Infrastructure and endpoint protection
Most attacks start with an e-mail, a stolen password or an unpatched computer. Prevention means that the firewall, e-mail, workstations, access and data are protected so that an attacker does not get far even if one employee clicks the wrong link. We design, deploy and manage the protection as a service: with Sophos (Gold Partner) and Fortinet equipment, multi-factor authentication, central device management and the zero-trust principle. Everything we deploy can be connected to our SOC.
Layers of protection
How deployment works
- 01
Review and priorities
We inventory the existing protection and compare it with the most common attack vectors; we start where the risk is highest.
- 02
Plan and equipment
We propose measures, equipment and licences without duplicating what you already have; a fixed-price offer.
- 03
Phased deployment
First the measures with no impact on users (firewall, e-mail), then MFA and endpoints with employees informed in advance.
- 04
Management and monitoring
We take over updates, rules and reports; alerts from the equipment flow into our SOC.
Frequently asked questions
We already have antivirus. Is that not enough?
Antivirus stops known malware on one computer. It does not stop a stolen password, a fake e-mail that talks an employee into a payment, or an attacker already moving through the network. That is why protection needs several layers.
Will MFA make work harder for employees?
Modern MFA asks for a confirmation on the phone only when signing in from a new device or location; on a known office computer the user does not notice it. We accompany the roll-out with instructions and support and are available for all questions in the first week.
Which equipment do you use?
Sophos firewalls and endpoint protection, where we are a Gold Partner, and Fortinet; for e-mail and identities Microsoft 365 with additional protection layers. If you have other equipment we assess it and include it where it makes sense.
Can we manage the protection ourselves?
Yes. We deploy and document, your team manages. Most clients, however, leave the management to us, because it requires constant attention to alerts, updates and new threats, which is work for several people.
How long does deployment take?
A firewall and e-mail protection are deployed in one to two weeks, MFA and endpoint management for a company with a hundred users in four to six weeks, in phases and without downtime.
How do we know the protection works?
A monthly report shows blocked attacks, stopped e-mails and device status. Once a year we recommend a penetration test that tries the protection the way an attacker would.