Managed security services

Managed security services with 24/7 detection and response

Our managed security services put a security operations centre on watch over your devices, Microsoft 365 accounts and email around the clock, through three SecureShield levels priced per person, on any support plan. When it finds an attacker it acts, and the same Australian team that runs your IT cleans up, closes the gap and tells you what happened.

Your price in two minutes. No email needed.

Austin Technology security engineer reviewing alerts in the Subiaco office
Security operations centreWatching 24/7, every plan
  • 24/7Monitoring and response on every plan
  • 150+Australian organisations protected by SecureShield
  • ISO27001 certified, audited every year
  • Top 50MSP in Australia, 2024 to 2026

01What we monitor

What we watch and who responds

Managed IT security services only work if someone is looking at the alerts and someone is ready to fix what they find. We cover both: the security operations centre watches and contains, and our engineers repair, follow up and report.

/01

Every laptop, desktop and server

Managed detection and response software watches for attacker behaviour, not just known viruses. The analysts can isolate an infected device from the network. See endpoint detection and response.

/02

Microsoft 365 sign ins

Identity threat detection flags stolen passwords, sign ins from unusual places and new inbox rules that forward your invoices to someone else, and shuts the session down.

/03

Email before it lands

Filtering stops phishing, fake invoices and malicious attachments before staff see them. Included from Control. See email security.

/04

Logs in one place

From Control, logs from Microsoft 365, devices and your network are collected centrally, so an investigation takes minutes and the evidence is there when an insurer or auditor asks.

/05

Your people

Short monthly training and simulated phishing emails, with results by person, so the weakest link gets stronger. See security awareness training.

/06

Updates and weak spots

Devices and applications patched on a schedule, and the gaps that attackers look for closed before they are used.

02A night on the job

What happens at 2am

This is a typical email account takeover, one of the most common attacks on Australian businesses. Nobody in your office needs to be awake for the first three steps.

  1. Detect

    Something looks wrong

    The security operations centre sees a sign in to a staff account from overseas, followed by a new rule forwarding invoice emails outside the business.

  2. Confirm

    An analyst checks it

    They confirm it is an attacker and not your staff member on holiday, using the sign in history and device details.

  3. Contain

    The attacker is cut off

    The session is shut down and the account locked, or an infected device is isolated from the network, before more damage is done.

  4. Fix

    Our engineer takes over

    First thing in the morning we reset the account, remove the rule, check what was read or sent and warn anyone who received a fake invoice.

  5. Report

    You get the full story

    A written summary of what happened, how they got in and what we changed. If a ransom or personal information is involved, we help you with the reporting steps.

03Austin SecureShield

Three security levels, one clear path

Start at Core and step up as your risk grows. Every level includes the 24/7 security operations centre, and every managed device runs our endpoint protection as a minimum even without a level.

Level 1Recommended minimum

Core

$25per person per month
ex GST

24/7 security operations centre, detection and response on every device and Microsoft 365 account, security awareness training and vulnerability scanning.

Best forEvery business, on any support plan.

Level 2

Control

$60per person per month
ex GST

Everything in Core plus email filtering, Microsoft 365 baseline, application control, logging, a password manager, policies and a monthly report, maintained at Essential Eight Maturity Level One.

Best forBusinesses with an insurer, client or tender asking for evidence.

Level 3

Command

$100per person per month
ex GST

Everything in Control plus a virtual CISO, quarterly board reviews and controls maintained at Essential Eight Maturity Level Two.

Best forBusinesses with a board, a compliance obligation or a certification target.

Prices exclude GST and cover every person and device. SecureShield maintains the controls at the stated level; the assessment, gap closure and any uplift to a maturity level are quoted as fixed price projects. Compare every control.

04SecureShield levels

Three levels, every control listed

Core is the minimum we recommend for every business. Control adds the controls and evidence insurers and clients ask for. Command adds a security lead. Every level covers every person and device, on any support plan.

