United States
SOC onboarding built for the United States.
Client-ready onboarding packs for US MSPs, MSSPs and security teams: Splunk-first, mapped to SOC 2 and HIPAA, with sector breach timelines kept separate because there is no single federal standard.
The SIEM platforms we onboard to here
Blueprint generates the full onboarding pack in each platform's own vocabulary - sources, runbooks, detection priorities and validation steps. These are the platforms we see most in this market.
The security stack we document
Source runbooks are generated per vendor. The global core is always available; vendors with real share in this market are included by default.
Collectors and gateways
Where logs cannot go straight to the platform, the pack covers the collector layer:
Frameworks and regulation
Every pack maps onboarding evidence against the frameworks that matter in this market.
Statutory notification deadlines
| Trigger | Deadline | Report to |
|---|---|---|
| Material cybersecurity incident at a public company | 4 business days from materiality determination | SEC via Form 8-K |
| Breach of unsecured protected health information | 60 days | Affected individuals and HHS |
| Cybersecurity event at an NYDFS-regulated entity | 72 hours | NYDFS |
| Breach of personal information | Varies by state, commonly 30 to 60 days | Affected individuals and state attorney general |
Regulators
- FTC - Consumer protection and data security enforcement
- CISA - National cyber defence and critical infrastructure
- OCR - HIPAA enforcement
- SEC - Public company cyber disclosure
- NYDFS - New York financial services
Sector packs
Sector-calibrated detection priorities and framework mappings:
Partner with us
Blueprint is white-label first: your branding on every generated pack, your domain on the client portal. We are looking for our first delivery partner in the United States.
Apply as a partner