Whether you’re a one-person operation or a growing business with a full team, we’re here to help. Get in touch and let’s talk about what we can do for you.

Avanan IRaaS

Incident Response as a Service — a SOC team watching your email, always

Alerts without action are just noise. Avanan IRaaS pairs AI detection with a 24/7 human SOC team who investigate and respond to email-based incidents on your behalf — remediating threats, pulling malicious emails already delivered, and giving you a clear picture of what happened.

Key Features Of This Package

24/7 human analysts

Real security analysts working around the clock to investigate flagged incidents — not just automated alerts, but human-led investigation and response.

Active remediation

When a threat is confirmed, analysts take action — pulling malicious emails already delivered to inboxes and containing the impact before it spreads.

Clear incident reporting

Every incident investigated is documented — what was found, what action was taken, what the impact was. No guessing, no noise.

24/7 human response to email threats. Not just alerts.

Adam Gillett, Head Of Business Partnerships - We Do Your IT Support

What Is Our Avanan IRaaS

Avanan IRaaS (Incident Response as a Service) is a managed SOC service for email security. Security analysts monitor your Avanan environment 24/7, investigating flagged incidents, pulling malicious content, and responding to compromised accounts on your behalf.

Why Choose Our Avanan IRaaS

If you want human oversight on email threats, not just automated filtering. Particularly valuable for businesses that handle sensitive data or finances, and anyone who has experienced a phishing incident before. Included in the Complete Cloud Security Pack.

What's Included In Our Avanan IRaaS

24/7 SOC monitoring of your Avanan environment, incident investigation by security analysts, active remediation including email retraction and account containment, and incident reports.

Benefits Of Our Avanan IRaaS

Faster response to email incidents than any internal IT resource could provide, active threat containment rather than just detection, clear accountability for every incident investigated, and peace of mind from round-the-clock coverage.

How to become a customer

Step 1

Initial Enqiry

Step 2

Advice

Step 3

Setup

Step 4

Call For Support

Step 5

Billed In Arrears
Frequently Asked Questions About Avanan IRaaS
We have complied a list of questions that are often asked about Avanan IRaaS and how it can help your business. If you can’t see the answer to a question you have, please contact us today!

Avanan’s AI blocks the majority of threats automatically. IRaaS adds a human analyst layer — for incidents that need investigation, judgement, and active remediation beyond what automation can handle.

Email-based threats — advanced phishing, BEC attempts, compromised accounts sending malicious email, malware campaigns. The analysts focus specifically on email-vector attacks.

They have access to the metadata and threat findings from your Avanan environment, and can take remediation actions on flagged items. Access is scoped to what’s needed for incident response.

If a phishing email is delivered before Avanan detects it, IRaaS analysts can retroactively remove it from every mailbox it was sent to — so even if someone received it, they can’t act on it.

For significant incidents, yes — the analysts will reach out through your agreed communication channel. Routine investigations are handled and reported without needing to interrupt you.

IRaaS focuses specifically on email-based incidents. For broader security operations monitoring, a full SOC service would be a separate engagement — speak to us about requirements if you need wider coverage.

IRaaS analysts can contain the impact — blocking the account from sending further malicious emails and flagging the compromise to your IT team for password reset and investigation.

Yes. That’s what makes it significant — this kind of SOC response would normally require a large enterprise budget. Avanan’s scale makes it accessible to SMBs through our Complete Cloud Security Pack.

No — but it reduces the likelihood of a claim. Many insurers look favourably on businesses with active SOC monitoring as part of their risk assessment.

IRaaS is included as a component of our Complete Cloud Security Pack — there’s no separate licence to buy.

Reassuring Availability

There is nothing more annoying than an IT glitch that stops you working efficiently. However, knowing you have access to immediate attention to the glitch and a solution to it, is very reassuring and that is provided by We Do Your IT. We have so appreciated the availability and response given by the team at We Do Your IT, enabling us to remain a productive firm.

Richard Sharp – Sharp Family Law