Skip to content

Service

Network and infrastructure management

The layer nobody thinks about until it stops. Firewalls, switching, wireless, servers and remote access, monitored continuously, patched on a schedule, and documented well enough that somebody other than the person who built it can work on it.

Monitoring interval

24 / 7

across all managed infrastructure

Most infrastructure faults are visible in monitoring before a user notices anything.

What sits under management

Managed network and infrastructure components
ComponentWhat is managed
FirewallReviewed quarterly, not left at install defaultsPolicy, firmware, VPN, threat feeds
SwitchingSegmentation limits how far an incident travelsConfiguration, VLANs, port security, uplink health
WirelessWarehouse and clinic coverage differs sharply from officeCoverage, capacity, guest isolation, roaming
ServersPhysical or virtual, on premises or hostedPatching, capacity, health, virtualisation host management
Remote accessThe most commonly exploited entry point at this scaleVPN or zero trust access, conditional policy
CircuitsWe argue with the carrier so you do notMonitoring, failover, carrier escalation on your behalf

Documentation is the deliverable

The most valuable thing produced in the first month is not a configuration change. It is a document set that means your network is no longer only understood by one person.

  • A current network diagram showing what connects to what
  • An asset register with model, serial, warranty status and location
  • Firewall rule documentation explaining why each rule exists
  • IP addressing and VLAN scheme
  • Circuit details, account numbers and carrier escalation paths
  • Credentials in a vault your business can access independently

This belongs to you, during the agreement and on the day it ends. A provider who treats documentation as their intellectual property has made switching away from them artificially expensive, which is the point.

Segmentation, in plain terms

A flat network is one large room. Anything that gets in can reach anything else, which is why an infected laptop in reception can end up encrypting a file server two floors away.

Segmentation puts walls in that room. Guest wireless cannot reach internal systems. Security cameras and building controls sit apart from business data. Payment systems are isolated, which PCI DSS requires anyway. Manufacturing equipment running an operating system that cannot be patched is contained rather than exposed.

None of this stops an initial compromise. All of it decides how much of the business that compromise reaches, which is usually the difference between an incident and a shutdown.

Common questions

Answered before you ask.

Do we have to replace our network equipment?

Not to begin with. We work with what is in place and put a refresh plan into the roadmap based on age, warranty status and risk. The exception is hardware that no longer receives firmware updates, because an unpatched firewall is an internet facing device with known vulnerabilities and it undermines everything else in the stack.

What is network segmentation and do we need it?

Segmentation divides a flat network into zones so that a compromised device cannot reach everything else. Most small business networks are flat, meaning a guest laptop, a security camera and the accounting server share the same space. Whether you need it depends on what is on the network. If you have payment systems, medical devices, building controls or manufacturing equipment, the answer is almost always yes, and several compliance frameworks require it explicitly.

Our Wi-Fi is unreliable. Is that a network problem?

Usually it is a design problem rather than a hardware one. Access points placed for cabling convenience rather than coverage, too many devices on one radio, or a warehouse specified with office grade equipment will all produce the same symptom. A site survey identifies which it is, and the fix is often repositioning and reconfiguration rather than replacement.

What happens when our internet goes down?

Monitoring detects it, usually before anyone reports it, and we open the carrier ticket and manage the escalation. Where the business cannot tolerate an outage, a secondary circuit or cellular failover is worth the cost, and for parts of Pierce County served by a single fibre route that is a genuine consideration rather than a theoretical one.

Get a network diagram you can actually use.

The assessment produces current documentation of your network, assets and firewall configuration. Most businesses have never had one.

CallFree assessment