SecureShield security levels compared: Core, Control and Command
IncludedCore$25 a person, detect and respondControl$60 a person, controls and evidenceCommand$100 a person, security leadership
Detect and respond
24/7 security operations centre with analysts on shift
Managed detection and response on every device, with containment
Microsoft 365 identity threat detection and response
Centralised security logging (SIEM), 12 months retention
Prevent
Security awareness training and phishing simulations
Vulnerability scanning with a monthly report
Email filtering, with SPF, DKIM and DMARC set up and monitored
Microsoft 365 security baseline, monitored for drift
Application control
Business password manager for every user
Data protection baseline: sensitivity labels and data loss prevention
Prove and plan
Quarterly security summary
Security policy set, reviewed yearly
Incident response plan with an annual tabletop exercise
Monthly security report with Essential Eight score
Essential Eight controls maintained, with evidenceMaturity Level OneMaturity Level Two
SMB1001 aligned controlsGoldDiamond
Virtual CISO, monthly
Annual risk assessment and security roadmap
Quarterly board ready security review
Cyber insurance renewal and supplier questionnaire support

Swipe the table sideways to see every level.

Prices are per person per month excluding GST. SecureShield maintains the controls at the stated level and keeps the evidence current. The initial assessment, closing gaps and any uplift to a maturity level are quoted as fixed price projects. Certification audits and penetration tests are quoted separately. Without a SecureShield level, every managed device runs our 24/7 endpoint protection at $6 a device.

05The terms explained

SOC, SIEM and MDR in plain English

Security providers love acronyms. These are the four you will see in every proposal, and what each one does for you.

/01

SOC: the people

A security operations centre is a team of analysts who watch alerts around the clock and respond to real attacks. SOC as a service means you use that team without hiring it.

/02

MDR: eyes on every device

Managed detection and response is software on each device that spots attacker behaviour, backed by the SOC analysts who act on what it finds.

/03

ITDR: eyes on your accounts

Identity threat detection and response watches Microsoft 365 sign ins, because most attacks now start with a stolen password rather than a virus.

/04

SIEM: the evidence

A security information and event management system collects logs in one place, so incidents can be investigated and controls proven. Managed SIEM means we run it for you.

06Why it matters

Attacks do not keep business hours

Managed cyber security matters most when your office is empty. These figures are why round the clock cover is on every plan, not an upgrade.

/01

$56,600

The average self reported cost of a cybercrime to an Australian small business in 2024 to 2025. For medium businesses it was $97,200, up 55%. Source: ASD Annual Cyber Threat Report.

/02

1 every 6 minutes

ASD received more than 84,700 cybercrime reports in the year, and email compromise was the most common crime businesses reported.

/03

88% after hours

Sophos found that 88% of ransomware was launched outside business hours in incidents it handled worldwide between November 2024 and October 2025.

07Build or buy

Your own security team or a managed security service provider

Most businesses under 500 staff cannot staff a security team around the clock. This is what each option really involves.

An in house security team compared with a managed security service provider
CompareIn house security teamManaged security services
Night and weekend coverNeeds a roster of several people to cover every hourIncluded, with analysts on shift around the clock
ToolsDetection, logging and training tools bought and run separatelyIncluded in the monthly price per user
Leave and turnoverCover gaps when someone is sick, on leave or resignsA whole team, so cover never depends on one person
Who fixes the problemYour team, when they are availableContained by the analysts, fixed by our engineers
Proof for insurers and clientsReports built by handMonthly reporting and evidence from Control
Best forLarge organisations with a security budget and specialistsBusinesses of 10 to 500 staff that need the cover, not the headcount

Swipe the table sideways to see every column.

08Getting started

From assessment to protected in four steps

You keep working as normal. We roll protection out in stages so nothing breaks along the way.

  1. Step 1

    Free security assessment

    We review your devices, Microsoft 365, email and backups and score you against the Essential Eight.

  2. Step 2

    Plan and fixed quote

    You get a recommended SecureShield level, the gaps to close as a fixed price project and the monthly price.

  3. Step 3

    Staged rollout

    Detection, patching and identity protection go live first, then policies and training, tested as we go.

