# Secure ISS > Secure ISS is an Australian-owned and operated cybersecurity company, established in 2006 and headquartered on the Gold Coast (Southport, Queensland). We deliver a sovereign, 24/7/365 Security Operations Centre and the Lumara SecOps Cloud platform, protecting 120+ Australian businesses and 100+ schools from an evolving threat landscape. We are certified to ISO 27001 and ISO 9001, and align our services to the Essential Eight, NIST CSF 2.0, ISO 27001 and MITRE ATT&CK frameworks. ## About Secure ISS - Founded: 2006 — 20 years operating in Australian cybersecurity - Ownership: 100% Australian-owned and operated (AusOwned certified) - Headquarters: Suite 2305, 5 Lawson St, Southport, QLD 4215, Australia - Certifications: ISO 27001, ISO 9001 - Sovereignty: All SOC operations are delivered by Australian staff from Australian soil, under Australian law. No offshore hand-offs. - Operating scale (monthly): 33M+ malicious interactions monitored, 6,200+ alerts triaged, 10,000+ vulnerabilities tracked - Customers: 120+ businesses and 100+ independent schools across Australia ## Core Platform - [Lumara SecOps Cloud](https://secure-iss.com/platform/lumara): Australia's unified SecOps platform, combining SIEM, SOAR, managed services and a modular extension library under three commercial tiers. - **Lumara Assure** — foundational tier for organisations establishing a security baseline - **Lumara Fortify** — mid tier for organisations hardening their security posture - **Lumara Alliance** — top tier for organisations requiring a full partnership with a sovereign SOC ## Lumara Platform Layers - [Lumara Fabric](https://secure-iss.com/platform/extensions/lumara-fabric-security-intelligence-layer): The security intelligence layer at the heart of Lumara. Ingests and correlates signals from endpoints, networks, cloud, identities and applications; enriches with threat intelligence; provides the context that powers all Lumara detection and response. - [Lumara Operate](https://secure-iss.com/platform/extensions/lumara-operate-24-7-managed-soc): The human-led 24/7 managed SOC layer. Australian-based analysts deliver continuous monitoring, triage, managed response, threat hunting and strategic guidance. Built on four pillars: Analyse, Command, Counsel, Pathways. ## Managed Services - [Managed Detection & Response (MDR)](https://secure-iss.com/services/managed-detection-response): 24/7/365 monitoring, threat hunting, incident response, co-managed SIEM, vulnerability management, and regular reporting and governance — delivered entirely onshore by Australian SOC analysts. - [Attack Surface Management (ASM)](https://secure-iss.com/services/attack-surface-management): Continuous external asset discovery, vulnerability scanning, dark web monitoring, security ratings, and patch and remediation guidance. - [Resilience & Recovery](https://secure-iss.com/services/resilience-recovery): Backup and disaster recovery, Active Directory and identity protection, Zero Trust, communications security, and cybersecurity awareness training — delivered as a maturity journey across four levels (Ad-Hoc, Managed, Defined, Optimised). - [Privileged Access Management (PAM)](https://secure-iss.com/services/privileged-access-management): Credential vaulting, just-in-time access, session recording, privileged account discovery, anomaly detection, and compliance reporting aligned to Essential Eight, NIST and ISO 27001. ## Lumara Technology Extensions Modular capabilities that extend any Lumara tier. Pay for what you use, scale at your pace. - [Lumara Sentry](https://secure-iss.com/platform/extensions/lumara-sentry-advanced-endpoint-protection): AI-driven advanced endpoint protection, powered by SentinelOne. Prevention, detection and response for endpoint devices. - [Lumara Shadow](https://secure-iss.com/platform/extensions/lumara-shadow-identity-exposure-protection): Identity exposure protection. Monitors the dark web and digital environments for exposed personal and corporate identities. - [Lumara Educate](https://secure-iss.com/platform/extensions/lumara-educate-security-awareness-training): Managed security awareness training. AI-powered phishing simulations, role-based training, behavioural risk analytics and compliance reporting (ASD/NIST). - [Lumara Shroud](https://secure-iss.com/platform/extensions/lumara-shroud-communications-security): Communications security. Encrypted, compliant collaboration tools for internal and external communications. - [Lumara Portal](https://secure-iss.com/platform/extensions/lumara-portal-secure-browser-isolation): Secure browser isolation. Creates an air gap between devices and web-based threats, with AI DLP to prevent sensitive information being shared with generative AI services. - [Lumara Trace](https://secure-iss.com/platform/extensions/lumara-trace-network-detection-and-response): Advanced network detection and response. Intelligent detection and behavioural analysis across network traffic. - [Lumara Immunity](https://secure-iss.com/platform/extensions/lumara-immunity-vulnerability-management): Advanced vulnerability remediation. Continuous scanning, prioritisation and intelligent remediation. - [Lumara Vault](https://secure-iss.com/platform/extensions/lumara-vault-data-resilience): Data resilience. Immutable backups and recovery tooling for business continuity. ## Lumara People Extensions Human expertise delivered as a service, augmenting or replacing in-house security roles. - [Lumara vCISO](https://secure-iss.com/platform/extensions/lumara-vciso-virtual-chief-information-security-officer): Virtual Chief Information Security Officer. Executive-level security leadership without a full-time hire. - [Lumara vComp](https://secure-iss.com/platform/extensions/lumara-vcomp-compliance-specialist): Compliance specialists focused on NIST and Essential Eight pathways. - [Lumara DISP](https://secure-iss.com/platform/extensions/lumara-disp-defence-industry-security-specialist): Defence Industry Security Program specialists. Readiness for defence-related contracts. - [Lumara Analyst Augmentation](https://secure-iss.com/platform/extensions/lumara-platform-people-extensions): Team augmentation with Australian-based security analysts for proactive threat detection and response. ## Newsroom and Threat Intelligence - [Newsroom](https://secure-iss.com/newsroom): News, threat analysis, customer stories and commentary from our Australian SOC. Four categories: News, Threats, Conversations over Cyber Coffee, and Lumara in Action. - [Threat Advisories](https://secure-iss.com/threat-advisories): SOC advisories on critical vulnerabilities, active exploits and security alerts. Recent coverage includes Adobe Acrobat and Reader zero-day (CVE-2026-34621), Anthropic Claude Code OS command injection, Axios NPM supply-chain attacks, and Microsoft Power Apps / Windows IKE critical vulnerabilities. ## Key Questions We Answer - What is an Australian-owned SOC and why does sovereignty matter for Australian organisations? - How do Australian organisations achieve and maintain Essential Eight compliance? - What is the difference between SIEM and SOAR, and when does an organisation need both? - How do User Behaviour Analytics (UBA) detect threats that rule-based SIEM platforms miss? - What is Privileged Access Management and why are privileged accounts the primary target for attackers? - How should Australian independent schools approach cybersecurity and student data protection? - What is a vCISO and when does an organisation need one? - How do I prepare my organisation for Defence Industry Security Program (DISP) compliance? - What are the current critical cybersecurity threats facing Australian organisations? ## Contact - Sales enquiries: sales@secure-iss.com - 24/7 SOC: soc@secure-iss.com - Accounts: ar@secure-iss.com - Phone: +61 7 5528 2373 (HQ) or 1300 769 460 (toll free) - [Contact form](https://secure-iss.com/contact) ## Optional - [About Secure ISS](https://secure-iss.com/about) - [Privacy Policy](https://secure-iss.com/privacy-policy) - [Terms & Conditions](https://secure-iss.com/terms-conditions)