Managed Security Services
Managed Security Services for Growing Businesses
iFlock runs your endpoint, email and identity defenses as one monthly service, behind a security operations center that watches around the clock and isolates a compromised machine instead of emailing you about it on Monday. Designed by a certified security expert who spends part of every year legitimately breaking into companies for a living.
The gap
Antivirus is not a security program
Most small and mid-sized businesses have someone keeping the computers running. That is a different job, with different tools, from keeping an attacker out of them.
IT support and security are not the same job
Fixing printers, onboarding staff and keeping Microsoft 365 licensed is IT. Spotting an attacker who logged in with a real password at 1am is security. The second one needs its own tooling, its own alerting, and someone whose actual job is looking for it.
Attacks do not wait for business hours
Ransomware crews deliberately move on Friday nights, holidays and long weekends, because that is when nobody is watching. An alert that sits in an inbox until Monday morning is not detection — it is a record of what already happened.
You are increasingly being asked to prove it
Cyber liability renewals, customer security questionnaires and supplier contracts now ask direct questions about multifactor authentication, endpoint detection and logging. Answering them honestly means having the controls first. See compliance & risk management.
The packages
Three ways to run it
Every package is priced per seat and billed monthly on a single invoice. Where you land depends on how you use email, whether you hold regulated data, and what your customers are asking you to prove — so we quote it after we have looked, not before.
Secure Essentials
The baselineEverything needed to see what is happening on your machines, and to stop it when it goes wrong.
- Remote monitoring, management and patching on every endpoint
- Endpoint detection & response (EDR)
- 24/7 SOC monitoring with active threat isolation
- Business-hours support and ticketing
- Onboarding, asset inventory and documentation
Secure Complete
Most businesses land hereEverything in Essentials, plus the two places attacks actually arrive: the inbox and the identity.
- Advanced email security — phishing, impersonation and malicious links
- Microsoft 365 tenant hardening and management — Entra ID, Defender, conditional access and delegated admin
- Mobile device security
- Quarterly security review with the owner, not a portal login
- Annual external vulnerability scan
Secure Compliance
When you have to prove itEverything in Complete, plus the evidence an auditor, an insurer or a customer will ask you for.
- Compliance readiness program — SOC 2, HIPAA, HITRUST
- Continuous control monitoring and evidence collection
- Annual internal or external penetration test
- Virtual CISO advisory — two hours a month
- Support through customer security questionnaires
Also available alongside any package, priced separately:
Penetration testingPhishing simulationSecurity awareness trainingMicrosoft 365 licensingIncident response retainerIn every package
What we actually run
No acronym soup. Here is what gets deployed, what it does, and why it is on the list.
Endpoint detection & response
Behavior-based EDR on every workstation and server — it watches what a process does, rather than checking it against a list of known-bad files.
24/7 SOC with active response
A staffed security operations center that can isolate a compromised machine from the network at 2am, instead of adding a line to a report you read later.
Patch management
Operating system and third-party patching on a schedule, with a monthly report of what got applied and what is still outstanding and why.
Multifactor authentication
Enforced on email, VPN and remote access. It remains the single highest-value control a small business can turn on.
Privileged access management
Everyday accounts stop being local administrators, so one clicked attachment stops being a full compromise.
Password management
A business password manager rolled out, configured and actually adopted — including the shared logins nobody admits to.
Email security
Spam and malware filtering, plus SPF, DKIM and DMARC configured correctly so nobody can send mail as you. Pairs with phishing simulation and training.
Vulnerability scanning
Monthly internal and external scanning with a prioritized fix list, not a 400-page PDF. See vulnerability management.
Attack surface monitoring
Continuous visibility into what the internet can see about you — exposed services, forgotten hosts, leaked credentials.
Incident response
A written plan, agreed in advance, and a team that answers the phone on the day it matters rather than handing you a form to fill in.
Annual security gap review
Your controls measured against a real framework once a year, with a plain-language summary of what changed. See compliance & risk.
Getting started
From first call to fully monitored
Nothing gets quoted before somebody has looked at your environment, and nothing gets deployed in a way that breaks a working day.
Assessment
We start with a free security assessment — what you have, what is exposed, and where the real gaps are. You get the findings in writing whether or not you hire us.
Scope and quote
Seat count, package, and anything unusual about your environment. One flat per-seat price, one invoice, no line items that appear later.
Deployment
Agents rolled out in stages, tenant hardened, multifactor enforced and baselines documented — scheduled around your work rather than through the middle of it.
Run and review
Monitoring goes live, you get a monthly report you can actually read, and a security review on a set cadence.
Questions we get
Before you book a call
Do we have to fire our current IT provider?
No. iFlock is security-first, and we work alongside an existing IT provider regularly — they keep running the business technology, we run the security layer and the monitoring behind it. If you would rather consolidate to one vendor, that is a conversation worth having, but it is not a requirement.
Is this a helpdesk?
Support and ticketing are included during business hours, but that is not what this program is for. iFlock competes on security depth — detection, response and offensive testing — rather than on picking up the phone at 2am for a password reset. The 24/7 coverage is security monitoring, and that part is genuinely round the clock.
Why is there a ten-seat minimum?
Because the setup work does not scale down. Tenant hardening, documentation, policy and onboarding take roughly the same effort at three users as at thirty. Below ten seats we cannot price it in a way that is both fair to you and sustainable for us, so we say so up front instead of quietly cutting corners.
What makes iFlock different from other managed security providers?
Most providers resell the same endpoint tools and the same monitoring platform. What they cannot resell is an owner who is a certified penetration tester and spends part of every year legitimately breaking into companies. The defenses here are built by someone who knows first-hand how they get taken apart — see penetration testing.
We already have some of this. Does it still work?
Usually, yes. If you already run a tool we would have deployed, the assessment picks that up and we scope around it rather than charging you twice. Where an existing tool is genuinely weaker than what we would put in, we will tell you why and let you decide.
Can you help with a security questionnaire or an insurance renewal?
Yes — that is the Secure Compliance package. It covers readiness work for frameworks like SOC 2, HIPAA and HITRUST, evidence collection, an annual penetration test, and help answering the questionnaires customers and insurers send. If you have a specific standard in mind, our compliance & risk and PCI compliance pages go deeper.
Start with a look at what you actually have
The free security assessment takes about an hour of your time and gives you a written picture of your current exposure. No obligation, and no pitch until you have seen the findings.