

Neosec
بواسطة Akamai Technologies
The implementation process for Neosec is designed to be low-friction and non-disruptive, typically taking between 2 to 4 weeks for full enterprise-wide visibility. Because the platform is SaaS-based and works out-of-band, it does not require installing agents on individual servers. Implementation starts with a 'Discovery' phase where traffic data is mirrored to the Neosec cloud from existing infrastructure like F5 load balancers, NGINX proxies, or API gateways (e.g., Apigee, Kong). Akamai provides pre-built connectors and scripts to automate this mirroring process. Once data begins to flow, the platform spends the first 7-10 days 'learning' the environment, automatically cataloging APIs and establishing behavioral baselines. A dedicated customer success manager guides the team through the initial risk audit, helping to prioritize the remediation of found vulnerabilities before moving into full runtime protection mode.
Neosec offers extensive customization capabilities to fit the unique business logic of any organization. Users can define custom 'behavioral entities' and 'business events' that the system should track, such as 'successful checkout' or 'sensitive data access.' The response engine is highly configurable, allowing security teams to build unique playbooks that trigger different actions based on the threat type—such as sending an alert to a specific Slack channel, opening a Jira ticket with forensic data, or triggering a block at the WAF level. The platform's UI is customizable with role-based dashboards that can be tailored for different stakeholders (e.g., a high-level view for CISOs and a detailed forensic view for SOC analysts). Additionally, Neosec provides a robust API for the platform itself, allowing teams to programmatically export data into their own data lakes or custom internal dashboards.
Beyond the base subscription or consumption-based fee, customers should be aware of potential additional costs related to data egress and managed services. While the SaaS platform license covers the core functionality, some cloud providers may charge for the bandwidth used to mirror API traffic to the Neosec cloud (though Neosec minimizes this by only analyzing metadata and headers). The 'Managed ShadowHunt' service is an optional add-on that carries its own annual fee. Professional services for complex, custom integrations or intensive onsite training are also available as separate line items. However, the automated 'Active Testing' and 'Tokenization' features are typically included within the standard enterprise tiers. Akamai also offers 'Managed Security Service Premium' for those requiring 24/7 dedicated support from Akamai's Security Operations Control Center (SOCC).
Training for Neosec is comprehensive and multi-modal. Onboarding includes a series of guided 'Quick Start' sessions with security engineers to ensure the team can navigate the console and interpret alerts. For deeper learning, Akamai University offers dedicated modules on API security, covering everything from the 'Discovery' lifecycle to advanced threat-hunting techniques. Documentation is extensive, featuring 'TechDocs' with API specifications, integration guides, and 'how-to' videos. For customers of the ShadowHunt service, 'Ask the Experts' sessions provide direct access to senior threat hunters for ad-hoc education and incident walkthroughs. Monthly 'Threat Intelligence' reports also serve as an educational tool, keeping the customer's team updated on the latest global API attack trends and how to defend against them within the platform.
Security is paramount for Neosec, which holds a SOC 2 Type II certification. The platform is built with a 'Privacy by Design' architecture, centered around an automated tokenization engine. This allows customers to sanitize sensitive data (like PII, credit card numbers, or health records) at the source—either on-premise or within their own cloud environment—before it is ever sent to the Neosec cloud for analysis. This ensures that Neosec personnel never have access to raw sensitive data. Data in transit is protected using high-grade TLS encryption, and data at rest is encrypted using AES-256. Access to the Neosec console is protected by Multi-Factor Authentication (MFA) and granular Role-Based Access Control (RBAC). Furthermore, Akamai’s global infrastructure provides additional layers of DDoS protection and physical security for the underlying data centers.
As a cloud-native SaaS platform, Neosec is updated continuously with a typical major release cadence of every 2 to 4 weeks. These updates are deployed seamlessly in the background with zero downtime for the customer. Updates include new detection algorithms based on newly discovered global threat patterns, performance enhancements to the big-data engine, and new integration connectors. Security teams are notified of major new features via in-app notifications and monthly product newsletters. Because the platform uses an out-of-band data ingestion model, updates to the Neosec cloud do not require any changes or restarts of the customer's production applications, ensuring that security stays up-to-date without impacting business operations or requiring manual patch cycles by the IT team.
Customers retain 100% ownership of the API traffic data and logs ingested by Neosec. The platform acts as a data processor, and the customer’s data is siloed to ensure it is never mixed with other clients' data. Neosec provides robust data export options, allowing customers to send their enriched security logs to third-party SIEMs (like Splunk or QRadar) or long-term cold storage (like Amazon S3 or Azure Blob Storage) in standard formats like JSON. If a customer decides to cancel their subscription, Neosec follows a strict data deletion policy, where all customer-specific data and metadata are purged from the cloud environment within a contractually defined period. The 'Audit Trail' feature within the platform allows customers to track all internal access to their data, ensuring complete transparency and accountability.
Neosec is designed to scale horizontally to meet the needs of the world’s largest enterprises. Built on a cloud-native big-data architecture, the platform can handle billions of API requests per day across thousands of disparate endpoints. As a company grows—whether through increased traffic, new application launches, or geographic expansion—the Neosec SaaS environment scales its processing power automatically. For large organizations with decentralized teams, Neosec supports multi-tenancy and granular RBAC, allowing different business units to manage their own API estates while giving the global CISO a unified view of the organization's risk. The platform's integration with the Akamai 'Connected Cloud' further enhances this scalability, utilizing a massively distributed network to process security data closer to the source of the traffic.
Neosec contracts are typically structured as 1-year or 3-year annual subscriptions, billed upfront or quarterly. Renewal notices are provided 90 days in advance, and the platform offers predictable scaling rates for organizations that expect significant growth. Cancellation terms are standard for enterprise SaaS, usually requiring a 30-day notice prior to the renewal date. The service is backed by a robust Service Level Agreement (SLA) from Akamai, guaranteeing high uptime for the detection engine and the management console. Usage is tracked based on 'API Request Volume,' and most contracts include a buffer to handle seasonal traffic spikes (e.g., Black Friday for retail clients). Support terms are defined by the selected tier, with Enterprise and Premium tiers offering 24/7/365 access to Akamai's global SOCC.
The Neosec platform is designed to help organizations meet the most stringent global compliance requirements. It is SOC 2 Type II compliant, ensuring rigorous controls over security, availability, and confidentiality. For customers in the European Union or those handling EU citizen data, Neosec is fully GDPR compliant, with its tokenization engine playing a key role in satisfying 'data minimization' and 'anonymization' requirements. In the United States, Neosec supports HIPAA compliance for healthcare entities through specialized configurations that protect Protected Health Information (PHI). The platform also aids in PCI-DSS compliance by identifying and auditing APIs that handle credit card data. Furthermore, Neosec's reports can be used as evidence for FFIEC (financial) and ISO 27001 audits, proving that the organization has the necessary visibility and controls over its API-based business processes.