  4. Step 4

    Reporting and reviews

    Every alert is handled and explained. Control adds a monthly security report, and Command adds quarterly reviews with a virtual CISO.

09Client stories

Security uplifts and what they led to

Essential Eight work for Perth businesses, from an independently audited Maturity Level 1 to approval to start work with a new client.

Powertech engineers reviewing plans on a tablet at an industrial site

Engineering · Cyber security

Powertech case study

Essential Eight ML2 alignment and approval to start work with a new client.

Two Palisades consultants working together at a laptop

Consulting · Cyber security

Palisades case study

Met a prospective client's security requirements and won the partnership.

Fourteen client stories in full, with the numbers.

All client success stories

10Recognised and certified

A top 50 MSP in Australia, three years running

Cloudtango named Austin Technology in its top 50 managed service providers in Australia in 2024, 2025 and 2026. We are also certified to ISO 27001 and ISO 9001, so the way we protect your data and run your service is checked by an independent auditor every year.

Cloudtango Top 50 MSP in Australia 2026, 2025 and 2024
Top 50 MSP in Australia Cloudtango, 2024, 2025 and 2026. Assessed on client satisfaction, growth and the depth of our security, support and infrastructure services. Read our client reviews on Cloudtango
Austin Technology engineers at work on the service desk in Subiaco
ISO 27001 certified by Compass Assurance Services

ISO 27001

Information security

Our information security management system covers how we handle client data, credentials and access to your systems, certified by Compass Assurance Services and audited every year.

How we protect your data
ISO 9001 certified by Compass Assurance Services

ISO 9001

Quality management

Support tickets, projects and onboarding follow documented processes, so you get the same standard of work whichever engineer picks up your job. Ask us for our certificates when you run a supplier review or tender.

11Questions

Managed security questions

What owners and IT managers ask before they choose a managed security service provider. Anything else, call 1300 787 429.

01

What are managed security services?

Managed security services are a team that watches your systems for attackers around the clock and acts when it finds one, so you get the protection of a security team without hiring one. Ours combine a 24/7 security operations centre with the Australian engineers who already look after your IT.

02

How much do managed security services cost?

SecureShield is priced per person per month excluding GST: Core is $25, Control is $60 and Command is $100, and every level covers every person and device. The initial assessment and any work to close gaps are quoted as a fixed price project before the level starts. For a quick estimate, get an instant price.

03

How is managed security different from managed IT?

Managed IT keeps your systems running and your staff productive. Managed security looks for threats, stops them and proves your controls work. Many businesses buy them from two providers and lose time in the gap between them. We provide both, so the team that spots a problem is the team that fixes it. See managed IT services.

04

What is SOC as a service?

A security operations centre, or SOC, is a team of analysts who watch security alerts all day and night and respond to real attacks. SOC as a service gives you that team for a monthly fee instead of building your own. It is included on every SecureShield level.

05

Do we need a SIEM?

A SIEM collects logs from Microsoft 365, devices and your network in one place, so an investigation takes minutes instead of days and you have evidence for auditors and insurers. It suits businesses with compliance obligations or clients who ask hard questions. Centralised security logging is included from SecureShield Control.

06

What happens if we are attacked at night?

The security operations centre sees it, confirms it is real and contains it, by locking the account or isolating the device where it is safe to do so. Our engineers then clean up, restore what is needed, find how the attacker got in and give you a written summary.

07

Can we change plans later?

Yes. Many clients start on Core and step up to Control or Command when a contract, insurer or board asks for more. Moving up is a change to your agreement rather than a new project. The controls already in place carry over.

08

Will this help with the Essential Eight or SMB1001?

Yes. SecureShield Control maintains your controls at Essential Eight Maturity Level One with SMB1001 Gold alignment, and Command maintains Maturity Level Two with SMB1001 Diamond alignment. Reaching each level is a fixed price project, and the monthly service keeps you there with the evidence. Maturity Level One protects against opportunistic attackers and is the right first target for most businesses. Maturity Level Two adds tighter patching, stronger authentication and more logging. Certification itself is issued by an independent body. See Essential Eight and SMB1001 certification, or download the Essential Eight checklist.

