A compromised laptop gets isolated, not ignored
If a device shows signs of compromise, we cut its network access remotely, any hour of the day. Confirmed threats are contained before they spread; anything uncertain gets a phone call first.
We layer our defences on purpose. Because someone always needs an exception, and if one control fails, the next one catches it before it becomes a disaster. A security operations centre watches 24x7, so if something starts while the office is empty, it is handled before you get in.
How you're protected
Every plan runs the controls that stop the most common attacks. Where a business needs more, Compliance and Complete add the controls that catch what slips past the basics.
On every plan
If a device shows signs of compromise, we cut its network access remotely, any hour of the day. Confirmed threats are contained before they spread; anything uncertain gets a phone call first.
Most break-ins start with a login, not a virus. We watch for odd sign-in locations, hijacked sessions and rogue app approvals, and lock the account down the moment one looks stolen.
Known bad domains, and ones too new to trust yet, get blocked before the connection opens. We also keep your email records locked down so nobody can send mail pretending to be you.
Servers and your full Microsoft 365 environment back up daily and get checked every business day. Once a year we run a full recovery and hand you the real time it took.
Every login sits in a vault we can audit, rotate and kill the day someone leaves. Dark-web monitoring flags anything already exposed.
We configure your Microsoft 365 environment to our own security baseline, not whatever the last admin left switched on. Secure Score tracks the result over time.
On Compliance and Complete
Only vetted programs execute on your machines; everything else is blocked by default. It's the single biggest reason ransomware can't get a foothold once it's switched on.
Firewall, server and workstation activity feeds into one platform, and analysts go looking for signs of trouble instead of waiting for an alarm to fire.
Short training lands every fortnight, paired with realistic phishing tests. Anyone who clicks gets a quick follow-up, not a lecture.
Cybersecurity awareness training
You can't buy your way out of that, but you can make the click less likely. Little and regular beats a seminar once a year, as long as it is tied to real tests.
Password manager
If a password sits outside the vault, we can't audit it, rotate it, or kill it the day someone leaves. When they go, what they know goes with them.
Obligation · What every client runs
You keep a documented baseline running: phish-resistant multi-factor authentication (MFA), application control, vulnerability management, awareness training, a password manager with single sign-on, HR-driven onboarding and offboarding, backups, and an incident response plan. Ours or an equivalent from another provider, either works.
Not every control fits how a business actually works, and we don't pretend otherwise. Where one doesn't, we sit down and name what you're going without. Then we agree what happens next: a mitigating control that covers the same risk, or a written acceptance of the gap and who carries it.
Where the standard slips without agreement, everything else we do works less well and our own exposure rises. You get written notice and 30 days to remedy it or agree a plan. We can't defend an environment that won't cover its own basics.
The full list sits in our Managed IT Complete Service Terms.
Common questions
The questions that come up on discovery calls, answered straight.
The qualifier
Seven questions, one moment of your time. We'd rather tell you now than three months in.