| Identity and access | Entra ID or Google Workspace identity, multi-factor and conditional access, privileged access management, and a joiner-mover-leaver process wired into your HR source | Policy review, access recertification, break-glass account testing and exception reporting each quarter |
|---|
| Endpoint and email | EDR agent deployment, hardened baselines, patch rings, mail filtering and impersonation protection | Agent coverage checked against your actual asset list, patching on an agreed cadence, and detection tuning |
|---|
| Network and edge | Fortinet and Check Point firewalls, segmentation, remote access, SD-WAN, Cisco switching and wireless | Rule base review, firmware currency, certificate renewals, and change control that records why each rule exists |
|---|
| Detection and response | SIEM and XDR onboarding, log source integration, correlation rules and response playbooks | 24/7 monitoring, triage, use case development, and the 15-minute response commitment on priority alerts |
|---|
| Cloud and data platform | Microsoft 365, Azure and Google Cloud landing zones, tenant hardening and data loss prevention | Configuration drift detection, secure configuration reporting, and review of new tenant features before they are switched on |
|---|
| Backup and continuity | Immutable backup, replication, and a documented recovery time and recovery point per system | Restore tests on a schedule rather than on request, failover exercises, and retention review |
|---|
| Licensing and procurement | Hardware, licences and subscriptions at partner terms, or the same work inside an agreement you already hold | A renewal calendar, reconciliation of licences against actual use, and right-sizing at each renewal date |
|---|