FAQ

Have a question? Find answers to our most frequently asked questions here, organized by topic.

Partners

Looking to become a partner?
FAQ icon

Check out our page Become a partner.

Already a partner looking for the portal?
FAQ icon
Looking for a job?
FAQ icon

Check out our page Join us.

TEHTRIS TAM

What is the difference between a TAM and standard Tehtris support?
FAQ icon

Standard support handles requests and incidents according to a defined process. A TAM provides more consistent, contextualized guidance: they understand your environment, your priorities, and your history, and can help you get the most out of your solution over the long term.

Is the TAM a dedicated individual or a rotating team?
FAQ icon

The TAM is a named technical contact. Depending on the plan you choose, they are either dedicated to you or shared across a small number of clients. In both cases, it's an identified contact who knows your infrastructure, your teams and your priorities. The exact scope is set out in your contract.

How often does the TAM work with our team?
FAQ icon

The frequency of communication depends on the level of engagement defined with Tehtris. This may include regular sync meetings, technical discussions, or specific reviews, provided these terms are confirmed in the contract.

So, what exactly does the TAM do proactively?
FAQ icon

Depending on the defined scope, the TAM can prepare product updates, track recurring issues, propose configuration reviews, escalate priority requests, and support teams in optimizing their use of your solution.

Is TAM relevant for mid-sized organizations?
FAQ icon

Yes, when an organization wants to get more out of your Tehtris solution but lacks the internal resources to manage every technical detail. The TAM provides specialized support without replacing your internal security or IT teams.

Does the TAM replace an internal security team?
FAQ icon

No. The TAM is not intended to replace your internal teams. Instead, it supports them in using, prioritizing, and mastering your Tehtris solution, helping to strengthen their ability to leverage the platform within your specific environment.

TEHTRIS Academy

What is Tehtris Academy?
FAQ icon

Tehtris Academy is the cybersecurity training division of Tehtris, operating under the Cyber department.

How many programs are there?
FAQ icon

Tehtris Academy is structured around three programs: the self-paced Tehtris Academy e-learning path for clients and partners, a Partner Training Program dedicated to our partners, and paid, industry-focused Premium Trainings.

Does Tehtris Academy offer certifications?
FAQ icon

No. Tehtris Academy is not a certifying body and does not issue official certifications.

However, the skills covered are assessed against external public standards and recognized frameworks to provide learners with a clear structure for measuring their progress.

Who are the instructors?
FAQ icon

Our training courses are led by experienced cybersecurity practitioners, including analysts, consultants, SOC experts, threat hunters, and specialists in DFIR, pentesting, or purple teaming, depending on the program. Many of our instructors also teach at universities and engineering schools.

Is Tehtris Academy free?
FAQ icon

Two out of three programs are free for customers and partners: the Tehtris Academy e-learning and the Partner Training Program. Premium Trainings are fee-based.

Which frameworks are the curricula aligned with?
FAQ icon

The curricula are based on the ENISA ECSF as the primary framework, with MITRE ATT&CK, NIST, and ANSSI serving as supplementary references. There are no internal frameworks.

What are the four Premium curricula?
FAQ icon

The Premium curricula are WSA101 (Tehtris Essentials), SOC-OPS (IR/SOC Analyst), TH-ADV (Threat Intel & Hunting), and SOC-MGR (SOC Manager).

Is the Partner Training Program open to clients?
FAQ icon

No, the Partner Training Program is exclusively for Tehtris partners. It is designed to train their technical teams so they can better support end customers.

TEHTRIS EDR

Does an EDR solution replace an antivirus or an EPP?
FAQ icon

No, the two complement each other. EPP prevents threats from executing in the first place, while EDR detects and responds to suspicious behavior that slips through. Tehtris EDR integrates both, managed from a single console. If you prefer to keep your current EPP, Tehtris EDR can also coexist with it.

Does Tehtris EDR work on Windows 7 and legacy systems?
FAQ icon

Yes: from Windows XP to 11 and Server 2003 to 2025, in both 32 and 64-bit versions, as well as on Linux from kernel 2.6.18 and macOS from Sierra onwards.

Do I need a SOC to run Tehtris EDR?
FAQ icon

Not necessarily. Without a SOC, policy-based automated response blocks and isolates threats without human intervention. With a team of analysts, you retain control over every decision and can fully leverage telemetry and investigation. Everything in between is configurable based on your team's maturity. And if you lack the resources to qualify alerts, our services can take over: MDR (Managed Detection and Response), a dedicated TAM (Technical Account Manager), and Professional Services.

‍

What happens when a threat is detected?
FAQ icon

Depending on the configured policies, Tehtris EDR analyzes the event, classifies the behavior, and executes a response: for example, the malicious process is terminated, the workstation is isolated from the network, and an alert is sent to the console. The state of the workstation (processes, network connections) is preserved for investigation.

Do my documents stay confidential?
FAQ icon

Yes. The analysis is based on metadata, hashes, and behavioral telemetry, not on the content of your documents. Only certain suspicious files, such as executables or scripts, may be uploaded for automated analysis within the Tehtris infrastructure. If your organization requires it, a setting is available to disable the uploading of Microsoft Office documents.

Where is the data hosted?
FAQ icon

Data is hosted in Europe on OVHcloud infrastructure and remains stored within that environment. A SecNumCloud option is available.

How does Tehtris EDR impact the performance of workstations and servers?
FAQ icon

Tehtris EDR relies on an agent designed to remain lightweight and unobtrusive in daily operations. To balance protection with performance, security policies can be fine-tuned for specific groups of machines. Our TAMs and Professional Services team are here to help you align these policies with your security goals and operational requirements.

Other

Experiencing a technical emergency?
FAQ icon

Log in to your support portal to create a ticket or contact support-services@tehtris.com.