What we do
Security that does
the real work.
We deliberately keep the service list short. Everything below is something we deliver repeatably, with artefacts your IT team, MSP, auditor, or insurer can actually use.
01
Microsoft 365 & Azure Hardening
Conditional Access, secure baselines, identity hygiene, mail hygiene, logging, and privileged access reviews — the controls that actually stop business email compromise.
- Tenant baseline review and remediation plan
- Conditional Access design and rollout
- Defender / Exchange Online Protection uplift
Explore service ↗
02
Firewall Review & Uplift
Fortigate, pfSense, Palo Alto, or vendor-agnostic review. We rationalise rulesets that have grown for a decade and document what's left.
- Ruleset simplification and documentation
- VPN and remote access patterns
- Segmentation across sites and environments
Explore service ↗
03
Windows / GPO Baselines
Essential Eight-aligned hardening: OS baselines, application control options, USB and device lockdown, secure config.
Explore service ↗
04
Vulnerability Assessments
Targeted scanning, triage, and remediation plans your IT team or MSP can actually execute — ranked by real exploitability.
Explore service ↗
05
Incident Response
Compromise assessment, containment, and cleanup across accounts, endpoints, and email. Focused on rapid, practical recovery.
Explore service ↗
06
GRC & Policy
Policy development aligned to Essential Eight, ISO 27001, and NIST CSF — including board-level summaries that a non-technical director can act on.
Explore service ↗
07
Business Continuity & IR Planning
Runbooks, escalation paths, backup validation, and tabletop exercises so the plan works on the day it's needed rather than the day it was written.
Explore service ↗