Services

Everything you need. Nothing you have to run.

WindBreak bundles the tools, the people and the process. You get one monthly price, one dashboard and one number to call.

Managed detection and response

Threats get stopped first, then explained.

Detection runs across your endpoints, email, cloud accounts and network signals around the clock. When a threat is confirmed, containment is automatic. Our team then investigates, explains what happened in plain language and tells you whether you need to do anything.

  • Around-the-clock automated detection and containment
  • Investigation and a plain-language write-up from our team
  • A named security lead who knows your business
  • Incident response included, with no hourly fees
  • A clear escalation path when something is urgent

Endpoint protection

Ransomware stops on the device it started on.

Every laptop, desktop and server gets a lightweight agent that watches behavior, not just signatures. When a process starts encrypting files or moving sideways, it is stopped and the device is isolated automatically.

  • Next-generation antivirus and EDR for Windows, macOS and Linux
  • Automatic device isolation when an attack is confirmed
  • USB and application control
  • Full device inventory and health in your dashboard
  • Rollback of ransomware-encrypted files where supported

Email security

Phishing gets quarantined before anyone can click.

We sit in front of Microsoft 365 and Google Workspace. Impersonation, malicious links and attachments are held before delivery. Your team sees a clean inbox and a one-click way to report anything that looks off.

  • Impersonation and business email compromise protection
  • Link and attachment sandboxing
  • One-click report button in Outlook and Gmail
  • SPF, DKIM and DMARC set up and monitored for your domain
  • Daily quarantine digest, so nothing legitimate gets lost

Identity protection

Your accounts are the new perimeter.

Most breaches start with a stolen password, not a virus. We watch sign-ins across Microsoft 365, Google Workspace and your key business apps, enforce multi-factor authentication and act on impossible travel, new MFA devices and leaked credentials.

  • MFA rollout and enforcement across every account
  • Dark web monitoring for leaked passwords
  • Conditional access and impossible-travel blocking
  • Quarterly review of admin and privileged accounts
  • Offboarding checks when staff leave

Backup and recovery

A backup you've never restored is a guess.

We back up your Microsoft 365 or Google Workspace data and your servers every night, keep copies where ransomware can't reach them, and test-restore a sample every week. If the worst happens, we restore and you keep working.

  • Nightly backups of email, files, Teams and SharePoint
  • Immutable, off-site copies that ransomware can't encrypt
  • Weekly automated restore tests, with results in your dashboard
  • Server and virtual machine image backups
  • Recovery time and recovery point targets agreed in writing

Vulnerability management

Find the gaps before someone else does.

Continuous scanning of your devices, servers and internet-facing footprint. We patch operating systems and common applications for you, prioritize the rest by real-world risk, and give you a single number that goes down over time.

  • Continuous internal and external scanning
  • Managed patching for Windows, macOS and 200+ common apps
  • Risk-based prioritization, not a 400-page PDF
  • A monthly trend you can show your board
  • Annual penetration test coordination

Security awareness

Your team becomes the last line, not the weak one.

Short monthly training, realistic phishing simulations and a clear way to report suspicious emails. No blame and no 45-minute videos. Just a team that knows what to look for.

  • Monthly five-minute training modules
  • Quarterly phishing simulations tailored to your industry
  • Report button in every inbox
  • New-starter onboarding module
  • Completion and click-rate reporting for compliance

Compliance and reporting

Evidence, not just assurance.

Whether it's a cyber insurance renewal, a client questionnaire or a framework like CIS Controls, SOC 2 or HIPAA, we produce the reports and evidence packs from the data we already collect. You forward them. That's it.

  • Monthly security summary in plain language
  • Cyber insurance application and renewal support
  • Control mapping for CIS Controls v8, NIST CSF, SOC 2, HIPAA and PCI DSS
  • Exportable evidence packs for auditors and clients
  • Quarterly review with your security lead

Not sure what you need? Start with a free security review.

A 20-minute call and a read-only look at your setup. You get a short written report whether or not you sign up.