IT security consulting
For organizations deciding where to focus security effort. Review vulnerabilities and business priorities with a consultant, then discuss a security strategy suited to your environment.
Explore the support your organization needs, from an initial security review to ongoing monitoring and employee awareness.
For organizations deciding where to focus security effort. Review vulnerabilities and business priorities with a consultant, then discuss a security strategy suited to your environment.
For teams managing connected systems and infrastructure. Identify network vulnerabilities and discuss measures to detect threats and limit unauthorized access.
For organizations strengthening their defenses. Assess current protection and discuss security protocols that address the risks facing your operations.
For businesses handling sensitive information. Review how data is protected and discuss safeguards that support confidentiality and your regulatory requirements.
For teams seeking a clearer picture of their security posture. Assess threats, prioritize vulnerabilities, and develop a response plan to guide action.
For organizations that need ongoing oversight. Discuss monitoring, threat detection, and support requirements for the systems your team relies on.
For teams building security awareness. Discuss training that helps employees recognize cyber risks and understand their role in protecting the organization.
Choose a starting point for your security needs. Select a plan to explore its included services. Tap an information icon for what each service does, why it matters, and how it fits your business.
5–15 users / small business
Security foundations for small organizations.
View included servicesHide included servicesProtects business laptops, desktops, and supported servers against malicious activity.
Devices are common entry points into business systems.
Inventory supported devices, agree protection policies, and deploy or configure endpoint protection with your IT team.
Helps identify malicious messages, suspicious links, and harmful attachments.
Email attacks can expose accounts, data, and business payments.
Review your email environment and configure supported filtering and protection policies around employee workflows.
Examines security settings across the systems included in your engagement.
Default or inconsistent settings can leave avoidable gaps.
Compare existing settings with agreed security baselines and provide prioritized changes for your IT team.
Watches agreed sources for known weaknesses affecting covered systems.
Newly disclosed weaknesses can affect software already in use.
Identify covered assets, review relevant findings, and flag issues for remediation planning.
Reviews security events from connected systems for signs of suspicious activity.
Unusual activity is easier to investigate when events are visible.
Connect agreed event sources, tune monitoring rules, and establish a process for reviewing and escalating findings.
Summarizes the month’s monitoring findings and security activities.
A regular record helps you understand progress and outstanding concerns.
Compile findings for covered systems, highlight priorities, and share the report with designated business contacts.
Provides help with covered security questions during agreed business hours.
Employees and IT teams need a clear route to security assistance.
Confirm support hours, contacts, and covered requests during onboarding and establish a request process.
Gives employees practical guidance on recognizing and reporting common threats.
Everyday decisions influence the security of business information.
Tailor guidance to employee roles, common workflows, and your internal reporting procedures.
Reviews security activity, open issues, and changing needs every quarter.
Business changes can make earlier security decisions outdated.
Meet with designated stakeholders to review findings and agree the next quarter’s priorities.
10–50 users
Managed cybersecurity for growing organizations.
View included servicesHide included servicesIncludes the services listed in the Essential plan.
A consistent foundation supports more advanced security operations.
Carry the Essential controls, guidance, reporting, and reviews into the Professional engagement’s agreed scope.
Monitors covered security signals around the clock.
Suspicious activity can occur outside normal business hours.
Connect agreed systems and define monitoring coverage, alert routing, and escalation procedures; response commitments are agreed separately.
Uses correlated signals and detection rules to identify more complex suspicious activity.
Some attacks may not be apparent from a single alert.
Identify available telemetry, configure supported detections, and tune them to your environment and normal business activity.
Endpoint Detection and Response investigates device activity; Extended Detection and Response combines signals across supported security tools.
Connecting evidence helps teams understand an attack’s scope.
Assess compatible tools, onboard covered devices and integrations, and agree investigation and response permissions.
Reviews security signals from the Microsoft 365 services included in scope.
Compromised cloud accounts can expose email and shared business data.
Connect supported tenant logs and alerts using approved access, then configure monitoring for agreed account and service risks.
Organizes the identification, prioritization, and tracking of security weaknesses.
A prioritized process helps teams address the most consequential issues first.
Maintain an agreed asset scope, rank findings, assign remediation owners, and track progress with your IT team.
Teaches employees to recognize deceptive messages and practice safer security habits.
Training helps staff respond thoughtfully to realistic threats.
Plan role-appropriate learning and, where agreed, phishing exercises aligned with your policies and reporting channels.
Investigates suspected malicious software and supports its removal from covered systems.
Malware can disrupt operations and compromise information.
Collect relevant evidence, agree containment steps, and coordinate cleanup and validation with authorized system owners.
Provides a prioritized phone channel for covered security support requests.
Direct contact helps communicate urgent concerns clearly.
Designate authorized callers, establish contact procedures, and agree priority handling and availability during onboarding.
Translates monthly security findings into business-level priorities.
