U7 / 8 Projects
Security, backup and recovery
Server hardening, firewalls, backup and DR, ransomware recovery and incident forensics.
-
01
Server Hardening
Most breaches start through an open door: SSH with a weak password, RDP exposed to the internet, or a control panel nobody has updated in years. We assess your servers against CIS benchmarks, close those doors with minimal impact on running services, and document every change.
- Our server logs are full of failed SSH login attempts.
- Our Windows server has RDP open directly to the internet.
-
02
Firewall & Network Security
A firewall installed years ago with a pile of any-any rules looks like protection and does very little. We choose and install the right firewall or audit the one you have, document every rule, and segment the network so one infected machine can't reach everything else.
- We don't know which firewall rules are still needed.
- The firewall license has expired and security updates have stopped.
-
03
Backup & Disaster Recovery
A backup you have never restored from is an assumption. We design business backups so at least one copy stays out of an attacker's reach, then test the disaster recovery plan with a real restore, so you know how long it takes to get back to work.
- Our backups are stored on the same server they back up.
- We don't know how many days we'd be down if the main server died.
-
04
Ransomware Recovery
Files have strange extensions and every folder has a ransom note. Don't power systems off or delete anything; unplug infected machines from the network and call us. Our job is to contain the attack, work out how far it spread, and bring services back from clean backups.
- Files on our server have an unknown extension and won't open.
- A file called something like HOW_TO_DECRYPT appeared on the desktop.
-
05
Digital Forensics
Cleaning a hacked server fixes today's problem. Without knowing how the attacker got in, there's a good chance they come back. We preserve the evidence and analyse logs, disks and memory to establish the entry point, the timeline and what the attacker did.
- Our server was hacked, we cleaned it, and it got infected again.
- An admin account logged in at a time when nobody was working.
Choosing server and network security services
Server and network security services here split into two kinds: work that lowers the chance and cost of a breach before it happens, and work that gets you running again and explains what happened afterwards. The right choice depends on which of those situations you are in.
If nothing has happened yet, three services are preventive. Server Hardening closes the doors on the server itself, such as password-based SSH, RDP exposed to the internet or services that haven't been patched. Firewall & Network Security controls traffic entering and leaving the whole network, and suits offices running an old firewall full of any-any rules or with no dedicated firewall such as FortiGate or Sophos. Backup & Disaster Recovery keeps at least one copy of your data out of an attacker's reach and tests the recovery plan before the day you need it.
If an incident has already happened, Ransomware Recovery is for encrypted files and a ransom note on screen. The work moves through containment, assessment and restore from backup, and decryption is only considered when a known decryptor exists for that strain. Digital Forensics finds how and when attackers got in, which matters when you must report to management or an insurer, or want the entry point closed before systems go back online.
Security links closely to other categories. The Free Security Scan and Backup Health Check give a starting picture before any paid work. If a website has been hacked and it's urgent, Hacked Site Cleanup under Emergency is the more direct route. Firewall rules on routers overlap with MikroTik Setup and Business VPN & Branch Links, and ongoing upkeep of security settings can be written into an IT Support Contract.
Quote
Tell us what you need, we'll come back with a plan and a price
A few lines on where things stand and what you want is enough. An engineer calls you back, not a sales rep.
- 01We read your request and call if anything is unclear.
- 02If needed, we do a quick remote review or a site visit.
- 03You get a written proposal with scope, timeline and cost.