools:
Abnormal Security does not charge a setup fee for its email security platform. The pricing is primarily based on a subscription model, with costs depending on the number of users. Additional costs may include charges for premium support services or technical account management, but these are not explicitly detailed in the available information.
Pricing Model: Subscription-based, with prices starting at around $3 per user per month, though exact costs can vary based on specific needs and discounts for larger organizations.
Setup Fee: No setup fee is required, making it easy for businesses to onboard without initial capital outlay.
Maintenance Costs: There are no specific maintenance costs mentioned, as the platform is cloud-native and managed by Abnormal Security.
Abnormal Security offers comprehensive support to new users, ensuring they can effectively utilize the platform. Here are the details:
Training: Abnormal Security provides training and awareness programs as part of its cybersecurity services. While specific training modules for new users are not detailed, the company emphasizes education to enhance email security awareness.
Support Options: Users can access support through email, phone, and chat, ensuring prompt assistance when needed.
Abnormal Security implements robust security measures to protect customer data:
API Integration: The platform uses secure API integrations with cloud email platforms like Microsoft 365 and Google Workspace, ensuring that data is accessed and analyzed securely without requiring MX record changes.
Data Privacy Compliance: Abnormal Security adheres to recognized security standards and compliance frameworks, though specific certifications like GDPR or HIPAA are not available.
Secure Data Processing: The company processes data securely, using machine learning and AI to analyze email threats without storing sensitive information unnecessarily.
Abnormal Security follows a continuous release process rather than adhering to a standard release schedule. This approach allows for frequent updates without requiring maintenance downtime or customer interaction. Here's how updates are managed:
Release Process: Updates are automatically applied to all customers, ensuring that everyone benefits from the latest features and security enhancements without manual intervention.
Change Management: Before deploying new releases, Abnormal Security follows rigorous change management procedures. These include thorough testing and approval to ensure that updates do not disrupt service or introduce vulnerabilities.
Notification: Customers are informed about new releases through the notification functionality within the service, keeping them updated on changes and enhancements.
Abnormal Security's policy on data ownership and portability is not explicitly detailed. However, based on industry standards and typical practices in cloud security services, here are some general insights:
Data Ownership: Generally, customers retain ownership of their data. Abnormal Security processes this data to provide its services but does not claim ownership.
Data Portability: While specific details are not available, cloud services often allow customers to export their data if needed. This might involve API access or other tools to facilitate data portability.
Compliance: Abnormal Security adheres to industry standards for data privacy and security, which typically include provisions for data portability and customer control over their data.
For precise information, it would be best to review Abnormal Security's data processing agreement or contact their support directly.
Abnormal Security's terms for scaling up or down are not explicitly detailed. However, based on typical practices in cloud-based services, here are some general insights:
Subscription Model: Abnormal Security operates on a subscription model, which typically allows for easy scaling based on the number of users or features required.
Flexibility: Cloud-native services like Abnormal Security are designed to scale dynamically, meaning that customers can adjust their subscription levels as their organizational needs change.
Abnormal Security's contract renewal and cancellation terms are outlined in their Cloud Terms of Service and other legal documents. Here are the key points:
Subscription Term: Each subscription term typically lasts for an initial 12-month period unless otherwise specified in the order form. Subscriptions automatically renew for successive periods unless either party provides at least 30 days' notice of non-renewal.
Renewal Notice: To avoid automatic renewal, customers must notify Abnormal Security at least 30 days before the end of the current subscription term.
Termination: Either party can terminate the agreement if the other party fails to cure a material breach within 30 days of notice. Termination can also occur if a party ceases operations or seeks bankruptcy protection.
Refund Policy: If a customer initiates termination, they are eligible for a refund of any pre-paid, unused fees for the terminated portion of the subscription term. However, if Abnormal Security initiates termination, the customer must pay all outstanding fees.
Abnormal Security meets various compliance standards to ensure the security and privacy of customer data. While specific certifications are not detailed, the company maintains an Information Security Program that aligns with industry requirements. Here are some general compliance standards that similar cloud security services typically adhere to:
Data Privacy Regulations: Abnormal Security likely complies with data privacy regulations such as GDPR and CCPA, given its global customer base and cloud-native operations.
Security Standards: The company maintains an Information Security Policy that outlines its commitment to security practices, which may include compliance with standards like ISO 27001 or SOC 2.