Leaders need understandable information to guide decisions.
Summarize significant findings, trends, and recommended actions for your designated leadership audience.
Evaluates the covered security environment and controls each quarter.
Periodic assessment helps uncover gaps as systems and risks change.
Agree assessment boundaries, review evidence and configurations, and present prioritized recommendations.
Documents how your organization will coordinate a security incident.
Clear roles and procedures reduce confusion under pressure.
Work with business and IT stakeholders to define contacts, decision authority, communication steps, and response procedures.
25–100+ users / organizations with higher security requirements
Advanced security for organizations with greater risk and compliance requirements.
View included servicesHide included servicesIncludes the services listed in the Professional plan, including its Essential foundation.
Advanced services work best with established monitoring and operational processes.
Extend the Professional service scope with the Enterprise capabilities selected for your environment.
Provides a designated point of coordination for the security engagement.
Consistent ownership helps keep business priorities and security work aligned.
Establish stakeholder contacts, review cadence, and a process for coordinating service needs and follow-up actions.
Collects and correlates agreed security logs using a Security Information and Event Management approach.
Related events across systems can reveal risks that isolated logs miss.
Select log sources, agree retention and access requirements, and configure supported collection, detection, and review workflows.
Proactively searches covered security data for signs of threats that may evade routine alerts.
Some suspicious behavior warrants investigation before an alert is triggered.
Define hunting objectives, examine available telemetry, and document findings and recommended follow-up.
Routes relevant alerts as connected security systems detect events.
Timely notification supports faster assessment of potential issues.
Configure supported alert integrations, severity thresholds, and designated recipients; delivery depends on source systems and connectivity.
Checks authorized assets for detectable known security weaknesses.
Scanning provides evidence of exposures that need attention.
Agree asset boundaries and safe scanning windows, run supported scans, and review results with your technical team.
Helps maintain agreed security settings as systems evolve.
Configuration drift can reopen previously addressed weaknesses.
Define baselines, review proposed changes, and coordinate approved adjustments through your change-management process.
Supports your team in assessing and responding to a security incident.
Coordinated action helps limit disruption and guide recovery decisions.
Work within agreed authority to assess evidence and assist with containment, remediation, and recovery planning.
Examines the people, processes, and technology included in a broader security review.
A wider view helps reveal connected risks across the organization.
Define assessment objectives, interview stakeholders, review controls and evidence, and deliver a prioritized improvement plan.
Helps organize security controls and evidence around applicable requirements.
Documented controls make it easier to identify gaps and demonstrate progress.
Agree the relevant framework or requirements, map existing controls, and help track evidence and remediation; certification is not guaranteed.
Presents security posture, significant findings, and priorities for leadership.
Business leaders need context for risk and investment decisions.
Agree reporting audiences and cadence, then translate technical findings into actionable business summaries.
Revisits key security risks and treatment priorities each quarter.
Risk priorities change as your business, systems, and dependencies evolve.
Review significant changes with stakeholders, update agreed risk records, and assign follow-up owners.
Reviews security risks associated with selected vendors and external dependencies.
Third-party access and services can affect your own security posture.
Identify important vendors, review available security evidence and access arrangements, and recommend proportionate follow-up.
Examines the clarity and suitability of your written security policies.
Policies guide consistent decisions and employee responsibilities.
Review agreed policies with business owners and recommend updates that fit your systems, roles, and operating practices.
Routes significant security concerns through an agreed higher-priority escalation path.
Clear escalation helps urgent issues reach the appropriate decision-makers.
Define severity criteria, responsible contacts, and escalation steps; confirm service commitments in the engagement scope.
*Customizable based on number of users, endpoints, infrastructure, compliance requirements and service scope.
Implementation approaches are tailored during onboarding. Covered systems, tools, licensing, support hours, response commitments, and authorized actions are defined in your agreed service scope.
Codes listed on the current company website. Confirm applicable codes and registration details directly with the team.
| NAICS code | Description |
|---|---|
| 541511 | Custom Computer Programming Services |
| 541512 | Computer Systems Design Services |
| 541513 | Computer Facilities Management Services |
| 541519 | Other Computer Related Services |
| 541611 | Administrative Management and General Management Consulting Services |
| 541613 | Marketing Consulting Services |
| 541614 | Process, Physical Distribution, and Logistics Consulting Services |
| 541618 | Other Management Consulting Services |
| 541690 | Other Scientific and Technical Consulting Services |
| 541820 | Public Relations Agencies |
| 541910 | Marketing Research and Public Opinion Polling |
| 561110 | Office Administrative Services |
| 561210 | Facilities Support Services |
| 561320 | Temporary Help Services |
| 561410 | Document Preparation Services |
| 561499 | All Other Business Support Services |
| 561990 | All Other Support Services |
| 611420 | Computer Training |
| 611430 | Professional and Management Development Training |