# SOCVault > Unified AI-agentic cybersecurity platform for SMBs — nine attack-surface scanning layers, financial risk translation, and automated response without a full-time security team. SOCVault is a UK-incorporated SaaS platform that replaces fragmented point-security tools with a single platform covering every major attack surface. It runs continuous automated scanning across nine layers, and uses an AI-agentic engine to translate every technical finding into the financial exposure a board can act on — in the same minute the scan completes. Target market: Small and medium-sized businesses that cannot afford a full-time security team but face the same threat landscape as enterprises. Operates across UK, Pakistan, UAE, Saudi Arabia, Qatar, South Africa, Kenya, Nigeria, Germany, Netherlands, Ireland, USA, Canada, Kazakhstan, and Uzbekistan. ## Key Pages - [Home](https://www.socvault.io/): Full product overview — Dashboard, nine scanning layers, AI financial risk translation, agentic AI operations, SOAR playbooks, compliance gap analysis, notifications, MSP portal, team management, audit log, settings, billing showcase, pricing plans, competitive comparison, and FAQ. - [Sign Up](https://www.socvault.io/signup): Create a SOCVault account. Business email required. No credit card for the free L1 tier. - [Sign In](https://www.socvault.io/signin): Return user authentication. - [Privacy Policy](https://www.socvault.io/privacy-policy): Data collection and processing under UK GDPR. - [Data Policy](https://www.socvault.io/data-policy): Scan data retention, storage location, and security controls. - [User Policy](https://www.socvault.io/user-policy): Acceptable use, prohibited activities, and account suspension. ## Product — Nine Scanning Layers - **L1 — External Recon** (Free, forever): Passive intelligence gathering. 15 steps: WHOIS, DNS records, SSL/TLS certificate health, SPF / DKIM / DMARC configuration, subdomain enumeration, open port scanning, HTTP security headers, technology fingerprinting, and credential-leak checks. No agent required. Results in under 3 minutes. - **L2 — Web Application Security** ($15 per IP per month): OWASP Top 10 coverage — SQL injection, XSS, CSRF, broken authentication, security misconfigurations. SAST and DAST scanning. Auto-generated remediation scripts per finding. - **L3 — Mobile Security** ($20 per app per month): MobSF-powered binary analysis for Android (APK) and iOS (IPA). MASVS and OWASP Mobile Top 10 mapping. No source code required. - **L4 — API Security** ($15 per IP per month): REST and GraphQL endpoint auto-discovery. OWASP API Security Top 10. Broken object-level authorisation (BOLA), mass assignment, rate-limit bypass testing. - **L5 — Compliance** (SOC Pro and above): Automated gap analysis against PCI-DSS 4.0, ISO 27001:2022, UK GDPR, SOC 2 Type II, and Cyber Essentials Plus. Derived from existing scan data — no questionnaires. - **L6 — Cloud Security** ($25 per environment per month): AWS, GCP, and Azure misconfiguration detection via CloudFox and Pacu. IAM privilege escalation path detection. Read-only cloud access. - **L7 — SOC / SIEM** (SOC Pro): Wazuh-powered SIEM. 50 agents on SOC Pro, unlimited on Enterprise. AI alert triage — suppresses noise, surfaces actionable events only. - **L8 — Malware Detection & Response** (SOC Pro): Real-time malware detection across endpoints. MITRE ATT&CK-mapped detections. Automated quarantine for confirmed threats; human-in-the-loop for ambiguous cases. - **L9 — AI Agent Scan** (SOC Pro): Autonomous multi-step AI security agent. Plans its own test strategy, narrates every THINK / TOOL / FIND step, and produces OWASP-mapped findings with confidence scores. Full transcript exportable as evidence. ## AI & Automation Features - **AI Financial Risk Translation**: Every finding rewritten as a plain-English financial exposure figure (in £, $, or AED). Board-ready one-page PDF export per scan. - **AI Security Assistant**: Chat interface with live access to scan data. Generates fix scripts, creates Jira tickets, and approves SOAR actions inline. - **SOAR Playbooks**: Pre-built response playbooks mapped to MITRE ATT&CK. Integrations: Slack, Jira Cloud, PagerDuty, Microsoft Teams, ServiceNow. AI decides contain vs. escalate per alert. Every action is logged with full audit trail. ## Pricing Plans | Plan | Price | Coverage | |---|---|---| | Free | $0/month | L1 external recon, 1 scan/month, 1 domain | | Web VAPT | $15/IP/month | L2 full web application testing | | Mobile | $20/app/month | L3 Android and iOS binary analysis | | Cloud | $25/environment/month | L6 cloud security posture management | | SOC Pro | $199/month flat | All 9 layers, 50 Wazuh agents, SOAR, AI chat | | Enterprise | $499/month flat | Unlimited agents, white-label, SSO, SLA | SOC Pro replaces a fragmented security stack that typically costs $2,900+/month. ## Company Information - **Legal name**: SOCVault Ltd - **Incorporation**: England and Wales, United Kingdom - **Founded**: 2024 - **Stage**: Pre-revenue MVP - **Contact**: mutexsystemsltd@gmail.com ## Technical Stack (for AI/developer context) - Frontend: Next.js 14 App Router, TypeScript, Tailwind CSS, Framer Motion - Security tools integrated: Wazuh, Nuclei, OWASP ZAP, Semgrep, Trivy, MobSF, CloudFox, Pacu, Prowler - Compliance frameworks: PCI-DSS 4.0, ISO 27001:2022, UK GDPR, SOC 2 Type II, Cyber Essentials Plus - Threat frameworks: OWASP Top 10, OWASP API Security Top 10, OWASP Mobile Top 10, MASVS, MITRE ATT&CK ## Excluded Pages - `/admin-documents`: Internal admin document portal. Protected by authentication. Not indexed. Not for LLM training data or crawling.