Service · IT security

Security solution roll-out

Plenty of companies feel they have paid for security already: a Microsoft 365 plan with a long name, an antivirus licence renewed every year, perhaps a firewall with a web filtering subscription. Look more closely and half of it is often not configured, running in audit-only mode, or applied to a test group someone created three years ago. Meanwhile vendors keep arriving with new products that promise to solve everything. We bring order to this. First we establish which risks really matter for your business and what your existing licences can already do. Only then do we decide whether anything new is needed. Every tool is trialled with a small group before it applies to everyone, and we do not stop until it genuinely protects you rather than merely appearing in the licensing portal.

Licences first
use what is already paid for
Pilot group
of five to ten people before full roll-out
Blocking mode
as the goal, not just monitoring
Vendor-neutral
chosen to fit your requirements

Everything this covers

We introduce what suits your risks and leave out what only sounds good. Typical building blocks for SMEs with 10 to 200 workstations:

Settle the details with an engineer

Licence review

Which security features come with Microsoft 365 Business Premium, E3 or E5, with Google Workspace or with your firewall subscription, and which of them are switched on? Often an extra product can be dropped because the function is already included.

Multi-factor and conditional access

Multi-factor sign-in for everyone, plus Entra ID rules that restrict sign-ins from unfamiliar countries or unmanaged devices.

Email protection

Filtering against phishing and spoofed senders, SPF, DKIM and DMARC for your domain, safe attachments and links. Fake invoices with a changed IBAN hit Austrian SMEs on a regular basis.

Endpoint protection

Defender for Business, Defender for Endpoint or another EDR product, managed through Intune or the vendor console, with the same policies on every device.

Password management

A team password manager with shared vaults per department, so credentials stop living in spreadsheets or browsers.

Security awareness

Short phishing simulations and learning modules based on the messages your sector really receives, such as fake parcel notices from the Post or FinanzOnline emails.

Our working method

Every roll-out follows the same pattern, so there are no surprises on Monday morning.

01

Risk and inventory

Which attacks are likely in your case, which tools exist and which licences are paid for. The output is a prioritised list with effort and cost.

02

Selection

Where something is missing, we compare two or three products against your requirements and recommend one with reasons. Your requirements decide, not any particular vendor.

03

Pilot

Set-up for a small group, first in observation mode and then enforcing. We collect false positives and adjust exclusions before anyone else is affected.

04

Roll-out and handover

Deployment in waves via remote access, a check that it works and a handover with short documentation: what is configured, why, and who responds to alerts.

A security product left in observation mode protects nobody. It produces reports nobody reads and a sense of being covered. The hard part of any roll-out is the move from “report” to “block”, because that is where exceptions, legacy applications and habits come to light. We take that step with you all the way.

Frequently asked questions

Usually not. Business Premium includes Defender for Business with EDR features, Intune for device management and conditional access. Another product only makes sense if you have requirements Defender cannot meet, such as certain server platforms. We check before you buy a second licence.

One or two days technically, around two weeks organisationally. Most of the time goes into preparation: sorting out work phones, finding exceptions for scanners and service accounts, sending a short guide. Those who can register on their own do so using the guide; we help the rest over video.

We do not supply or install equipment. If a new firewall makes sense, we recommend models, you buy through your reseller, someone on site plugs it in, and we configure it remotely afterwards.

That is exactly why there is a pilot. If a problem still slips through, write to helpme@apply.at or use the agreed channel. We add a targeted, documented exception instead of switching off the entire rule.

Security that works, not just a line on the invoice

List the tools and licences you already have. We will tell you what is lying unused and where we would start.

Availability
Monday to Friday, 8:00-17:00 Austrian time (CET/CEST), reply within one working day
Meetings
By video on Microsoft Teams or Google Meet

We only use cookies that are technically required: to run the website and to remember the location you picked. There are no advertising or tracking cookies. Details are in the privacy notice.