Skip to content
Our solutions

Our solutions

Cybersecurity

EDR on every device, continuous threat monitoring, MFA and hardened configurations: a security baseline aligned with CIS and NIST frameworks. On top of it, four managed building blocks you can switch on separately: MDR, ITDR, SAT and SIEM.

Cybersecurity

Continuous monitoring, day and night

Protection against cyberattacks

Secure and controlled access

Compliance support (nFADP/GDPR)

Computer protection

Computer protection

Each workstation is protected against viruses, ransomware and other threats with a professional EDR solution.

  • Next-generation antivirus (EDR)
  • Real-time threat blocking
  • Automatic updates
  • Incident alerts

Monitoring by specialists (managed EDR)

Software that raises an alert is worth nothing if nobody reads it. The platform we deploy is backed by a security operations center (SOC) running around the clock: it qualifies the alert and rules out false leads. SysPros receives the verdict, explains the situation to you and acts on the affected device.

Continuous monitoring, day and night
Alerts qualified by a SOC, so the noise is filtered out
Remediation carried out by SysPros across your estate
You are notified in case of emergency

Protected e-mail

Your e-mail is filtered to block phishing, malicious attachments and scam attempts.

  • Anti-phishing filtering
  • Dangerous attachment blocking
  • Identity protection (SPF, DKIM, DMARC)
  • Less spam, more security
Secure access

Secure access

Only the right people access the right resources, with enhanced authentication.

  • Two-factor authentication (MFA)
  • Secure passwords
  • Access rights adapted to each role
  • Regular access review

Hardened systems

Your computers and servers are configured according to recognized best practices to reduce risks.

Hardened baseline configuration (CIS baselines)
Known vulnerability patching
Regular security updates
Compliance checks

Incident response plan

If an incident occurs, clear procedures allow a fast reaction that limits the impact on your business.

  • Defined response procedures
  • Clear and fast communication
  • Post-incident analysis
  • Continuous improvement

Four managed services, explained acronym by acronym

Beyond the baseline described above, each of these services is activated independently, depending on your size, your exposure and your obligations. All four run on the same platform, backed by a SOC that operates around the clock. Here is what every acronym covers, and the point at which it starts to matter.

MDR

Managed Detection and Response

EDR, with the SOC that handles the alert

An EDR left on its own only reports. MDR adds what is missing: a security operations center receives the alert, analyses it and rules out false leads, around the clock, weekends included. We do not redo that qualification work: SysPros deploys the platform, receives the verdict, calls you and carries out the remediation across your estate.

  • Alerts qualified by the SOC, so the noise is filtered out
  • Remote isolation of a compromised device
  • Search for the same traces across the rest of the fleet
  • Remediation carried out by SysPros, then a written report

When it makes sense: from the very first device connected to the internet. This is the block we recommend switching on first.

ITDR

Identity Threat Detection and Response

Watching the accounts, not only the machines

An attack today rarely starts with a virus: it starts with an account. A leaked password, a stolen session token, an application approved without a second thought. ITDR watches your directory (Microsoft Entra ID, Active Directory) and picks up those signals: a sign-in from an unusual country, an MFA bypass, a sudden privilege escalation.

  • Detection of suspicious sign-ins and tokens across Microsoft 365
  • Alerts on admin accounts and elevated privileges
  • Blocking or resetting a compromised account
  • Tracking of the applications granted access to your tenant

When it makes sense: as soon as your e-mail, files and access live in Microsoft 365, which covers almost every SME.

SAT

Security Awareness Training

Training the team under real conditions

Technology blocks a great deal, but not everything: what remains is the message that arrives at the right moment and looks like it came from the right sender. SAT is a continuous awareness programme: short modules, plus phishing simulations sent to your staff to measure the actual reflex rather than the good intention.

  • Short modules, spread across the year
  • Phishing simulations calibrated to your sector
  • Results measured per team, never per named person
  • A short reminder after a click, rather than a sanction

When it makes sense: as soon as several people handle e-mail, invoices or payments.

SIEM

Security Information and Event Management

Every log in one place, cross-referenced

Your devices, servers, firewall, Microsoft 365 and backups each produce their own logs, each in their own corner. A SIEM centralises, retains and cross-references them: an event that looks harmless on its own becomes a signal when it shows up on three systems in the same minute. It is also what lets you reconstruct what actually happened after an incident.

  • Centralised collection: devices, servers, network, Microsoft 365
  • Correlation rules and alerts on known attack patterns
  • Log retention over a period agreed with you
  • Timeline reconstructed after an incident, for audit and insurance

When it makes sense: for multi-site environments, regulated sectors and companies facing audit or retention requirements.

Cybersecurity, an investment that protects

Avoid financial losses

A cyberattack can cost an SME dearly: ransom, downtime, recovery.

Protect your reputation

A data leak can seriously harm your image with customers.

Meet your obligations

Controls, documentation and audit trail for the nFADP and, where applicable, the GDPR.

Reassure your customers

Show that you take security seriously, with evidence.

What our clients ask us most often

Another question? Get in touch
What is a “next-generation” antivirus (EDR)?

Unlike traditional antivirus that look for known signatures, an EDR solution analyzes program behavior to detect unknown threats and sophisticated attacks.

Is continuous monitoring really necessary?

Cyberattacks have no schedule. Continuous monitoring detects and blocks threats before they cause damage, including at night or on weekends.

What happens if we suffer an attack?

We apply incident response procedures: limit the impact, restore services, then analyze the incident to prevent recurrence.

Is two-factor authentication really useful?

Yes, it is one of the most effective measures: even if a password is stolen, the attacker cannot log in without the second factor.

Are you compliant with Swiss standards?

We apply recognized frameworks (CIS, NIST) and help you meet your legal data protection obligations (nFADP, GDPR where applicable).

EDR, MDR, SIEM: what is the difference?

EDR is the software installed on the device: it detects and blocks. MDR adds the team that receives the alert, qualifies it and intervenes. A SIEM does not look at one device but at all your systems: it centralises logs and cross-references events. You can have EDR without MDR, and MDR without SIEM.

Does a twenty-person SME need a SIEM?

Not necessarily. For most SMEs, managed EDR (MDR) and identity monitoring (ITDR) already cover the bulk of the scenarios. A SIEM becomes useful with several sites, business applications to monitor, or audit and log retention requirements.

Who is actually watching: SysPros or a provider?

Both, in different places. Detection and alert qualification run around the clock in the security operations center of the vendor whose platform we deploy: that is their trade, and their scale pays for a permanent watch no SME could fund on its own. SysPros installs and configures that tooling, receives the verdict, explains what is happening and carries out the remediation across your estate. You still deal with one contact, us.

Will phishing simulations not upset our teams?

That is the risk if they are used to single people out. We measure results per team and never per named person, and a click triggers a short reminder, not a sanction. The goal is the collective reflex, not a ranking.

Let's talk about your IT

A first no-obligation conversation. We analyze your situation, identify risks and propose a clear framework. You decide what happens next.