Managed IT

Cybersecurity that starts with knowing what you have

Small businesses don't usually get breached by sophisticated attacks. They get breached through a reused password, an unpatched machine, or a mailbox with no MFA on it. We fix those first.

5.0 on Google · scoped for your site across Durham Region

At a glance

  • Endpoint detection & response
  • Email security and MFA
  • Backups that are actually test-restored
  • 24/7 monitoring

The unglamorous controls do most of the work

There's a lot of expensive security tooling sold to businesses that still have shared admin passwords and no multi-factor authentication on email. The controls that prevent the overwhelming majority of real incidents are cheap and boring: MFA everywhere, patching on a schedule, backups that have been test-restored, and least-privilege access.

We do those first, then layer detection on top. Doing it the other way round buys you alerts about an environment you haven't secured.

Backups only count if you've restored one

An untested backup is a belief, not a control. We verify restores rather than checking that a job reported success: those are very different things, and the difference only becomes apparent on the worst day you'll have.

What we do after an incident

If something does happen, the questions are: what got in, what did it touch, what do we restore, and what do we have to tell people. Answering those requires logs and documentation that exist before the incident, not after.

Who runs the monitoring

Security operations (the SOC, the alerting and the round-the-clock watch) runs through a specialist managed-services partner. Detection and response is a staffed, continuous function; anybody selling it as a side capability is selling you a dashboard.

Redsilicon owns the parts that sit in your building and the relationship over the top: the network the alerts come from, the access control and cameras, the account manager who reads the reports with you and decides what actually needs doing.

Most providers have this the other way round: a real helpdesk, and a subcontractor you have never met arriving at your door. We would rather the person who knows your building be the constant. Here is exactly who performs what.

What you get

Included as standard unless it says otherwise. Add-ons are priced separately and named as such.

  • Endpoint protection (EDR)Detection and response on every machine, monitored.
  • Email securityDMARC, SPF and DKIM configured; phishing filtering in place.
  • Multi-factor authenticationEnforced on email, VPN and admin access.
  • Patch managementOperating systems and applications on a maintained schedule.
  • Backup & test restoresBackups monitored and periodically restored to prove they work.
  • Access reviewLeast-privilege access with leavers actually removed.

The process, start to finish

Every job follows the same shape, so you always know where you are in it.

  1. Security audit

    We inventory devices, accounts, access and existing controls.

  2. Quick wins

    MFA, patching gaps and obvious exposures closed first.

  3. Harden

    Endpoint protection, email authentication and filtering deployed.

  4. Backup verification

    Backups configured, monitored and test-restored.

  5. Monitor

    24/7 monitoring with alerting and response procedures.

  6. Review

    Periodic re-assessment as the environment and threats change.

Want this scoped for your site?

Tell us the building and what you're trying to achieve. We'll tell you what it takes, and whether you actually need it.

Before you call

We're small: are we really a target?

Almost all attacks are opportunistic and automated. They scan for exposed services and reused credentials, not for company size. Being small makes you less interesting, not less reachable.

What's the single highest-value thing to do?

Multi-factor authentication on email. Mailbox compromise is the most common entry point we see, and MFA stops most of it for essentially no cost.

Do you help with compliance requirements?

We help with the technical controls and the evidence: access reviews, logs, backup verification, documented configurations. We're not auditors and won't pretend to be.

How do we know our backups work?

Because we restore from them. A backup job reporting success is not proof; a completed test restore is. We do the latter on a schedule.