The variation between MSSPs and MDR services is so wide, telling me you have MSSP/MDR tells me very little.

It's a bit like saying "I have a car" - but I don't know what the capabilities or the reliability of your "car" are.

@malwarejake my SOC doesn’t do any investigation, just an “if this then that”