IT security

Most companies only discover that their IT security is not in order the moment something goes wrong. Not because nothing was arranged, but because no one was watching what was happening in the environment.
Basics in order, demonstrably
MFA, updates, password management, and a properly configured Microsoft 365 environment.
24/7 visibility into your environment
Workstations, servers, accounts, and cloud monitored for anomalous behavior.
Response within 10 minutes
In the event of a confirmed threat, we intervene immediately.

IT security for SMEs

You rarely buy IT security as a single service. There is a virus scanner running through your IT provider, MFA is enabled on some accounts, and there is a firewall somewhere. Individually, that is all correct.

What is missing is the overview: which of those measures is still doing what it is supposed to do today, and who is looking at the alerts they generate? We fill that gap, without you having to discard any of your current setup.
View cybersecurity for SMEs

Management is not security

A management contract covers availability: does it work, and if it doesn't, how quickly will it be back up? Security addresses a different question: is something happening or present here that shouldn't be? That is what our vulnerability scanner checks for your organization.

Standalone tools with no one watching

Most companies have purchased more security than they realize. Microsoft 365 Business Premium alone includes a substantial package. It is often only half-configured, and if alerts do come through, no one responds to them. With us, someone is always watching.

Attackers log in, they don't break in

With valid login credentials, no alarm goes off. Nothing is forced, so there is nothing to block. You only notice it if someone is watching for unusual behavior: a login from another country, or a mailbox that suddenly starts forwarding everything. With our identity security, we close this gap.

What does IT security cover?

IT security is a collective term for four areas. They support each other: what slips through one should be caught by the next. If one is missing, that is usually exactly the route an attacker will take. Below is an overview of what each area entails and what we do within them.

Network security

Securing your business network starts with knowing what is visible from the outside. Firewalls and network segmentation ensure that if someone gets in at one point, they cannot immediately access everything else. We map out what is externally accessible, what shouldn't be there, and which connections between your systems are open without a valid reason.

Endpoint security

Laptops, desktops, and servers: this is where people work, so this is where attacks enter. In addition to antivirus, we run detection that monitors behavior, such as a process that suddenly starts encrypting files. In the event of a confirmed threat, we isolate the device from the network, even outside office hours.

Cloud security

Microsoft 365, Azure, and your other cloud services. Most incidents here aren't hacks but misconfigurations: a setting left open or a guest account that has been active for two years. We monitor your environment for anomalies and suspicious login attempts.

Access management

Who has access to what, and how do they prove their identity? MFA on all accounts, a password manager instead of a spreadsheet, and administrative rights only where necessary. This is the most cost-effective part of IT security, yet it stops the most attacks.

IT security, ICT security, and IT security: the same thing by another name

If you search for any of these terms, you are looking for the same thing: measures that protect your systems, data, and accounts from misuse. There is no substantive difference between them, so don't let the terminology dictate your choice.
IT security
ICT security
IT security
Cybersecurity
Information security

Where they actually differ

Information security is broader than the other three. It also covers paper records, processes, and agreements with suppliers. IT security is the technical component of that. Anyone starting an ISO 27001 certification process notices that difference immediately, as technology is only one of the chapters involved.

Why that matters to you

When you're dealing with a tender, an audit, or an insurance application, you're asked what you have in place, not what you call it. Make sure you can demonstrate what is being monitored, who responds, and within what timeframe. If we handle your security monitoring, we have those answers ready for you.

Our approach

Three steps, in this order. We don't start with a proposal, but with an assessment, because you only know what needs to be addressed once you know what is currently exposed.

01

Analysis of your current situation

We scan your workstations, servers, and Microsoft 365 environment for vulnerabilities and misconfigurations, and check what is accessible from the outside. You will receive our findings, even if you choose not to proceed with us. In practice, the results are almost always the same: a handful of accounts without MFA, updates that were scheduled but never rolled out, and a Microsoft 365 setting left open by default.

02

Start securing your digital environment

First, we implement the measures that stop the majority of standard attacks: MFA on all accounts, a functional update process, secure password management, and closing off any open vulnerabilities. We do this in consultation with you or your IT provider, ensuring we secure what is necessary without disrupting business processes. Afterward, we connect your workstations, servers, and Microsoft 365 to our monitoring system.

