Buyer fit
Good fit when
- ✓Japanese enterprises and APJ subsidiaries that want a Tokyo-headquartered SOC and Japanese-language support
- ✓Multinationals standardizing on CrowdStrike Falcon who want a deep partner-managed service in APJ
- ✓Buyers that value Nomura Group governance and SOC 2 Type II audited operations
Watch out when
- ×Buyers who need published SLA commitments and independently validated detection metrics
- ×European-only buyers, since NRI Secure's footprint is concentrated in Japan and the US
- ×Teams that rely heavily on G2 or Gartner Peer Insights review data to vet a vendor
Coverage
5 of 6 attack surfaces in the base price; the rest are separately priced.
EDR
SIEM
Cloud
Additional capabilities
Incident response
Pricing
Custom quote, varies by monitoring scope, license count, users and support duration.
How pricing works+−
Sold direct.
Not published
Cost caveats
- –Pricing is fully custom, no public benchmarks to anchor negotiation
- –Contractual SLA language must be requested, no default response time is published
- –Detection metrics are not published, customers cannot benchmark MTTD or MTTR ahead of signing
What costs extra (3)+−
- –Security consulting and pen testing
- –Phishing awareness training
- –Incident response retainer
Team and access
Certifications
Reputation
NRI Secure has very limited English-language community review presence on G2, Gartner Peer Insights and PeerSpot for its MDR service specifically. Most public references come from Japanese enterprise press and NRI Group communications rather than independent buyer reviews. Buyers will need direct customer references.
What customers praise
- ✓Backed by Nomura Research Institute with long Japanese enterprise track record
- ✓Three CrowdStrike Asia-Pacific and Japan Partner Awards in 2020 for the Managed EDR Service
- ✓Strong analyst certification base (329 GIAC, 120 CISSP, 111 CISA, 80 CISM as of Jan 2024)
Common complaints
- ×Almost no English-language third-party reviews to verify the service against
- ×No published SLA or detection metrics for buyers to compare against pure-play competitors
- ×Service catalog spans MSSP, MDR, SOC-as-a-service and consulting, scope can blur during sales cycles
Limited Reddit discussion of NRI Secure outside Japan-focused threads. North American practitioners typically encounter the brand through CrowdStrike partner channels rather than direct shortlists.
Questions to ask
- 1.
Which SOC handles our environment, Tokyo or Irvine, and what is the response SLA from that location?
- 2.
How autonomous is the response under our runbook? Do analysts isolate hosts at 3am or wait for our approval?
- 3.
Beyond CrowdStrike, which EDR and SIEM products do your analysts have hands-on tuning experience with at scale?
- 4.
What detection metrics can you share from real customer engagements, since none are published publicly?
- 5.
How does the Japanese-language SOC handle English-only reporting and escalation for our non-Japanese ops team?
- 6.
What does the data export look like if we leave, including detection content and alert history?
- 7.
How is pricing structured between NeoSOC, Managed EDR, consulting and pen testing if we want to combine them?
Evidence
Sources reviewed
Public-data caveats
- –No public contractual response-time SLA is recorded for this profile.
- –No public fixed price is recorded; compare only after a scoped quote.
- –No public breach warranty is recorded.
- –Response authority may depend on pre-approval and contract scope.
- –MDR analyst headcount or analyst-to-customer ratio is not public.
Also consider
Further reading
Independent research. Verify details directly with the provider before making decisions.
