SOC · Sovereign AI · Hosted in France

Sovereign cybersecurity,
finally readable.

A complete range of modules driven by a French AI. Detection, response and compliance — live in under 48 hours.

Our technology · SYLink AI

The sovereign AI that runs your SOC.

A pioneer of the AI-driven SOC, SYLink AI does more than raise alerts: it correlates, understands context, decides and proves — while your teams keep control of what matters.

Mode Auto-pilot — live portal activity: every flow is analysed, mapped to MITRE ATT&CK and handled with no intervention.

Multi-source correlation
Network, endpoints, mobile, cloud and identity — cross-referenced on a single timeline.
Behavioural detection
Learns what normal looks like on your estate (UEBA) and only alerts on what genuinely stands out.
Automated investigation
Reconstructs the kill chain, qualifies and prioritises — without drowning your analysts.
Response & remediation
Isolates, blocks, proposes the action. You approve, it executes.
Plain-language narrative
Explains every decision in plain language, for the CISO and the board alike.
Evidence & compliance
HMAC-signed audit trail, defensible under NIS2 & DORA.
94 % accuracy
4,2 % hallucination
100 % sovereign · France
Real time 1.24M flows/s
The UniSOC range

Find your module.

Nine modules, one brain. Add what you need — the AI orchestrates them.

Network visibility Sovereign · HDS v2
sonde-dpi.unisoc.fr
DPI sensor
● live
TLS
QUIC
DNS
SMB

DPI sensor

Full packet capture · 10 Gbps

Sees everything crossing your LAN — exfiltration, Shadow IT, command-and-control.

Throughput
10 Gbps
Visibility
L2 → L7
Deployment
VM
Endpoint protection Sovereign · HDS v2
edr.unisoc.fr
EDR agent
● live
DESKTOP-01sain
SRV-AD-02sain
PC-COMPTA-04blocked
LAPTOP-07sain

EDR agent

Memory footprint · 9 MB RAM

ETW + 125,000 YARA rules + Sigma + DLP. Stops ransomware before encryption.

Fingerprint
9 MB
Rules
125k YARA
OS
Win·Mac·Linux
Mobile security Sovereign · HDS v2
edr-mobile.unisoc.fr
Mobile XDR
● live
iPhone · Exec.clean
Android · HRclean
iPad · Workshopalerte

Mobile XDR

iOS & Android · Anti-Pegasus

Detects stalkerware (Pegasus/Predator), malicious apps and credential leaks.

Threats
Stalkerware
OS
iOS·Android
Correlation
Desktop
Internal decoy Sovereign · HDS v2
honeypot.unisoc.fr
HoneyPot
● live
10.0.0.14SMB decoy
10.0.2.31RDP decoy
10.0.1.9scan interne

HoneyPot

Lateral detection · 14 days ahead

14 decoy services deployed across the LAN. Local threat intelligence, zero false positives.

Decoys
14 services
Avance
14 jours
Intel
Locale
Continuous offensive Sovereign · HDS v2
pentest.unisoc.fr
Automated pentesting
● live
AD · KerberoastHIGH
Web · XSSMED
Host · SMBv1MED

Automated pentesting

Continuous discovery · 7 modules

Network, host, web, AD, API, IoT, cloud — verified by AI, driven by your SOC.

Modules
7
Mode
Continuous
Control
SOC
The AI that runs the SOC Sovereign · HDS v2
sylink-ai.unisoc.fr
SYLink AI
● live
Correlation128 events
Verdict91% confidence
Actionproposed

SYLink AI

Sovereign AI · Hosted in France

The brain orchestrating every module: correlation, context, decision, response and evidence — you decide, it executes.

Accuracy
94 %
Sovereignty
100% FR
Audit
HMAC · DORA
Next-generation firewall Sovereign · HDS v2
firewall.unisoc.fr
AI firewall
● live
Allowed
Blocked
IPS
GeoIP

AI firewall

Filtering · L7 + IPS

Filters the actual application (L7 DPI), blocks in real time and segments your VLANs — AI-driven.

Filtering
L7
IPS
Built in
Segment.
VLAN
Identity & mail Sovereign · HDS v2
active-directory.unisoc.fr
AD agents
● live
admin@corpMFA off
Domain Admins5 cptes
M365 · Exchangeconnected
event 4625brute-force

AD agents

AD + M365 · unified

Collects Active Directory and mail systems (M365, Exchange, MDaemon) — accounts, sign-ins, security events.

Sources
AD·M365
Collection
Real time
Response
Disable
Safe browsing Sovereign · HDS v2
safe-browsing.unisoc.fr
Safe Browsing
● live
paypa1-secure.comblocked
malware.ru/xblocked
drive.googleallowed

Safe Browsing

Filtering · DNS + URL

Blocks phishing, malicious sites and booby-trapped downloads on the fly — on desktop and mobile.

Levels
DNS·URL
Scope
Poste·Mob.
Threats
Phishing
Browse the marketplace
1,500+ modules & connectors
Open & complete

Works with your tools.
Or replaces them.

UniSOC ingests what you already run — and brings its own technology when you want to go further. Your call.

Your existing tools
1,500+ ready-made connectors
Third-party firewalls (syslog)
Microsoft 365
Active Directory
Third-party SIEM & EDR
MDaemon mail
VPN & firewalls
Cloud & SaaS
LDAP directories
OU
Our own technology
End to end, sovereign
DPI sensor
EDR agent
Mobile XDR
HoneyPot
Automated pentesting
SYLink AI
AI firewall
AD agents
Safe Browsing
Positioning

More than a SOC platform.

SOC platforms aggregate your alerts. UniSOC aggregates,detects, tests, traps and neutralises— all driven by a sovereign AI.

Capability
Conventional SOC platform
UniSOC
Log aggregation & SIEM
Our own DPI network sensor (10 Gbps)
Built-in desktop & mobile EDR
Internal decoys (deception)
Continuous internal pentesting
Application WAF
Sovereign AI running the SOC
Continuous cyber score · MITRE ATT&CK v19
partiel
French hosting · HDS v2 · Cloud Act-proof
100% on-premise deployment (on your own infrastructure)
Cyber score

Your security posture,scored continuously.

A single grade your board and your CISO both understand. UniSOC continuously assesses your Active Directory, Microsoft 365, external exposure and third parties — and proves detection coverage, tactic by tactic, against MITRE ATT&CK v19.

+6 pts / 30 daysHistorised, defensible, audit-ready.
score.unisoc.fr
87/100
Grade A
Active Directory82
Microsoft 36590
External exposure78
Third parties & supply chain74
MITRE ATT&CK v19 coverage14 tactiques
12M · 1.24M/s
threat indicators · flows analysed

Aligned with the frameworks that matter

NIS2 DORA ISO 27001 HDS v2 ANSSI MITRE ATT&CK v19 RGPD

Hosted atUnitel Groupe— sovereign datacentre in Marseille.

Sovereignty

Your data staysin France.

No traffic leaves for the United States. No exposure to the Cloud Act. An AI hosted on French HDS v2 infrastructure — advanced detection without giving up control of your data.

HDS v2 hosting NIS2 & DORA compliant AI on French soil Hosted at Unitel Groupe
Marseille
100 %
Marseille · sovereign datacentre
Live in under 48 hours

Ready to see what is really
happening on your network?

First trial free, no credit card, no commitment. On your existing infrastructure.

Cookie settings

We use cookies to improve your experience on our site. By continuing to browse, you accept our privacy policy and our use of cookies under the GDPR.