Need IT support?

Cybersecurity

Security that holds up on an ordinary Tuesday

Not a wall of dashboards. Controls that are configured properly, monitored by someone, and reviewed when your environment changes.

  • Managed security operations
  • Detection and response
  • Assessments and testing
  • POPIA-aligned governance

How it fits together

Most breaches exploit the ordinary

Unpatched systems. Accounts without multi-factor authentication. A firewall rule that was added for a project three years ago and never removed. Backups that nobody has restored from. These are the conditions that actually let incidents through, and they are all fixable.

The diagram is illustrative. It shows the shape of the capability rather than any specific customer environment.

Traffic inspection and secure delivery A packet arrives from the internet and is inspected at the firewall. A scanning band sweeps the firewall, approved traffic continues along a path that lights up to the segmented network and on to endpoints, servers and cloud applications, while blocked traffic is diverted and fades away. Internet FirewallINSPECT · POLICY Secure networkSEGMENTED Endpoints Servers Cloud apps BLOCKED INSPECTED · APPROVED · DELIVERED

Overview

In practice

Our approach is to establish a defensible baseline first — identity, endpoint, email, patching, backup — then layer on detection, monitoring and response. Advanced tooling on a weak foundation produces alerts nobody can act on.

We are direct about what we operate ourselves and what we deliver through established security platforms and specialist partners. Define IT provides managed security operations; where a capability requires a facility or accreditation we do not hold, we say so and bring in a partner who does.

What changes

Outcomes we are measured on

The point of the work, stated as results rather than product names.

01

Known exposure, not assumed exposure

Vulnerability scanning and posture assessments that produce a prioritised, owned remediation list.

02

Faster containment

Detection and response processes with agreed escalation paths, so an incident does not start with a search for phone numbers.

03

Fewer successful phishing attempts

Email security controls combined with awareness training and simulation, measured over time.

04

Evidence for auditors and boards

Documented controls, policies and reporting that support POPIA obligations and internal governance requirements.

Capabilities

What sits inside this practice

Capability areas we design, implement and support. Scope for any engagement is agreed and documented in writing.

Managed security operations

Ongoing monitoring, detection and response.

  • Managed Cybersecurity
  • Security Operations
  • Security Monitoring
  • SIEM
  • Threat Detection
  • Threat Hunting
  • Incident Response
  • Managed Detection Support

Endpoint and email

Where most incidents begin.

  • Endpoint Detection & Response
  • Endpoint Protection
  • Device Hardening
  • Email Security
  • Anti-Phishing Controls
  • Web Security
  • Data Loss Prevention

Network and access

Controlling what can reach what.

  • Firewall Management
  • Managed Firewall
  • Network Security
  • Network Segmentation
  • Zero Trust
  • Secure Remote Access
  • VPN Solutions
  • Conditional Access
  • Multi-Factor Authentication
  • Privileged Access
  • Identity Security

Assessment and governance

Understanding and evidencing your position.

  • Security Assessments
  • Security Posture Assessments
  • Vulnerability Management
  • Penetration Testing
  • Cybersecurity Governance
  • Risk Management
  • Compliance Support
  • POPIA Security
  • Security Awareness
  • Phishing Simulation
  • Policy Development

How we deliver

A sequence, because order matters here

Each stage produces something you can review before the next one starts.

Baseline

A posture assessment across identity, endpoint, network, email, backup and process. Findings are ranked by exploitability and business impact.

Remediate

Fix the exposures that matter first. Quick wins are separated from projects so progress is visible within weeks.

Monitor

Detection tooling deployed and tuned, with defined severities, escalation paths and response responsibilities.

Rehearse

Tabletop exercises, restore tests and phishing simulations, because an untested response plan is a document, not a capability.

Questions

The things people ask before signing anything

We provide managed security operations. Where an engagement requires 24x7 SOC facilities, specialised forensic capability or accreditations we do not hold ourselves, we deliver those elements with established security partners and are explicit about who is doing what.

Multi-factor authentication on all accounts, current patching, tested backups, and email filtering. That combination stops a large share of real-world attacks and costs far less than the tooling usually pitched first.

We help with the technical and operational controls that support POPIA compliance — access control, encryption, logging, retention, incident response and supplier management. POPIA compliance also has legal and process dimensions that sit with your compliance or legal advisors.

Yes, scoped as a defined engagement with written rules of engagement and a remediation-focused report. Testing is arranged with qualified specialists where the scope requires specific accreditation.

Related

Usually discussed alongside this

Identity & Access Management

When applications, data and users are spread across cloud and office, the only consistent control point left is who someone is and what they are allowed to reach.

Explore

Networking

Designed around how your sites actually work, monitored so problems are found before they are reported, and documented so the next change is not archaeology.

Explore

Backup & Disaster Recovery

Everything else is a scheduled job with a green tick.

Explore
Technologies supporting this capability
Cybersecurity & Secure Networking
Email Security
Cloud & Productivity

Next step

Let's define what your technology should be doing.

Tell us what is not working, what is coming up, or what you are being asked to deliver. We will come back with a considered view — not a generic proposal.