Isolated decoys
Decoy servers, shares and accounts run in a segment isolated from your real systems. Even if compromised, there is no path from them into your production network.
We place decoy assets in your network that look like real systems but carry no workload. Legitimate users have no reason to touch them; when someone does, you get an early, clear warning rather than a false alarm.
Decoy servers, shares and accounts run in a segment isolated from your real systems. Even if compromised, there is no path from them into your production network.
Every connection to a decoy is suspicious, so alerts are few and each is worth a look. The alert reaches your team with its source and the action that was attempted.
Who does what, in which order, when an alert arrives is written in advance: isolate the source, disable the account, preserve the traces. The playbook is exercised at least once a year.
Decoys sit on the paths an attacker would take toward real assets and are wired to a single alerting point.
We clarify the scope, deliverables and acceptance criteria together in the first meeting. The written quote lists that scope item by item; if the scope changes, the quote is updated as a new version.
Each step ends with something concrete in your hands; we move on with your approval.
Together we put the goal, the boundaries and the acceptance criteria in writing.
We set up tools, access and settings, document the setup and hand it over to you.
Within the authorised scope, we run the agreed scenarios in a controlled way.
We share what was done, the result and the next step in a plain report.
What is included, what we need from you, timing and payment, all in one place. The exact scope and price are set in the written quote.
Tell us what you need; we will define the scope together.
Tell us about your projectDecoys are placed where daily work never goes, and your IT team knows which ones are decoys. Innocent touches in the first weeks are reviewed and, if needed, the decoy is moved.
Yes. Only systems you are authorised for and have approved in writing are assessed.
Scope, time window and methods are agreed in advance; risky steps require your separate approval.
Tell us what you need; we will define the scope together.