
Security
Cybersecurity advisory
Most businesses are not asking whether they have a security problem. They are asking which one comes first, and every answer they get also sells a product.
Tools do not replace a decision
Firewall, antivirus and backups are already in place almost everywhere. What is missing is the order: which gap costs the most when it is used against you, which can be closed for reasonable effort, and which one you deliberately leave open. Without that order, buying takes the place of deciding, and the business ends up with more tools and the same risks.
How we work
Record what is actually running
Systems, access, data flows and dependencies, including the things that grew over the years and appear on no diagram. What is not known cannot be protected.
Rank risk by impact, not by headline
We assess what an outage or an unauthorised access costs in your operation specifically. That produces a different order than a general threat list, and it is the one you can act on.
The basics first
Access rights, multi-factor authentication, backup with a restore that has been tested, updates. Unspectacular, and responsible for most of the damage that actually occurs.
Implement it inside your systems
We change configuration in the systems we build and run anyway. A recommendation nobody implements is a document.
Rehearse the bad day once
Who decides, who raises the alarm, who speaks to customers, how the business comes back. Rehearsed once is the difference between an incident and a crisis.
What you end up with
A ranked list with reasons
The gaps sorted by impact and effort, including the ones you decide to leave open.
The basics actually in place
Access, authentication, backup and restore verified, not only recommended.
A rehearsed routine for the bad day
Named responsibilities and a way back into operation, played through once instead of written down.
Something your customers can check
Documented so it can be followed, so a customer security questionnaire does not cost you a week of work.
Why work with us
We do not sell security products
There is no licence margin pulling a recommendation in one direction. Often the recommendation is to configure the tools you already own properly.
We know the systems underneath
We build ERP, cloud and integration ourselves. Security advice that stops at the interface leaves open the part where the gaps sit.
Advice and implementation, not a permanent watch
We work in projects with a beginning and an end. If what you need is continuous cover, we say so and point you to the right kind of provider.
Delivered from Cairo, responsibility with us
We deliver projects with our own team from Egypt, under our direction, with responsibility for the result resting with us. Cairo working hours overlap the Gulf and Europe, so questions are settled within the same working day. Company details are in the Legal Notice.
Common questions
Where do we start?
With a picture of the current state and a ranked list. Both are achievable in a few weeks, and together they answer the question that comes before any purchase: what first. Without that step, businesses buy whatever came up in the last talk somebody attended.
Do you carry out penetration tests?
We organise them and see them through, sensibly once the basics are in place. A test against a system with no access model and no verified backup produces a long report and little insight.
We are small. Is it worth it?
Size decides the effort, not the necessity. For a small business, access rights, multi-factor authentication and a restore that has been tested are most of the benefit, and they are reachable in a manageable amount of time.
What about standards and formal proof?
If you need formal proof, because customers ask for it for instance, that is a separate undertaking with its own preparation. Raise it with us and we will scope it before you put effort into it.
Do you take over day-to-day operation?
No. We advise and we implement, in projects. For a permanent watch you need a provider built for it, and we will tell you what to look for when you choose one.
What comes first in your case?
We establish where you stand, rank the gaps by impact and effort, and tell you what to do first and what can wait.