03

Periodic monitoring to ensure everything is still secure

Prevention doesn't stop everything, so you need to see what gets through. MDR stands for Managed Detection and Response: we monitor your environment for signals that fall outside normal behavior and intervene when necessary. In the event of a confirmed threat, we isolate the affected device or account—within ten minutes for MDR Premium—and you receive a monthly report detailing what was detected and what actions were taken.

Collaborating with your existing IT provider

The most common question we get: do I have to switch IT providers? No. We are security specialists, not an IT provider. We work alongside your administrator, not in their place.

Who does what?

Supplementing instead of replacing
Your IT provider
Peakproteqt
Managing workstations
Monitoring what happens on those workstations
Installing and updating software
Identifying vulnerabilities
Managing accounts
Monitoring accounts and risky behavior
Resolving outages
Intervening in a real threat

How we complement each other

We integrate with your existing Microsoft environment. No migration, no new supplier contracts for your management.
Findings from our monitoring are sent to your IT provider as advice: what, where, and why we need to secure outstanding items.
In the event of an incident, we isolate first and consult later. Your administrator gets the same view as you do, at the same time.
We discuss in advance who does what and when in the event of a security incident. This prevents any debate about who should have seen or done what.

Common risks

Almost every scan we perform reveals the same three issues. Not exotic attack techniques, but neglected maintenance that points the way for an attacker. All three can be resolved without needing to replace anything.

Ransomware

You are dealing with ransomware when your files are suddenly encrypted and hackers demand a ransom for them. You can no longer use your system or files, so what now? It is one of the biggest risks at the moment, and far from every organization is well-prepared for it.

Data breaches

It happens more and more often, and all your data ends up on the street. This, combined with using the same password for multiple services, creates a major risk. The hacker doesn't need to crack anything; they simply log in. Without MFA and dark web monitoring, they can be in your account unnoticed in no time.

Phishing

The #1 attack method for gaining access to companies. One of your employees is distracted for a moment before their break and enters their details on a malicious website.
Suddenly, they have access to your account and your systems. Without security monitoring, you won't discover this until it's too late.

How much does IT security cost?

That depends on the number of workstations, servers, and users you want us to monitor. We work with a fixed monthly fee, so you know exactly where you stand. For IT security consulting, you pay project and advisory fees.

Compare that to the cost of downtime. In the event of a ransomware incident, recovery can take days or even weeks, with your business largely at a standstill.

What you definitely don't have to do is search for, hire, and train security specialists. We take care of that for you.
I would like IT security advice

MDR and IT security for SMEs

from €6.58

per workstation per month · fixed fee, no additional charges
No setup costs
Fixed monthly fee
Workstation security
Vulnerability management for Microsoft 365 and workstations
Incident response and monthly reporting

Reviews

We received excellent help from Peakproteqt. After a thorough analysis of our existing IT situation and our requirements, we received a great proposal tailored to our organization. Everything has now been implemented, and our digital workspace is working to our complete satisfaction. Peakproteqt takes the burden off our shoulders completely when it comes to IT, cloud management, cybersecurity, and network management. This gives us peace of mind and works extremely well for us.
Thanks for delivering all the IT services and securing my workstation (the password manager is ideal!). In my opinion, Peakproteqt is very knowledgeable, patient, and they can explain everything they do in plain English, which builds trust! I'm happy that everything is taken care of!

Request a free cybersecurity scan

The free scan maps out your Microsoft 365 environment and monitoring, showing exactly where your business stands. Enter your email address below to get a clear picture of all vulnerabilities and pitfalls in your detection and response.

Thank you! We will contact you within one business day to schedule the scan.
Something went wrong while sending. Feel free to email us directly.
There are no strings attached and the report is completely free.
Microsoft 365
High

Multi-Factor Authentication (MFA) not enforced for all accounts

Example finding
Resolution time: 1 day
Endpoint & monitoring
Medium

Email security not configured correctly

Example finding
Resolution time: 5 days

Frequently asked questions about IT security (FAQ)

What does IT security cover?

+

What is the difference between IT security and cybersecurity?

+

How do you secure our business network?

+

Does this work alongside our own IT department?

+

How much does IT security cost?

+