02 8188 9777
Sydney businesses · 10 to 70 staff

Some of the doors into your business are still unlocked. We will show you which ones.

A free check of your Microsoft 365. Every account. Then 30 minutes explaining what we found, in plain English.

  • Ten minutes to set up, then a 30 minute call
  • A written report that is yours to keep, whatever you decide
  • No card, no contract, and no hard sell

Find out where you stand

Free, and no obligation.

How many staff?
What has prompted this?

Free. No card. No obligation to go any further.

First, let us talk you out of it.

Plenty of people who land here should close the tab. Better we say so now than waste an hour of both our lives.

Worth doing if you

  • Have somewhere between 10 and 70 staff
  • Run your business email and files through Microsoft
  • Are somewhere in Australia
  • Have not had anyone independent look at this in the last year
  • Would rather know now than find out the hard way

Give it a miss if you

  • Have fewer than ten staff, because the numbers stop making sense for both of us
  • Had someone properly check this over in the last twelve months
  • Do not use Microsoft for your email
  • Already know exactly what is switched on and what is not

Any of this sound familiar?

These are the things business owners say to us before we start.

"Someone left last year and I honestly could not tell you whether their access was ever turned off."

"I heard about a business that paid an invoice into the wrong bank account. It was for eighty grand."

"A client sent us a security questionnaire and I had to guess at half the answers."

"We pay for IT support every month. I have no idea whether any of this is covered."

"Half my team is on their own laptops and phones. I have never thought about it until now."

"If something went wrong tomorrow I would not know where to start."

And none of it is your fault.

When your business email was set up, a long list of protections came switched off. Not broken. Just off, waiting for someone to turn them on. Microsoft leaves that to you, and most businesses never get to it, because it is nobody's job. Your IT support fixes what breaks. Nothing breaks when a protection is off, so nobody looks. Years go by.

Here is what we found at the last business we checked.

A 25 person accounting firm in Sydney. They had IT support. They had never had a problem.

!

Someone could have read every email, quietly, forever

If one person's account had been broken into, the intruder could have set it to secretly copy every message out of the business. No warning. Nobody told. This is exactly how invoices end up paid into the wrong bank account.

!

Eleven people who no longer worked there could still log in

Their accounts were never switched off. Same passwords as the day they walked out the door.

!

Twenty two old laptops and phones were still trusted

Devices nobody had touched in months, still able to reach company files.

!

Anyone could send an email that looked like it came from them

Two of their three email addresses had nothing stopping it. A scammer could email their clients, as them, asking to be paid.

!

One account was protected by a password and nothing else

If that password had ever turned up in a leak, that was the whole front door.

!

Nothing was checking for emails pretending to be the boss

The "quick favour, can you transfer this today" email would have landed like any other.

Nineteen problems in total. Every one of them a setting that had been sitting switched off since the day they started.

Nine days later.

Same business, same team. Nothing bought, nothing replaced, nobody retrained.

The problem
Before
After
Someone could secretly copy your email out
Ex staff could still log in
Old devices still trusted
Scammers could email clients as you
Accounts guarded by a password alone
Nothing catching fake emails from the boss
Staff able to hand outside apps your data

What you get.

A proper look through your setupWe check the lot, not a quick glance. It runs in the background and your team will not notice.
A written report, in EnglishWhat is open, what it could cost you, and how serious each one is. No acronyms.
Thirty minutes with someone who knows what they are looking atWe go through it together and you can ask anything. This is not a sales call with a report attached.
A short list, in orderWhat to deal with first, second and third. Not thirty things. The ones that actually matter.
Something you can hand overForward the report to your partners, your board, or whoever already looks after your IT. It is yours.
What it costs you
Nothing
Ten minutes to set up, then thirty minutes of your time.

So what is the catch.

There is no catch, but there is a reason, and you deserve it straight.

The checking part is automatic, so one more costs us almost nothing. What it does cost us is the half hour one of our people spends going through it with you. That is why we do ten of these a month rather than a hundred.

Out of those ten, a few will ask us to sort out what we found. That is where we make our money.

The rest take the report to whoever already looks after them and get it fixed without us. That is genuinely fine. We would rather these holes got closed than left open, and a business that trusts us this year tends to call us in a few years' time.

That is the whole thing. No pressure, and no decision you have to make on the call.

Our promise

Forty minutes, and nothing else.

You are not spending money here, so the only thing you are risking is about forty minutes of your time. We would rather be straight about what you get for it.

If we find things, we will tell you plainly what they are, what they could cost you, and what we would suggest doing. Nothing happens after that unless you say so.

If we find you are in good shape, we will say that too, and you will have it in writing to show whoever asks. That is a perfectly good outcome and we are not going to invent problems to avoid it.

Either way, the report is yours to keep, and nothing goes any further unless you decide it should.

The cost of leaving it.

One account gets broken into. Someone reads quietly for a fortnight, waits for you to invoice a client, then emails that client with different bank details.

One invoice paid to the wrong account$25,000
Your time and your team's, sorting it out$8,000
The phone call to your clientHorrible
Closing the hole that allowed it20 minutes
Finding out whether yours is openNothing

The invoice figure is an example, not a statistic. Put your own average invoice in and the answer does not change much.

How it works.

1

You approve access

One screen, about ten minutes. If your IT provider handles that side, forward it to them.

2

We take a look

Runs quietly in the background. Nobody in your team will notice a thing.

3

We talk you through it

You get the written report, then we spend 30 minutes going through what we found and what it means for you.

What people ask us.

Will you be reading my emails?

No. We look at your settings, not your messages. We are not opening your inbox, your documents or your files, and we could not tell you what is in any of them. You will see a list of exactly what we are looking at before you approve anything.

Is this going to disrupt my team?

Not at all. Nothing changes, nothing gets switched off, nobody has to log in again. It runs in the background and your staff will not know it happened.

What if I do not understand any of this?

That is rather the point. You do not need to. We do the looking, then explain what we found the way we would explain it to a mate over coffee. If we use a word you do not know, we have done our job badly.

I already pay someone for IT. Is this awkward?

It should not be. Most businesses we do this for have an IT provider and we are not asking you to change that. Think of it as a second set of eyes. If they have it covered, you will have proof, and you can send them the report either way.

Why would you do this for nothing?

Because the checking part is automatic and costs us almost nothing. Some businesses read what we find and ask us to sort it out, which is where we make our money. Plenty take the report to whoever already looks after them, and that is completely fine by us.

What if you find something? What happens then?

We tell you what we would recommend doing about it, and what that would cost. Every business is different, so the price depends on how much is out of place. You will have the recommendation and the costing in front of you before anything happens, and nothing goes ahead unless you approve it. Saying no thanks and keeping the report is a perfectly good outcome too.

Am I too small for anyone to bother with?

This is the one we hear most, and it is the one that costs people. Almost none of this is personal. It is automated, sweeping around looking for whoever left the door open. Being small does not hide you. It just means nobody has checked.

How do I stop it afterwards?

You switch off our access whenever you like, in a couple of clicks. It is your account and it stays entirely in your hands.

Find out, then stop thinking about it.

Ten minutes to set up, then a 30 minute call. The report is yours to keep.

Find out where you stand

Free, and no obligation.

How many staff?
What has prompted this?

Free. No card. No obligation to go any further.

P.S. If you scrolled straight to the bottom, here it is in four lines.

Your business email has a list of protections that came switched off, and nobody has ever checked which ones. We will look, for nothing, and send you a written report.

Then we spend thirty minutes explaining it to you without a single acronym.

The report is yours whatever you decide to do next. The only thing you lose by not doing it is knowing.