Accounts and access
Multi-factor authentication, access controls and separate privileged access around Microsoft 365.
Q10 manages the identity, device, email and backup controls around the systems your team already uses, with 24/7 security monitoring included in the managed service.
The goal is not to pile on products. It is to put sensible controls around identity, devices, email and data, then keep them managed over time.
Multi-factor authentication, access controls and separate privileged access around Microsoft 365.
Protection against malicious links, attachments, impersonation and other common email threats.
Monitoring, patching and endpoint protection are managed as part of the ongoing service.
Microsoft 365 data is backed up independently to Australian-hosted storage so recovery does not rely only on built-in platform retention.
Both managed service plans include the core cybersecurity baseline. Advanced adds further controls for businesses that want stronger protection against phishing, compromised credentials and unauthorised software.
Security should be understandable enough that the business knows what is being protected, what is included and where the limits are.
The current managed plans include Microsoft 365 security configuration, multi-factor authentication and access controls, endpoint and email protection, independent Microsoft 365 backup and 24/7 security monitoring. Advanced adds further controls such as training, phishing testing, application control and additional investigation data.
Yes. Security monitoring operates around the clock. The normal Q10 Service Desk operates Monday to Friday, 8:30am to 5:00pm AEST, excluding Queensland public holidays. Emergency assistance is available by phone outside those hours for critical issues under the Service Agreement.
No. Even with strong security controls in place, some risk will always remain. The goal is to reduce that risk, improve visibility, support faster response and make recovery more practical if something does go wrong. That is also why we strongly recommend appropriate cyber insurance as a financial backstop.
Yes. MFA is part of the managed security baseline for Microsoft 365 accounts, together with appropriate access controls.
Yes, Q10 strongly recommends suitable cyber insurance. Security controls reduce risk, but insurance provides a financial fallback for consequences that technology controls cannot completely prevent.
It is included in the Advanced plan. Advanced also includes controlled phishing simulations and compromised-credential monitoring. Essentials still includes the core technical security baseline around accounts, email, devices and monitoring.
Yes. Q10 can help assess your current Essential Eight position, identify any gaps and work toward the maturity level your business actually needs. Depending on the controls already included in your managed service and the level you need to reach, some of the required work may already be covered, with any additional remediation or formal assessment scoped separately where needed.
We can work through the users, devices, Microsoft 365 setup, existing controls and business requirements, then explain what a sensible managed security scope looks like.