Skip to content
Nexvanta Security
  • Home
  • Tech Solutions
  • SOC 24/7
  • GRC
  • About us
  • Contact

/ legal /

RFC 2350

Draft pending legal review. This text is a working draft and is not yet legally binding.

Last updated: 27 September 2026

This document describes the Nexvanta Security Operations Center incident response team (hereinafter, "Nexvanta SOC") in accordance with RFC 2350, "Expectations for Computer Security Incident Response".

1. Document information

1.1 Date of last update

Version 1.0, 27 September 2026.

1.2 Distribution list for notifications

There is no distribution list for notifications. Changes to this document are published on this page.

1.3 Locations where this document may be found

The current version is available at https://nexvantasecurity.com/legal/rfc-2350.

1.4 Authenticating this document

This document is published over HTTPS on the Nexvanta website, which authenticates its origin.

2. Contact information

2.1 Name of the team

Nexvanta SOC.

2.2 Address

Bruja Neo LLC, 6300 Riverside Plaza Lane Northwest, Albuquerque, New Mexico 87120, USA

2.3 Time zone

America/Denver (Mountain Time: MST, UTC−7; MDT, UTC−6 in summer).

2.4 Telephone number

Not published. Clients with a SOC service contract use the 24/7 channels defined in their contract.

2.5 Facsimile number

Not available.

2.6 Other telecommunication

Not available.

2.7 Electronic mail address

soc@nexvantasecurity.com

2.8 Public keys and encryption information

No public PGP key is published. Encrypted channels are agreed individually with each client.

2.9 Team members

The Nexvanta SOC is made up of security analysts, incident responders and threat intelligence specialists. The list of team members is not published.

2.10 Other information

More information about the Nexvanta SOC is available at https://nexvantasecurity.com/soc.

2.11 Points of customer contact

The preferred method of contact is email. Clients with a SOC service contract can reach the team 24 hours a day, 7 days a week, 365 days a year through the channels agreed in their contract. For other matters, the team can be contacted during business hours (Monday to Friday, 9:00 a.m. to 5:00 p.m. Mountain Time).

3. Charter

3.1 Mission statement

To protect Nexvanta's clients against cyber threats by providing continuous monitoring, detection, analysis and response to security incidents, helping them minimize their impact and recover quickly.

3.2 Constituency

The constituency of the Nexvanta SOC is made up of Nexvanta itself and the organizations that have contracted its SOC and incident response services.

3.3 Sponsorship and/or affiliation

The Nexvanta SOC is part of Bruja Neo LLC.

3.4 Authority

The Nexvanta SOC acts under the authority of Nexvanta's management and within the scope defined in the contract with each client.

4. Policies

4.1 Types of incidents and level of support

The Nexvanta SOC handles all types of security incidents affecting its constituency, including malware, intrusions, unauthorized access, data leaks, phishing and denial of service. The level of support depends on the service contracted by each client and on the severity of the incident.

4.2 Cooperation, interaction and disclosure of information

The Nexvanta SOC treats all information received as confidential. It cooperates with other CSIRTs, government authorities (such as the Cybersecurity and Infrastructure Security Agency, CISA, and the FBI, including its Internet Crime Complaint Center, IC3) and law enforcement where necessary to handle an incident, sharing only the information strictly required and in accordance with applicable law. The team supports the Traffic Light Protocol (TLP).

4.3 Communication and authentication

Unencrypted email may be used for non-sensitive information. For sensitive information, secure channels agreed with each client are used.

5. Services

5.1 Incident response

  • Incident triage: assessing the authenticity, scope and severity of incidents.
  • Incident coordination: contacting the parties involved and coordinating the response.
  • Incident resolution: containment, eradication and recovery support, and post-incident analysis.

5.2 Proactive activities

  • 24/7 security monitoring and threat detection.
  • Threat intelligence and alerting.
  • Vulnerability management.
  • Security assessments and awareness activities.

6. Incident reporting forms

There is no public incident reporting form. To report an incident, send an email to soc@nexvantasecurity.com including, where possible: your contact details, the affected systems, a description of the incident, when it was detected, and any relevant evidence (logs, headers, indicators of compromise).

7. Disclaimers

While every precaution is taken in the preparation of information, notifications and alerts, the Nexvanta SOC assumes no responsibility for errors or omissions, or for damages resulting from the use of the information provided.

Nexvanta Security
  • Terms of use
  • Privacy policy
  • Cookie policy
  • RFC 2350
  • Ethics reporting

© 2026 Nexvanta. All rights reserved.