MedCore Health stops two ransomware attempts in 90 days
A regional healthcare network hardened its endpoints and stood up a 24/7 SOC on Sophos MDR — catching two ransomware attempts within the first quarter of operation.
A regional healthcare network hardened its endpoints and stood up a 24/7 SOC on Sophos MDR — catching two ransomware attempts within the first quarter of operation.
MedCore's IT team of five was covering 2,300 endpoints across 14 clinics with no after-hours coverage. Legacy AV lacked behavioural detection, and a recent tabletop revealed dwell-time assumptions that would have been catastrophic in a real incident.
We deployed Sophos Intercept X across all endpoints and servers, integrated Sophos Firewall with Synchronized Security, and onboarded MedCore into AURA's 24/7 SOC on Sophos MDR. Playbooks were customised for HIPAA-regulated clinical workflows.
Two credential-theft-driven ransomware attempts were contained within minutes of first execution. MedCore has now gone three years with zero breaches and passed its most recent HITRUST assessment on the first attempt.
“Their Sophos SOC caught two ransomware attempts in the first 90 days. We now consider AURA Technologies an extension of our security team.”
The AURA Technologies capabilities behind this outcome.
Ready to modernise your technology stack?
Book a consultation with an AURA Technologies team member. No sales pitch — just a clear plan for your infrastructure.

