Most providers protect the device. That is one layer of six.
Cybersecurity at LANTEK is guided by an in-house CISSP-certified security professional and supported by certified specialists across security operations, endpoint protection, threat hunting and security assessment. Our approach combines governance, risk management, compliance and technical controls into a single cybersecurity programme designed to protect the modern business.
In-house CISSP-certified leadership, supported by security-analysis, threat-hunting and penetration-testing credentials.
24/7 security-operations capability delivered through LANTEK, with specialist cybersecurity-partner support where required.
Security decisions that connect governance and technical controls to real business risk.
What is endpoint detection and response, in plain language?
Endpoint detection and response is protection on a laptop, desktop or server that recognises an attack by how it behaves rather than by matching it against a list of known viruses. Traditional antivirus asks whether it has seen this exact file before. Detection and response asks what the file is doing, which is why it catches attacks nobody has seen previously, including most ransomware.
The practical difference is visible in the ransomware story: an up to date antivirus raised no objection because the file was new, while behaviour based detection stopped it at the third encrypted file. Read that walkthrough.
What is dark web monitoring and what does it find?
Dark web monitoring continuously watches the marketplaces and dumps where stolen and leaked data is traded, and alerts you when your company domain, staff email addresses, passwords or customer records appear there. Most of what it finds did not leak from your systems. It leaked from another service your staff used a work email address to sign up to, and it matters because people reuse passwords.
Dark web monitoring is included in all three service plans, and the free health check starts with a one off scan so you can see what is already out there before deciding anything.
What is simulated phishing, and does it upset staff?
Simulated phishing sends your own team a harmless test email designed to look like a real scam, then measures who clicked. Done properly it is not a trap and it is not used to embarrass anybody. Training comes first, the results are reported as a team percentage rather than a list of names, and the improvement between rounds is the number that matters.
Run as a blame exercise it damages trust and people stop reporting genuine suspicious email, which makes the business less safe rather than more. LANTEK runs training first and reports at team level for exactly that reason.
Who leads security at LANTEK?
Security at LANTEK is led in house by a CISSP certified security specialist. CISSP is a widely recognised independent certification requiring documented professional experience and a passed examination, and it has to be maintained. Testing and incident response are handled by that in house team rather than subcontracted to a third party.
Is multi-factor authentication enough on its own?
No. Multi-factor authentication is one of the highest value controls available and every business should have it enforced, but it protects the sign in and not what happens afterwards. An attacker who steals a live session token is already past it, because the system considers that session to have proved itself.
That is exactly the attack in the session hijack walkthrough, and the reason detection has to watch behaviour after login rather than only guarding the door.
Before you call
We already have antivirus. Is that not the same thing?
Does LANTEK hold CREST accreditation?
Do you offer a security operations centre?
A free dark web scan
and thirty minutes.
We scan for your company email addresses, passwords and customer data in the places stolen and leaked data gets traded, then spend thirty minutes walking you through what came back and what it actually means. No pressure, no jargon, no obligation. You keep the report either way.
Worried about what it takes to move?
Changing IT provider is the single biggest reason businesses stay somewhere they have outgrown. We plan the move around your working week, and we help carry the cost of getting across. Ask us how that works when we speak.