A Fortify 24x7 brand. Gauges, hourly readings and a watch desk kept for smaller firms.Client sign inReach the desk
CyberThreat Management
Front 04 / Device fleet

You cannot log a station you have not written down.

Any weather office begins with a list of its stations and whether each one is reporting. A business estate is no different. This front covers what the hardware is, whether updates landed, what it may reach, and whether anyone would notice it going quiet.

N-able N-sightAddigyZimperium
Four lines. Desktop, laptop, Mac and the handsets nobody counted.
Lines posted4
Read byN-able N-sight, Addigy, Zimperium
UnitDevice
CoversDesktop, laptop, Mac, handset

Patching is dull, and it is the bulk of the work

A large share of the incidents reaching a small firm arrive through something that had a fix available and never had it installed. Nobody enjoys hearing that, because it is not a story about clever attackers. It is a story about the machine behind the counter that has wanted a restart since March.

N-able N-sight keeps the station list, reads operating system and third party patch state, runs checks against disk, memory and services, and hands our engineers a way to fix most of it with nobody stood at the desk. Filtering rides that same agent, and so a laptop keeps its web and lookup controls in a coffee shop as readily as in the office.

It is a story about the machine behind the counter that has wanted a restart since March.

Apple and mobile stand apart for good reason

Macs get managed down Apple channels instead of being treated as odd Windows boxes, and Addigy is the instrument: enrolment, configuration, encryption state, and update campaigns landing at an hour people can live with.

Phones are the part of an estate left off the list most often, which is odd, given they read the mail and approve the payments. Zimperium reads conditions at the handset rather than routing traffic elsewhere, covering iOS and Android both, phones staff bought themselves included once enrolled.

Lines on this front

Line records and rates

Every rate here is drawn from billing as the page renders. Anything you log stays in the observation log while reading continues.

Fortify-RMMLine record

Remote Monitoring and Management

N-able N-sight, watching, patching, scripting, remote hands

The station log for your hardware. What each machine is, what runs on it, whether updates landed, and whether it has checked in lately.

  • Patch state covering the operating system and the ordinary third party software beside it.
  • Disk, memory and service checks raising a bulletin before a machine gives up entirely.
  • Remote support and scripted fixes, so most work needs nobody stood at the desk.
Observed atEach managed Windows, macOS or Linux device, from an agent aboard it
ForecastsHardware and patch conditions that usually run ahead of an outage
ArchivedDevice inventory and check history while the device stays enrolled
Issued byN-able N-sight
Confirmed atThe Fortify 24x7 desk, which acts on device bulletins as they land
Readingper managed device
charged up front, each month
QTY
Fortify-RMM-DNSLine record

Web and DNS Filtering

N-able N-sight filtering, riding an agent already installed

Name lookups get read and filtered on the agent already installed, so a machine reaching for a known bad destination is stopped with nothing extra on the shelf.

  • Category and reputation filtering, travelling with the laptop and not with the building.
  • No extra appliance, and no rerouting of your network to make it work.
  • Blocked lookups get logged, often the first hint that something reached a machine.
Observed atName lookups made by the managed device, wherever that device has got to
ForecastsContact with destinations already known for causing harm
ArchivedBlocked and permitted lookup records, held for review
Issued byN-able N-sight
Confirmed atThe Fortify 24x7 desk, which treats repeated blocks as a signal worth chasing
Readingper managed device
charged up front, each month
QTY
Fortify-ControlLine record

Apple Fleet Management

Addigy across Mac, iPad and the rest of the Apple estate

Apple hardware managed properly, not trusted to remember its own settings. Enrolment, configuration, updates, and a real answer to where any device has got to.

  • Zero touch enrolment, so a new Mac turns up configured instead of turning up blank.
  • Disk encryption state and recovery keys, kept somewhere you can genuinely reach them.
  • Update campaigns landing to a schedule people can live with.
Observed atEach enrolled Apple device, down Apple management channels
ForecastsDevices drifting off whichever configuration you agreed they should hold
ArchivedConfiguration and compliance history per device, for as long as enrolment lasts
Issued byAddigy
Confirmed atThe Fortify 24x7 desk, which owns the configuration and the change record
Readingper Apple device
charged up front, each month
QTY
Fortify-MobileLine record

Mobile Threat Defense

Zimperium reading conditions at the handset

Phones read mail and approve payments, so they belong to the estate whether or not anybody wrote them down. This line hangs a gauge on them.

  • Reading at the device of application behaviour, network conditions and operating system state.
  • It works on the handset rather than by routing your traffic through somebody else.
  • iOS and Android both, phones staff bought for themselves included, once enrolled.
Observed atThe handset itself, through an app the user installs and enrols
ForecastsHostile networks, tampered handsets, and applications conducting themselves unlike their description
ArchivedDevice risk history, while the handset stays enrolled
Issued byZimperium
Confirmed atThe Fortify 24x7 desk, which reads handset bulletins beside the rest of the estate
Readingper mobile device
charged up front, each month
QTY
Honest scope

Where this front stops

Fleet work is the least glamorous part of an estate and the part that quietly decides how the rest goes. Here are the edges.

  • Coverage follows enrolment. Enrol a device or it reports nothing, gets patched by nobody, and falls under no line here. That covers the spare machine in the stockroom too.
  • Filtering is not a firewall. Lookup control and web category control stop a great deal of ordinary trouble. A properly configured network they are not, and we will not describe them that way.
  • We do not read personal content on a handset. Conditions at the device and in its applications are what the mobile line reads. Seeing what somebody types is not among them, and running it that way is something we would decline.
  • Hardware still fails. Monitoring tells you a disk is on the way out before it goes, worth a great deal. Replacing the disk is not included, and a machine never enrolled gets no warning at all.
  • Your network gear is not in scope. Switches, access points and whatever router the internet provider left behind sit outside these lines unless something separate is agreed in writing.
NOTICE 01

Heads up: card statements show FORTIFY 24X7 - CyberThreat Management is a Fortify 24x7 brand, and your subscription is billed by Fortify 24x7.