Skip to content
Doctor PC

Cyber security

IT security audit

You cannot protect what you do not know you have. An audit puts on paper which systems exist, who can reach them, what is unpatched, and where the chain would break if somebody tried.

Prim-plan cu circuitele unei plăci electronice

What is included

01

Full inventory

What hardware, what systems, what applications, what accounts. Something nobody remembered was running almost always turns up.

02

Access analysis

Who can reach what, which accounts hold administrator rights, which former employees' accounts are still active.

03

Vulnerability scanning

Unpatched systems, services exposed to the internet, default configurations left unchanged.

04

Backup verification

We test a real restore. It is the most common place where the assumption does not match reality.

05

The human factor

We assess phishing exposure and password practices — where most incidents actually begin.

06

Prioritised report

Every finding gets impact, likelihood and remediation effort. You know exactly what to do on Monday morning.

What you receive

A document management can read, not only IT: findings explained as business risk rather than technical jargon. Each point carries a concrete recommendation and an effort estimate.

Separately, a detailed technical list for whoever carries out the fixes.

No sales pressure

The audit can be done even if somebody else performs the remediation — including your own internal team. The report is yours and is written so it can be used without us.

Findings are not inflated to make the need look bigger. If the situation is good, we write that.

Frequently asked questions

01How long does an audit take?

For a company with 20–50 workstations, a week from receiving access, plus a few days to write the report. It does not interrupt operations.

02Do you need access to our data?

Not to its contents. We need read access to configurations, the user list and system status. We sign a confidentiality agreement before starting.

03How often should it be repeated?

Annually for a company with stable infrastructure, or after any major change — new premises, cloud migration, significant team growth.

Let's work out exactly what you need.

We look at the current situation, tell you what is worth changing and what can wait, then you get a quote with clear figures.

Request a conversation

Write us a few lines about the situation in your company and we will come back with a concrete proposal.