Plain-English writing on the things Australian small business actually gets asked about: certification, insurance questionnaires, Microsoft 365, and what to do first when the list is long and the budget isn’t.
Australia now has a cyber security standard written for businesses with no security team. Here is what the five tiers actually ask for, which one you should aim at, and what changed in the 2026 edition.
19 August 2026 · 8 min read
Read the article
Microsoft 365The oversharing review nobody wants to do, why sensitivity labels come before licences, and how to pick the two use cases per team that actually save time.
4 August 2026 · 7 min read
Read the article
ContinuityGreen ticks are not evidence. What a real restore test looks like, how often to run one, and the three failure modes that only ever show up during an actual recovery.
22 July 2026 · 4 min read
Read the article
SecurityEight controls, three maturity levels, and a lot of businesses paralysed by the grid. Which ones to do first when you are a forty-person company, not a federal agency.
8 July 2026 · 5 min read
Read the article
WebWhat the edge actually blocks, what it does not, and the one configuration mistake that turns a five-minute setup into a redirect loop.
16 June 2026 · 5 min read
Read the article
Cyber insuranceMulti-factor authentication coverage, endpoint detection, tested backups and an incident response plan. Four questions that decide your premium — and, at claim time, whether the policy responds at all.
3 June 2026 · 6 min read
Read the article
A short note on what we are seeing across Australian SMB environments — the attack that turned up three times this month, the Microsoft change worth knowing about, and anything in the compliance calendar. No product pitches, and one click to stop it.
Ask it. If it is a good question we will probably answer it here as well as to you.
No obligation. We will tell you if you do not need us.