Buyer fit
Good fit when
- ✓Community banks, credit unions, and regulated financial services wanting an MSSP with deep FFIEC experience and MDR under one roof
- ✓US mid-market healthcare, government, and education buyers wanting managed security, email protection, and MDR bundled with one vendor
- ✓Organizations without a mature EDR that want SilverSky to deploy and run the Cynet Elite agent for them
Watch out when
- ×Buyers who require MITRE-validated detection or published MTTD/MTTR before committing
- ×Large enterprises or mature security teams wanting full self-service raw data query access
- ×Global organizations needing multilingual or Asia-Pacific SOC coverage
Coverage
2 of 6 attack surfaces in the base price; the rest are separately priced.
EDR
SIEM
Cloud
Additional capabilities
Incident response
Pricing
Custom quote, priced primarily per user in line with the nLighten heritage.
Checked Aug 2026
Aggregator-listed starting estimate for SilverSky MxDR, per user per month. Not…
SelectHub · 2026
How pricing works+−
Managed EDR is priced around the Cynet Elite agent. No public price list.
Not vendor-published. One third-party aggregator lists a starting estimate near $11 per user per month.
Cost caveats
- –MDR is one line in a broader managed-services catalog. Email security, firewall management, vulnerability management, and advisory each carry separate pricing on top of MDR.
- –Full DFIR for a confirmed breach is a separate engagement, not part of base MDR.
- –Managed EDR is built around the Cynet Elite agent. If you want SilverSky to manage a different EDR, confirm coverage and pricing before signing.
1 more+−
- –No public pricing. Reviewers repeatedly describe SilverSky as expensive relative to alternatives, so benchmark against other quotes.
What costs extra (6)+−
- –Full DFIR / breach incident response (separate engagement)
- –Email protection suite
- –Firewall, SD-WAN, and SASE/ZTNA management
- –Vulnerability management
- –Advisory / vCISO services
- –Cyber range services
Figures from named sources only (vendor pages, marketplaces, resellers, public procurement records, buyer reports), each dated. Nothing here is our estimate.
Team and access
Reputation
Public reviews are limited and skew toward SilverSky's managed security and email-security heritage rather than the newer Lightning MDR. Capterra shows 4.7/5 across 10 reviews for Managed Security Services, with an active email-security presence on G2. There is little to no MDR-specific practitioner discussion on Reddit, PeerSpot, or Gartner Peer Insights, so real-world MDR performance is hard to validate independently.
What customers praise
- ✓Responsive human support, described as 'like having our own in-house security team' (Capterra)
- ✓Long-term reliability, with reviewers citing nearly 2 decades of dependable service (Capterra)
- ✓Instant alerts and a knowledgeable support team (Capterra, G2)
Common complaints
- ×Priced as expensive relative to alternatives (Capterra)
- ×Support engagement occasionally slow or lacking follow-through (Capterra)
- ×Feature gaps noted, including limited SIEM logging and missing mobile VPN (Capterra, G2)
No substantive discussion of SilverSky MDR found on r/msp, r/cybersecurity, or r/sysadmin as of August 2026.
Questions to ask
- 1.
The 10-minute SLA covers notification on critical alerts. What, if anything, do you commit to in writing for containment or remediation time?
- 2.
For managed EDR you deploy the Cynet Elite agent. Can you instead manage our existing CrowdStrike, SentinelOne, or Defender deployment, and how does that change coverage and price?
- 3.
Which containment actions do your analysts take automatically under pre-approved playbooks, and which require our approval?
- 4.
Is full DFIR for a confirmed breach included, or is it a separate engagement with separate cost?
- 5.
What data retention do we get for logs and telemetry, and what can we export if we leave?
- 6.
How is overnight coverage staffed across the US and Belfast SOCs, and who is actually working an incident at 3am our time?
- 7.
MDR sits alongside email, firewall, and vulnerability management in your catalog. What is included in base MDR versus billed separately?
- 8.
Do you hold a current SOC 2 Type II attestation for the MDR service, and can we review the report?
Evidence
Sources reviewed
Public-data caveats
- –SLA caveat: SilverSky publishes a 10-minute notification SLA on critical alerts for its Microsoft MxDR and Lightning MDR services, and commits to 99.5% platform availability. The 10-minute figure is a notification commitment, not a containment or remediation time, so confirm what response times, if any, are written into your contract.
- –No public breach warranty is recorded.
- –Response authority may depend on pre-approval and contract scope.
- –MDR analyst headcount or analyst-to-customer ratio is not public.
Also consider
Further reading
Independent research. Verify details directly with the provider before making decisions.