09

Do we have to report a cyber attack?

Sometimes. If your business turns over $3 million or more and makes a ransomware or extortion payment, it must be reported to ASD within 72 hours. If personal information may have been exposed, the Notifiable Data Breaches scheme gives you 30 days to assess the breach and notify the OAIC and the people affected. Our incident response plan, included from Control, sets out who does what and which clocks start, and we work through it with you. See cyber incident response.

10

Do we have to change IT provider?

No. SecureShield works best alongside our managed IT, because patching, devices and Microsoft 365 are then looked after by the same team that watches your security. If you have your own IT staff, we run SecureShield alongside them and agree who owns what. If you have another IT provider, talk to us about how we can work alongside them.

Client feedback

What our clients say

800+ reviews from the people who call our Perth service desk every day.

  • Simplesat700+
  • Cloudtango30+
  • Google70+
01 / 09
  • “Turns every IT problem into a non-issue”

    Arthur turns every IT problem into a non-issue and does it with real patience and professionalism. He explains things in a way that makes the process easy and always leaves us feeling supported. We appreciate the way he handles every request.

    Bronte J.Indian Ocean Hotel
  • “Patient, capable and a genuine listener”

    The support was outstanding. Patient, capable and a genuine listener, which is rare in support calls. He took the time to understand the issue and work through it with care. You are fortunate to have him on your team and the level of service was impressive.

    Peter MidgleyPowertech
  • “Steady, thoughtful and stress free”

    Jamie put in a great deal of effort to resolve the problem and it showed in the result. His approach was steady and thoughtful and the support was appreciated. It made the whole experience smooth and stress free.

    Jason CavallaroCallidus Process Solutions
  • “Resolved the issue within minutes”

    The consultant knew exactly what to do and resolved the issue within minutes. He talked through each step so I understood what was happening and made the process simple. The clear communication and fast resolution made a real difference.

    Kirk LentonPilbara Construction
  • “The extra guidance made it more valuable”

    Brady tracked down an email I could not locate and took the time to show us how to search more effectively in the future. The extra guidance was helpful and made the experience more valuable. His support was straightforward and appreciated.

    Tony YoungOptimus Real Estate
  • “Resolved quickly, with none of my work lost”

    They resolved my issue quickly and efficiently, which meant I didn’t lose any of the work I had done today. The support was clear and straightforward, and the outcome made a real difference to my day. Thank you.

    Warner PriestInterContinental Energy
  • “Calm, patient and always willing to help”

    Dev Sandhu is outstanding in his knowledge and support. He has a calm and patient way of working through any IT issue and is always willing to help at short notice. His positive attitude makes the whole experience easier and more reassuring. Thank you to Dev and the team at Austin for the consistent support.

    Peter AlexanderKoch Solutions
  • “A calm and methodical engineer”

    Chris Wade is a great engineer and I have a lot of respect for his professionalism. He approaches every issue with a calm and methodical attitude and communicates clearly so I always understand what is happening. His steady approach and reliability make a real difference to our team, and his support is always appreciated.

    Paul GreenGlobal Cardiology
  • “Refreshing after two unreliable IT providers”

    After dealing with two unreliable IT providers in recent years, it has been refreshing to place my trust in Greg and the team at Austin. They have been professional and highly competent, even under pressure. Their support has made a real difference. Thank you, and keep it up.

    Mark HutchisonLifewood
Trusted by 300+ organisations
Thyssenkrupp FLSmidth InterContinental Energy Global Cardiology Koch Solutions Callidus Process Solutions Carers WA Powertech Acclaim Visagio Roshana OGS Global Genus Lifewood

12Managed security services

Find out what an attacker
would find first.

Book a free security assessment. We check your Microsoft 365, devices, email and backups, then show you the gaps, the fixes and which SecureShield plan fits.

Or call 1300 787 429

Level 2, 541 Hay Street, Subiaco WA 6008 Onsite across the Perth metro area. Remote support across regional WA and Australia.
Scroll to Top