Our solutions
Cybersecurity
EDR on every device, continuous threat monitoring, MFA and hardened configurations: a security baseline aligned with CIS and NIST frameworks. On top of it, four managed building blocks you can switch on separately: MDR, ITDR, SAT and SIEM.
Continuous monitoring, day and night
Protection against cyberattacks
Secure and controlled access
Compliance support (nFADP/GDPR)
Computer protection
Each workstation is protected against viruses, ransomware and other threats with a professional EDR solution.
- Next-generation antivirus (EDR)
- Real-time threat blocking
- Automatic updates
- Incident alerts
Monitoring by specialists (managed EDR)
Software that raises an alert is worth nothing if nobody reads it. The platform we deploy is backed by a security operations center (SOC) running around the clock: it qualifies the alert and rules out false leads. SysPros receives the verdict, explains the situation to you and acts on the affected device.
Protected e-mail
Your e-mail is filtered to block phishing, malicious attachments and scam attempts.
- Anti-phishing filtering
- Dangerous attachment blocking
- Identity protection (SPF, DKIM, DMARC)
- Less spam, more security
Secure access
Only the right people access the right resources, with enhanced authentication.
- Two-factor authentication (MFA)
- Secure passwords
- Access rights adapted to each role
- Regular access review
Hardened systems
Your computers and servers are configured according to recognized best practices to reduce risks.
Incident response plan
If an incident occurs, clear procedures allow a fast reaction that limits the impact on your business.
- Defined response procedures
- Clear and fast communication
- Post-incident analysis
- Continuous improvement
Four managed services, explained acronym by acronym
Beyond the baseline described above, each of these services is activated independently, depending on your size, your exposure and your obligations. All four run on the same platform, backed by a SOC that operates around the clock. Here is what every acronym covers, and the point at which it starts to matter.
MDR
Managed Detection and Response
EDR, with the SOC that handles the alert
An EDR left on its own only reports. MDR adds what is missing: a security operations center receives the alert, analyses it and rules out false leads, around the clock, weekends included. We do not redo that qualification work: SysPros deploys the platform, receives the verdict, calls you and carries out the remediation across your estate.
- Alerts qualified by the SOC, so the noise is filtered out
- Remote isolation of a compromised device
- Search for the same traces across the rest of the fleet
- Remediation carried out by SysPros, then a written report
When it makes sense: from the very first device connected to the internet. This is the block we recommend switching on first.
ITDR
Identity Threat Detection and Response
Watching the accounts, not only the machines
An attack today rarely starts with a virus: it starts with an account. A leaked password, a stolen session token, an application approved without a second thought. ITDR watches your directory (Microsoft Entra ID, Active Directory) and picks up those signals: a sign-in from an unusual country, an MFA bypass, a sudden privilege escalation.
- Detection of suspicious sign-ins and tokens across Microsoft 365
- Alerts on admin accounts and elevated privileges
- Blocking or resetting a compromised account
- Tracking of the applications granted access to your tenant
When it makes sense: as soon as your e-mail, files and access live in Microsoft 365, which covers almost every SME.
SAT
Security Awareness Training
Training the team under real conditions
Technology blocks a great deal, but not everything: what remains is the message that arrives at the right moment and looks like it came from the right sender. SAT is a continuous awareness programme: short modules, plus phishing simulations sent to your staff to measure the actual reflex rather than the good intention.
- Short modules, spread across the year
- Phishing simulations calibrated to your sector
- Results measured per team, never per named person
- A short reminder after a click, rather than a sanction
When it makes sense: as soon as several people handle e-mail, invoices or payments.
SIEM
Security Information and Event Management
Every log in one place, cross-referenced
Your devices, servers, firewall, Microsoft 365 and backups each produce their own logs, each in their own corner. A SIEM centralises, retains and cross-references them: an event that looks harmless on its own becomes a signal when it shows up on three systems in the same minute. It is also what lets you reconstruct what actually happened after an incident.
- Centralised collection: devices, servers, network, Microsoft 365
- Correlation rules and alerts on known attack patterns
- Log retention over a period agreed with you
- Timeline reconstructed after an incident, for audit and insurance
When it makes sense: for multi-site environments, regulated sectors and companies facing audit or retention requirements.
Cybersecurity, an investment that protects
Avoid financial losses
A cyberattack can cost an SME dearly: ransom, downtime, recovery.
Protect your reputation
A data leak can seriously harm your image with customers.
Meet your obligations
Controls, documentation and audit trail for the nFADP and, where applicable, the GDPR.
Reassure your customers
Show that you take security seriously, with evidence.
What our clients ask us most often
Another question? Get in touchWhat is a “next-generation” antivirus (EDR)?
Unlike traditional antivirus that look for known signatures, an EDR solution analyzes program behavior to detect unknown threats and sophisticated attacks.
Is continuous monitoring really necessary?
Cyberattacks have no schedule. Continuous monitoring detects and blocks threats before they cause damage, including at night or on weekends.
What happens if we suffer an attack?
We apply incident response procedures: limit the impact, restore services, then analyze the incident to prevent recurrence.
Is two-factor authentication really useful?
Yes, it is one of the most effective measures: even if a password is stolen, the attacker cannot log in without the second factor.
Are you compliant with Swiss standards?
We apply recognized frameworks (CIS, NIST) and help you meet your legal data protection obligations (nFADP, GDPR where applicable).
EDR, MDR, SIEM: what is the difference?
EDR is the software installed on the device: it detects and blocks. MDR adds the team that receives the alert, qualifies it and intervenes. A SIEM does not look at one device but at all your systems: it centralises logs and cross-references events. You can have EDR without MDR, and MDR without SIEM.
Does a twenty-person SME need a SIEM?
Not necessarily. For most SMEs, managed EDR (MDR) and identity monitoring (ITDR) already cover the bulk of the scenarios. A SIEM becomes useful with several sites, business applications to monitor, or audit and log retention requirements.
Who is actually watching: SysPros or a provider?
Both, in different places. Detection and alert qualification run around the clock in the security operations center of the vendor whose platform we deploy: that is their trade, and their scale pays for a permanent watch no SME could fund on its own. SysPros installs and configures that tooling, receives the verdict, explains what is happening and carries out the remediation across your estate. You still deal with one contact, us.
Will phishing simulations not upset our teams?
That is the risk if they are used to single people out. We measure results per team and never per named person, and a click triggers a short reminder, not a sanction. The goal is the collective reflex, not a ranking.
Let's talk about your IT
A first no-obligation conversation. We analyze your situation, identify risks and propose a clear framework. You decide what happens next.