Skip to content
Security as the foundation

Security is not an add-on.
It is the foundation.

Cybersecurity for businesses in Berlin and beyond: we assess your security level, harden identities, endpoints and networks and keep operating the protection over time.

What we do for you

Layer by layer,
not product by product.

Entra ID MFA Microsoft Defender Arctic Wolf Hornetsecurity Intune SPF, DKIM, DMARC Firewall Backup
SEC-01

Identity and access

Entra ID, multi-factor authentication, Conditional Access and roles. Access is the first line of defence.

SEC-02

Microsoft 365 security

Defender for Office 365, Purview and secure tenant policies, aligned with each other.

SEC-03

Email security

Protection against phishing, spoofing and malware, including SPF, DKIM and DMARC. For email security, security awareness training and backup we use Hornetsecurity.

SEC-04

Endpoints

Device management with Intune, encryption, patch management and endpoint detection and response with Microsoft Defender for Business, complemented by managed detection and response from Arctic Wolf (details on the Endpoint Protection product page).

SEC-05

Networks and sites

Segmentation, firewalls, secure site connectivity and remote access, in the cloud as well as in your own data centre.

SEC-06

Backup and recovery

Regularly tested restores, for Microsoft 365 (with Hornetsecurity), servers and endpoints.

SEC-07

Security assessment

A structured inventory with prioritised measures and a clear implementation plan.

How we proceed

Assess first, then harden,
then operate.

We begin with an inventory of your current security situation. Scope and duration are agreed together after the assessment.

  1. Step 1

    Assessment

    Review systems, identities, endpoints, email, network and backup in a structured way.

  2. Step 2

    Prioritisation

    Sort findings by risk and effort, decide together what comes first.

  3. Step 3

    Immediate measures

    Implement measures with low effort and high risk reduction, such as MFA and a backup review.

  4. Step 4

    Hardening

    Implement policies, segmentation, endpoint protection and governance step by step.

  5. Ongoing

    Operations and review

    Monitoring, updates, restore tests and regular reassessment.

The structured entry point

The IT security infrastructure check:
a structured inventory of your IT security.

An IT security check in Berlin with a fixed frame: we review identities, endpoints, email, network and backup in a structured way. The result is a basis for decisions with prioritised measures.

A fixed procedure, a clear result, no obligation.

Request the security check

What is reviewed

Identity and access

Who can sign in and how, whether multi-factor authentication is active, which accounts have too many rights.

Microsoft 365 and email

Tenant policies, Defender configuration, protection against phishing and spoofing, SPF, DKIM and DMARC.

Endpoints

Patch status, encryption, malware protection, device management and the handling of private devices.

Network and sites

Firewalls, segmentation, remote access and the state of site connectivity.

Backup and recovery

What is backed up, how often, where it resides and when a restore was last tested.

How the check runs

  1. Step 1

    Quote and kickoff

    From your answers in the form we prepare a quote with a fixed scope. After the order we clarify access and contacts in a short call. The effort on your side is low.

  2. Step 2

    Data gathering

    We record configurations and states across the five review areas.

  3. Step 3

    Assessment

    Sort findings by risk and effort.

  4. Step 4

    Report and debrief

    You receive the report and we walk through it together, including a recommendation for the first steps.

The result, what you receive

  • A written report on the five review areas, prepared in an understandable form.
  • Every finding with risk, estimated effort and a recommendation on what to do first.
  • A list of immediate measures for the gaps with low effort and high risk reduction.
  • A joint closing meeting in which we walk through the report.
  • The report belongs to you. You can act on it with us, with your current service provider or internally.

Request the security check

A small number of details about your IT environment is enough. From these we prepare a quote with a fixed scope.

We will get back to you promptly, within our service hours Mon to Fri, 9 am to 5 pm.

Thank you, we have received your request. We will review your details and get back to you with a quote for your IT security infrastructure check.

Your request could not be processed. Please check your details and submit the form again.

Fields marked * are required

Your details are used exclusively to handle this request and are not passed on to third parties. Processing is based on your consent under Article 6(1)(a) GDPR and on pre-contractual measures under Article 6(1)(b) GDPR.

Good to know

Frequently asked questions about
IT security for businesses.

We are too small to be a target. Is that true?

No. Most attacks are automated and target every reachable vulnerability, regardless of the size or profile of the organisation. That is exactly why organisations without a dedicated security team are affected.

Is Microsoft 365 Business Premium enough as a security package?

It is a good foundation, because Defender, Intune and Conditional Access are included. It only becomes effective through configuration. In practice that is where things fail more often than at the licence.

What exactly is the IT security infrastructure check?

The check is our fixed entry point: a clearly defined procedure across five review areas with a written report and a closing meeting. A more extensive assessment can then go deeper into individual areas. We agree the scope and the quote beforehand. The form on this page serves that purpose.

Do you actively intervene in our systems during the check?

No. We read configurations and states and change nothing without your explicit approval. The check is an inventory, not an intervention.

Does DEVACON need administrator rights for this?

The data gathering requires read access, the scope of which we define together beforehand. Access is revoked again after completion.

What happens after the report?

You decide. You can implement the measures yourself, with your current service provider or with us. The report belongs to you.

Do you also take over ongoing security operations?

Yes, as part of a managed service contract. That includes monitoring, patches, backup checks and regular restore tests.

An inventory of your IT security.

The IT security infrastructure check gives you a solid basis for your decisions.

Request the security check