Inventory
Which products run on which devices, which devices have no protection, which licences exist and when they expire.
The right product is often licensed already, for example Defender for Business in Microsoft 365 Business Premium. We also work with other established vendors.
Which products run on which devices, which devices have no protection, which licences exist and when they expire.
Old products removed and a single solution deployed on all workstations and servers, remotely and without reboots during working hours.
Tamper protection, attack surface reduction rules such as blocking macros from the internet, controlled folder access against ransomware, and exclusions only with a documented reason.
Carefully chosen exclusions for databases and line-of-business software such as BMD, RZL or practice management systems, so protection neither slows them down nor breaks features.
Alerts go to a monitored mailbox or directly into our ticket system. Automatic responses cover clear-cut cases, for instance isolating a device from the network.
A monthly overview of protection status, devices with outdated definitions, detected threats and open alerts.
Switching to a new solution is quick. What matters more is that someone keeps watching afterwards.
We record every device and product and check whether your existing licences are sufficient.
Deployment on a few devices per department, checks for clashes with business applications, fine-tuning of exclusions.
Removing legacy products and rolling out to all devices in waves, then confirming every device shows up in the console.
Deciding who reviews alerts and how they escalate, in line with your service plan. Handover with short documentation.
Most ransomware attacks are spotted by the security software; the trouble is nobody reads the warning. Attackers often spend hours trying to disable protection, and that very effort triggers alerts. Whoever handles those alerts promptly stops the attack before any data is encrypted. That is why every EDR deployment needs a clear response playbook.
Built-in Microsoft Defender Antivirus is decent baseline protection. What it lacks is central management, EDR with behavioural analysis, remote isolation and a view across every device. Those come with Defender for Business, which is part of Business Premium or can be licensed on its own.
Under our service plans we handle alerts Monday to Friday, 8:00-17:00 Austrian time. Premium clients have round-the-clock standby, with the contact route set out in the contract. For clear-cut cases we configure automatic isolation that also works at night.
Yes, if it offers EDR, is centrally managed and covers all your platforms. In that case we tidy it up rather than replace it. We do not run two products side by side, because they interfere with each other.
The device loses all network connectivity except to the management console. The user cannot work, but the attack cannot spread either. We investigate the device remotely and then release it or rebuild it.
Let us know your current antivirus and device count. We will check whether your licences already cover what you need and what can be consolidated.
Your enquiry has arrived
Our reply reaches you within one working day. Outages that leave your staff unable to work are dealt with first.
We could not find that town. Try another spelling, or choose whichever provincial capital lies closest; as everything is handled remotely, you get the same service in all nine Austrian states.