Prima SecureManaged Security Services

You don't have a tool problem. You have a visibility problem.

Specula is Prima Secure's managed cybersecurity service: one continuously monitored layer over the tools you already own, watched around the clock by real analysts. Vendor-agnostic. No rip-and-replace.

Tier 1 · 150 to 499 users 24/7 managed SOC See further. Respond faster.

In one sentence, what Specula actually is.

A managed cybersecurity service backed by a managed SOC. Our analysts watch your business 24x7, detect threats in real time, and act before they become breaches. In practice, that means three things.

01

A managed SOC, not a SOC to build

No 24x7 staffing, no costly tooling stack, no specialist hires to keep on the bench.

90% reduction in mean time to respond
02

You connect what you already own

Specula pulls telemetry from your existing security tools, networks, endpoints, cloud, and identity systems.

30M+ signals reviewed daily
03

We do the watching, thinking, and acting

Real analysts, real-time response, on a platform purpose-built for managed cybersecurity, not a rules engine forwarding alerts.

600 endpoints per analyst

Four tiers. One growth path.

Start where you are today. Expand coverage as risk and scale grow, without switching platforms. Every tier includes 24/7 monitoring; higher tiers add proactive hunting, integrity monitoring, and hands-on testing.

Detect

EDR/XDR

Endpoint detection and response across all devices, monitored around the clock.

Insight

SIEM

Centralised log correlation and analytics for full environment visibility.

Insight+

EDR/XDR + SIEM

Combines endpoint response with SIEM correlation for a unified view.

Complete

+ Pentest

Adds penetration testing, proactive threat hunting, and file integrity monitoring.

Detect
EDR/XDR
Asset-based pricing
Insight
SIEM
Asset-based pricing
Insight+
EDR/XDR + SIEM
Asset-based pricing
Complete
EDR/XDR + SIEM + Pentest
Asset-based pricing
24x7 eyes-on-screen SOC monitoring
24x7 incident alert escalation
100% vendor agnostic
Asset-based pricing
Weekly / monthly reporting
Hybrid infrastructure support (cloud/on-prem)
Automated host vulnerability assessment
·
·
Automated host security assessment (CIS Benchmark)
·
·
Proactive threat hunting
·
·
·
File Integrity Monitoring (FIM)
·
·
·
Annual penetration test
·
·
·

Pricing available on request. Talk to Prima Secure about the right tier for your environment.

Get scoped

02:14 on a Saturday morning. Who's watching?

Same threat. Same actors. Same hour of the night. Two very different endings. This is the entire case for managed cybersecurity. Most African organisations are running blind between 17:00 and 08:00, roughly 15 hours a day, every day, when nobody is watching.

Without Specula: status quo
02:14
Ransomware loader executes on an IT professional's workstation.
06:00
The domain controller is encrypted.
09:00
Backup systems are being wiped.
Mon
The IT manager finds out when nothing boots.
With Specula: managed cybersecurity
02:14
Same loader executes on the same workstation.
02:18
Endpoint isolated automatically. Lateral movement blocked.
02:31
Your IT manager gets a call, not an email, on Monday.
Clear
No data loss. No downtime. A routine incident report.

Works with the stack you already run.

One continuously monitored layer, not another tool to manage. Specula is vendor-agnostic; we plug into whatever firewall, EDR, SIEM, or cloud platform your team already trusts.

100% vendor-agnosticIngests from all your existing tools
One single panelFor visibility and the ability to act
No rip-and-replaceNothing torn out, nothing replaced
24/7 managed SOCHuman eyes on every alert
Endpoint & Device Security Network & Perimeter Email & Collaboration Cloud & Identity Data, Apps & Compliance
Firewall
Check Point
Endpoint Protection
Check Point
SIEM
Check Point
EDR / XDR
Check Point
Network
Check Point
Cloud
Check Point
Check Point
Check Point
Check Point
Email
Check Point
Check Point
OT
Siemens

So you can respond at the speed attackers move.

Every signal from your stack flows into one SOC, gets triaged by an analyst, and comes back to you as an action, not another dashboard.

Endpoint telemetry
Identity & access logs
Cloud & network traffic
SPECULA
SOC
Confirmed incident alert
Guided remediation steps
Monthly posture report

Built for how African enterprises operate.

Managed cybersecurity that meets African organisations where they actually are, not where a generic SOC assumes they are. Three things change once Specula is watching.

Visibility, everywhere your business runs

Most African organisations run across multiple offices, countries, and connectivity conditions, often with tools bought at different times by different teams. Specula unifies all of it into one view, so the gaps between systems, and between locations, stop being blind spots.

You see the full picture of your environment for the first time, not just what one tool captures, across endpoints, network, cloud, and identity.

Experience built around how you actually work

No rip and replace: Specula ingests from the security stack you already own. Nothing gets torn out, nothing gets replaced, and your team doesn't have to relearn a new toolset.

Local delivery: analysts based in and supporting Southern, East, and West African markets, working in your time zones and understanding your infrastructure realities, not a distant, faceless helpdesk.

Scales with you: the same managed layer covers a 20-seat business or a multi-entity group, growing with you rather than forcing a re-platform as you expand into new markets.

