Serros

Cyber security solutions that keep your business running.

Choose one service or combine them. Every engagement comes with the same senior team and the same reporting in plain English.

01 / Managed detection & response

Someone watching your systems at 2am, so you don't have to.

We deploy and manage the security solutions that protect your laptops, servers, email, user accounts and cloud, and our analysts respond to every alert around the clock.

Security operations centre team monitoring a wall of threat maps

What's included

  • 24/7 monitoring of endpoints, email, identities and cloud
  • Threat containment within minutes, day or night
  • Managed endpoint protection and email security
  • Security awareness training and phishing simulations
  • Monthly security report in plain English
  • Incident response and post-incident review
Discuss managed security
02 / Penetration testing

Find the weak spots before attackers or auditors do.

Manual testing by experienced specialists of your web apps, APIs, networks and cloud. Every finding comes with proof, business impact and clear guidance your team or vendor can act on.

Penetration tester typing commands in a terminal on a laptop

What's included

  • Web application and API penetration testing
  • Internal and external network testing
  • Cloud configuration review
  • Executive summary and detailed technical report
  • Free retest of all critical and high findings
  • Letter of attestation for customers and investors
Scope a pen test
03 / Cloud & SaaS security

Lock down the cloud and SaaS tools your business runs on.

Most breaches start with a misconfigured account or a missing setting. We secure the platforms your team uses every day and keep them that way as you grow.

Network cables connected to switches in a server rack

What's included

  • Email and collaboration platform hardening
  • Cloud infrastructure security posture reviews
  • Multi-factor authentication and single sign-on rollout
  • SaaS app discovery and access reviews
  • Backup, recovery and ransomware readiness
  • Continuous misconfiguration monitoring
Review your cloud
04 / Compliance & risk

Close enterprise deals faster with evidence that is ready for audit.

We translate POPIA, ISO 27001 and SOC 2 requirements into practical steps, put the controls in place and collect evidence as part of your monthly service.

Team reviewing compliance and risk reports at a table

What's included

  • Gap assessment against your target framework
  • Prioritised risk register and remediation roadmap
  • Security policy pack tailored to your business
  • Control implementation and evidence collection
  • Security questionnaire and trust centre support
  • Auditor introductions and support during your audit
Plan your audit

Technologies

The security technologies we deploy and manage.

We stay vendor-neutral and choose the right technology for your environment, then configure, monitor and maintain it for you.

  • Endpoint Security

    Protection for laptops, desktops, servers and mobile devices, managed and monitored centrally.

  • Email Security

    Filtering for phishing, impersonation and malicious attachments before they reach your inbox.

  • Identity & Access

    Multi-factor authentication, single sign-on and least privilege access for every user.

  • Network & Firewall

    Modern firewalls, secure remote access and network segmentation.

  • Cloud Security

    Configuration monitoring and hardening across your cloud infrastructure.

  • SaaS Security

    Discovery, access reviews and configuration control for the business apps your team uses.

  • Backup & Disaster Recovery

    Immutable backups, tested restores and recovery plans for ransomware and outages.

  • Security Awareness Training

    Short, practical training and phishing simulations that change staff behaviour.

  • Vulnerability Management

    Continuous scanning, findings ranked by risk and patch tracking.

  • Incident Response

    Rapid containment, investigation and reporting when something goes wrong.

  • Compliance & Governance

    Policies, risk registers and audit evidence mapped to your frameworks.

  • Managed Security Services

    Day-to-day operation of your security stack by our security operations team.

Engagement models

Choose how you work with us.

Start with a one-off assessment or hand us your day-to-day security.

Security Assessment

For companies that need a clear picture of their risk.

  • External penetration test
  • Cloud and SaaS configuration review
  • Report and roadmap ranked by risk
  • Free retest within 60 days
Book a Call

Enterprise

For companies with complex environments or audit deadlines.

  • Everything in Managed Security
  • Dedicated security lead
  • Quarterly penetration testing
  • Ongoing compliance evidence and audit support
Book a Call

FAQ

Questions business leaders ask us first.

Something else on your mind? Send us a message.

How quickly can you get us protected?

Timelines depend on the size of your environment, and we agree a start date with you in your roadmap. Urgent assessments and active incidents are always prioritised.

Do we have to replace the tools we already use?

No. We start with what you have, configure it properly and only recommend new solutions where there is a real gap.

Who owns the licences and data?

You do. Licences, logs and admin accounts stay in your organisation, so you can change providers at any time without losing anything.

Can you help us pass ISO 27001 or SOC 2?

We implement the technical controls, collect evidence and prepare your team for audit. The certification itself is issued by an independent auditor, whom we can recommend.

What happens if we have a security incident?

Managed security clients get incident response included. Our analysts contain the threat, investigate and give you a written report with next steps.

Book a call

Not sure which solution fits?

Tell us how your business runs and what you're worried about. We'll recommend the smallest setup that covers your biggest risks.

30 minutes, no sales deck, NDA on request.