We are an independent financial advisory firm of 15 people based in London. Our setup consists of 15 laptops, an on-prem file server, and cloud-based accounting software. In their latest proposal, our outsourced IT support provider suggested integrating deception technology (deception tech and honeypot-based systems).
They explained that they would place decoy file servers, fake user credentials, and fake database connections onto the network, so if an attacker breaches the perimeter, we'll know the second they touch any of these decoys. They are quoting around 4,800 GBP annually for licensing and management.
What exactly does deception technology do, and is it genuinely necessary for a small office network like ours? Or would it make much more sense for a 15-person setup to spend that budget on core security layers instead?