Prevention, not just response

Proactive threat hunting and vulnerability assessments catch weaknesses before they're exploited, not after.

24/7 monitoring means threats are caught and contained in their first minutes, not discovered days later once the damage is done.

Host vulnerability and CIS Benchmark assessments continuously harden your posture, so the same gap doesn't get exploited twice.

Your first 90 days on Specula.

No long implementation cycle. Coverage starts within the first week and sharpens every month after.

1
Day 0 to 7

Onboard

Discovery, telemetry connection, scope freeze.
Asset and identity inventory
Tooling integration for your existing stack
Tenant provisioning in Customer Centre
2
Day 8 to 30

Activate

First eyes on glass. First alerts. First remediation.
24/7 monitoring live (Detect)
Initial threat baseline established
First posture report delivered to your team
3
Day 31 to 90

Optimise

Tuning, hunting, board-ready reporting.
Custom detection rules in flight
Insight log layer activated (if scoped)
Quarterly business review scheduled

The outcomes you walk away with.

Visibility

A continuous, unified view of your threat landscape. No more dark hours, no more dark tools.

Speed

Mean time to detect drops from days to minutes; mean time to respond drops from hours to seconds.

Compliance

Continuously audit-ready against POPIA, Kenya DPA, and ISO 27001, with evidence available on demand, not on deadline.

Confidence

Board reporting your CFO can read in 30 seconds; CISO reporting your engineers can act on tomorrow.

No SOC to build

A managed SOC without the staffing: predictable opex, no specialist hires, no tooling stack to maintain.

Focus

Your team gets to do the strategic work. We run the watchtower.

Regulated where you are, delivered where you are.

Specula is delivered and supported across Southern, East, and West African markets, tuned to the regulatory frameworks your auditors already ask about. Support is local, not a remote add-on.

South Africa: POPIA

Controls and reporting mapped to the Protection of Personal Information Act.

Kenya: Data Protection Act

Monitoring and evidence practices tuned to Kenya's data protection requirements.

Zimbabwe: Cyber & Data Protection Act

Coverage aligned to Zimbabwe's cyber and data protection framework.

"We went from finding out about incidents in a Monday morning meeting to getting a call within minutes. That's the difference Specula made."
CISO, Anchorpoint Bank

Frequently asked questions.

What is managed cybersecurity?
Managed cybersecurity is a service where a third-party provider continuously monitors, detects, and responds to threats across your IT environment, including endpoints, network, cloud, email, and identity, instead of your business building and staffing that capability in-house. Specula is Prima Secure's managed cybersecurity service: analysts watch your environment 24x7, correlate signals across the tools you already own, and act on real threats in real time.
What is a managed SOC?
A managed SOC (Security Operations Centre) is a team of analysts, delivered as a service, who monitor your IT environment around the clock, triage alerts, and respond to threats, without you having to hire, staff, or run a SOC yourself. A managed SOC is the analyst layer behind every tier of Specula: the same people watching, correlating, and acting on your behalf, whether you're on Detect or Complete.
How is managed cybersecurity different from managed detection and response (MDR)?
MDR, endpoint detection and response (EDR/XDR) paired with human-led investigation and containment, is the core of managed cybersecurity, but not all of it. Specula's higher tiers add SIEM log correlation, vulnerability and CIS Benchmark assessments, proactive threat hunting, file integrity monitoring, and annual penetration testing, so "managed cybersecurity" here means the full monitored layer, not endpoint protection alone.
Do we need to replace our existing security tools?
No. Specula is 100% vendor-agnostic and ingests telemetry from the endpoint, network, cloud, and identity tools you already run. Nothing gets torn out and nothing gets replaced. Specula adds a monitored, correlated layer on top of your existing stack.
What does 24/7 SOC monitoring actually include?
Every Specula tier includes 24x7 eyes-on-screen SOC monitoring and incident alert escalation: real analysts triaging alerts around the clock, not an unmonitored rules engine. Higher tiers add proactive threat hunting, where analysts actively search for hidden threats rather than waiting on alerts.
Which Specula tier is right for us?
Detect (EDR/XDR) suits organisations that need endpoint coverage and 24/7 monitoring first. Insight adds SIEM-based log correlation for full environment visibility. Insight+ combines both for a unified view. Complete adds penetration testing, proactive threat hunting, and file integrity monitoring for organisations that need continuous security and provable resilience together. Prima Secure can map your current environment against each tier before you commit to one.
How is Specula priced?
Specula uses scalable, asset-based pricing. You pay for the assets being monitored, and the same platform scales from a small business to a multi-entity group without a re-platform. Exact pricing depends on your environment's size and scope; contact Prima Secure for a quote.
Is Specula compliant with data protection regulations in Africa?
Yes. Specula is delivered and supported across Southern, East, and West African markets, tuned to regulatory frameworks including South Africa's POPIA, Kenya's Data Protection Act, and Zimbabwe's Cyber and Data Protection Act. Support is local, not a remote add-on.
How quickly can Specula detect and respond to a threat?
With managed cybersecurity in place, mean time to detect typically drops from days to minutes, and mean time to respond drops from hours to seconds, because analysts are watching continuously rather than reacting after the fact.

Tell us about your environment.

Send us a note with a rough picture of your environment and we will size the right coverage for your team.