Cheddar IT
Book a call1300 757 632
Security

Layered security,
end to end.

Managed NextGen antivirus, email security against phishing and BEC, and customisable security awareness training. Monitored by the Cheddar IT team 24/7.

— Three security layers

Endpoint, email and people — covered.

Endpoints
NextGen AV
Distributed AI that predicts malware and auto-remediates before disaster strikes. USB & Bluetooth control.
Email
Spam & BEC
Multilayered detection stops phishing, BEC, payment redirect and supplier invoicing fraud.
People
Training
Customisable knowledge assessments, simulated attacks and interactive modules. AD / Azure AD sync.
Operate
Monitored
The Cheddar IT team monitors and responds to alerts across your entire environment, 24/7.
Controls

Layered, mapped and tested

Every control maps back to an Essential Eight mitigation strategy, an ISO 27001 Annex A reference, and an evidence artifact your auditor can inspect.

Identity & access
Entra ID, phishing-resistant MFA, Conditional Access, PIM, just-in-time admin.
Endpoint protection
Managed EDR, application control, USB policy, macro hardening.
Network & perimeter
Fortinet / Palo Alto operations, DNS filtering, zero-trust access.
Data & backup
Immutable backups, DLP with Purview, rights management for sensitive content.
Detection & response
24/7 SOC, SIEM on Sentinel, playbook-driven containment.
People & training
Phishing simulation, role-based training, onboarding and offboarding hardening.
When it goes wrong

Incident response, on retainer

We keep the retainer cost low and the response fast. If you call us at 3am with an active ransomware event, you'll have an engineer on the line in 15 minutes and containment in motion.

Often yes — most insurers require a nominated IR provider. We're on the panels of the major Australian carriers, so the retainer can be attached to your policy directly.
Call triaged, containment bridge opened, EDR sweep initiated, initial affected-host list produced, and your cyber insurer and legal counsel looped in if pre-agreed.
We support you. Our IR lead produces the timeline and technical summary the OAIC and APRA templates require. Your legal team runs the actual notification.
Next step

30 minutes.
One straight answer.

Book a discovery call with one of our principal engineers. We'll look at what's actually breaking, and tell you whether we're the right fit — straight up.