Overview
Updated Jun 27, 2026
Global services-firm MDR from Capgemini's Continuous Vigilance cybersecurity portfolio. Capgemini positions Continuous Vigilance around round-the-clock protection, advanced threat hunting, managed detection and response, Managed SOC, SOC transformation, DFIR, vulnerability management, penetration testing, red/purple teaming, Vehicle SOC and global threat intelligence. The MDR page says the service provides 24/7 monitoring and rapid response, using AI-driven analytics and automation to detect and contain threats in real time. Strongest fit is large enterprises that want a global consulting and cyber operations partner rather than a standalone MDR platform. Public pages do not publish pricing, contractual MDR SLAs, service credits, MTTD, MTTR, analyst ratios or exact response-authority defaults.
Buyer fit
Good fit when
- ✓Large enterprises that want a global services partner for MDR plus SOC transformation
- ✓Microsoft Sentinel-oriented organizations evaluating outsourced Cyber Defense Center delivery
- ✓Organizations that want MDR, DFIR, threat hunting, vulnerability management and offensive testing under one enterprise services relationship
Watch out when
- ×SMBs seeking transparent per-endpoint MDR pricing
- ×Buyers that need a productized MDR package with published SLAs before sales engagement
- ×Teams that want a pure-play MDR provider instead of a broad consulting and managed security services firm
Coverage
3 of 6 attack surfaces in the base price; the rest are separately priced.
EDR
SIEM
Cloud
Additional capabilities
Incident response
Pricing
Custom enterprise quote by service scope, technology stack.
How pricing works+−
Public prices are not published.
Not published
Cost caveats
- –Capgemini is a global services firm, so scope, tooling, response authority and transformation work should be specified precisely in the statement of work.
- –Public pages do not publish pricing, minimum terms, service credits, MTTD, MTTR or a contractual response SLA.
- –Microsoft Sentinel-powered Cyber Defense Centers may require separate Microsoft licensing and data-ingestion planning.
2 more+−
- –Threat hunting, DFIR, vulnerability management and offensive security are all public offers, but buyers should confirm which are included in the base MDR scope versus separate workstreams.
- –Public materials do not disclose log retention, raw data export rights or detection-content portability.
What costs extra (8)+−
- –SOC transformation beyond steady-state MDR
- –Digital forensics and incident response retainers or surge work
- –Vulnerability management program work
- –Penetration testing
- –Red and purple team exercises
- –Vehicle SOC services
- –Microsoft Sentinel deployment, tuning or licensing
- –Zero trust, DORA and broader cybersecurity advisory work
Warranty conditions+−
No public breach warranty found for Capgemini Continuous Vigilance MDR.
Team and access
Reputation
Capgemini has strong official evidence for enterprise-scale cybersecurity, Continuous Vigilance, MDR, Managed SOC, global Cyber Defense Centers, DFIR and threat hunting, but limited public buyer-review signal for the MDR service as a distinct product. Diligence should focus on service scope, response authority, tooling, staffing model, retention and pricing.
What customers praise
- ✓Global Cyber Defense Center delivery model
- ✓Broad cybersecurity portfolio around MDR, SOC transformation, DFIR and threat hunting
- ✓Microsoft Sentinel-powered Cyber Defense Center option
Common complaints
- ×No public MDR pricing or formal SLA
- ×No public MTTD, MTTR or analyst-ratio metrics
- ×Large services-firm scope can blur MDR, consulting, DFIR and transformation work
No meaningful Reddit signal found for Capgemini Continuous Vigilance MDR specifically.
Questions to ask
- 1.
Which technologies and log sources are included in the MDR scope, and which require separate integration work?
- 2.
Which Cyber Defense Center region will deliver our service and what is the follow-the-sun staffing model?
- 3.
Which response actions can Capgemini execute directly in our endpoint, network, identity and cloud tools?
- 4.
Is DFIR included in the MDR retainer, and what triggers separate incident-response fees?
- 5.
What threat-hunting cadence, methodology and deliverables are included?
- 6.
Are MTTD, MTTR, escalation clocks or service credits contractual?
- 7.
What Microsoft Sentinel licenses, ingestion costs and retention costs are our responsibility?
- 8.
What detections, playbooks, reports, tickets, logs and threat-hunting content can we export during offboarding?
Evidence
Sources reviewed
Main public source used for the provider profile.
Official Capgemini cybersecurity portfolio page used to verify continuous strategy, protection and vigilance positioning, global Cyber Defense Centers, thousands of skilled cybersecurity professionals, 24/7 threat detection and response, threat intelligence, digital forensics and DORA-related portfolio language.
Official Capgemini homepage and organization metadata used to verify company scale, founding date, global footprint and official logo asset.
Public-data caveats
- –No public contractual response-time SLA is recorded for this profile.
- –No public fixed price is recorded; compare only after a scoped quote.
- –No public breach warranty is recorded.
- –Response authority may depend on pre-approval and contract scope.
- –MDR analyst headcount or analyst-to-customer ratio is not public.
Also consider
Further reading
Independent research. Verify details directly with the provider before making decisions.
