Networks, servers and IT services engineered, deployed and supported.
We design, deploy and support the networks, servers and IT services your business runs on, vendor-neutral, with engineers experienced in Cisco, Fortinet, MikroTik, pfSense and SIEM.
Outcomes you can expect.
Network design & deployment
We design, build and configure LAN, WAN, wireless and VPN networks on Cisco, Fortinet, MikroTik and pfSense, planned for the sites, users and traffic you actually have.
Who it is for
- Organisations opening new offices, branches or sites that need a network from scratch.
- Businesses whose network grew by accident and is slow, fragile or undocumented.
- Teams linking sites, clouds and remote staff with reliable, secure connections.
What you get
- A written design with network diagrams
- Configured equipment, deployed and tested against the design
- Configuration backups and an equipment inventory
- Runbooks and a walkthrough for your team
- Support after go-live, if you want it
What we do
Survey and plan
We survey sites, users, applications and traffic, then agree the design goals: capacity, resilience, security and budget.
Design the network
We design addressing, VLANs, routing and switching, wireless, and WAN or SD-WAN links, with redundancy where an outage would hurt, and draw it all in diagrams.
Build and configure
We stage and configure routers, switches, firewalls and wireless equipment from Cisco, Fortinet, MikroTik and pfSense, keeping configuration in a repository so it can be reviewed and rebuilt.
Deploy and test
We install on site or remotely, then test failover, throughput and wireless coverage against the design before go-live.
Document and hand over
You get diagrams, configuration backups, an equipment inventory and runbooks, and your team is shown how to run what we deployed.
Technologies we work with
- Cisco
- Juniper
- Fortinet
- Palo Alto Networks
- MikroTik
- Ubiquiti
- pfSense
- OPNsense
- WireGuard
- OpenVPN
Network and infrastructure assessment
A bounded look at your network, servers and the IT that runs on them, ending in a written report and a ranked list of what to fix, replace or leave alone.
What is examined
- How the network is built, found with tooling and on-site checks rather than from an old diagram
- Firewall rules, segmentation and remote access, and what could reach what
- The age, support and capacity of servers, storage and network equipment
- Backups, logging and monitoring: what exists, and whether a restore has ever been tested
How it works
- 01 Scope. We agree which sites and systems are in the assessment and who we need to talk to.
- 02 Discover. We map the network and equipment with scanning tools and on-site or remote checks, and talk to the people who run and use them.
- 03 Assess. We test the riskiest areas, review configurations, and check each finding so it can be reproduced.
- 04 Report. We write up what we found and what to change first, in plain language an engineer and an executive can both use.
- 05 Review. We walk through the report with your team, answer questions and agree what happens next.
What you receive
- A written report with findings ranked by risk
- Network diagrams and an equipment inventory as found
- A ranked list of what to fix or replace first, with reasons
- A readout session with your team
- If you want help, we can make the changes, or hand the list to your own team.
- If the estate is sound, you keep a clear record of why, and of what to watch.
Scope and timing are agreed on a call, before anything is committed.
Firewalls, network security & SIEM
We deploy and tune firewalls, segmentation, VPN access and a SIEM, so traffic is controlled, activity is logged and suspicious behaviour is noticed and acted on.
Who it is for
- Organisations with a flat network where one compromised machine can reach everything.
- Teams with firewalls nobody has reviewed since they were installed.
- Businesses that need logs, alerts and evidence for auditors and insurers.
What you get
- Reviewed and tightened firewall rules
- A segmented network with clear zones
- Remote access with multi-factor sign-in
- Logs flowing into a tuned SIEM with useful alerts
- Reports an auditor or insurer can use
What we do
Review the perimeter
We review firewall rules, remote access and exposed services, and find the rules nobody can explain and the ones that allow too much.
Segment the network
We separate users, servers, guests and sensitive systems with VLANs and firewall policy on FortiGate or pfSense, so one breach cannot spread freely.
Secure remote access
We set up VPN and zero-trust access with multi-factor sign-in, so staff reach what they need and nothing else.
Collect and detect
We forward firewall, server and endpoint logs into a SIEM such as Wazuh, write detections for the behaviour that matters and tune out the noise.
Respond and report
Alerts go to named people with a simple playbook, and regular reports show what was seen, what was done and what changed.
Technologies we work with
- Fortinet
- Palo Alto Networks
- Cisco
- pfSense
- OPNsense
- Wazuh
- Splunk
- Elastic
- Graylog
- Wireshark
Servers, storage & data centre
We specify, supply, rack and configure servers, storage and virtualisation, on site or in your data centre, and set up the backup and recovery that protects them.
Who it is for
- Organisations buying or refreshing servers and storage who want the right specification.
- Teams running virtualisation on Proxmox, VMware, XCP-ng or Nutanix who want it built and run properly.
- Businesses that need on-premises capacity, with recovery they have actually tested.
What you get
- A sizing and specification you can defend
- Hardware procured, installed and configured
- A documented virtualisation platform
- Backups with a restore test on record
- Monitoring and a hardware lifecycle plan
What we do
Size the need
We work out compute, memory, storage and growth from what you run, so you buy what fits and not what a catalogue suggests.
Specify and procure
We specify the hardware, source it and manage delivery, with warranty and support terms agreed before it arrives.
Rack and configure
We install and cable equipment, set up firmware, RAID and storage, and build the hypervisor and virtual machines in a documented, repeatable way.
Protect the data
We set up backups, replication and a recovery plan, and run a restore test, because a backup nobody has restored is only a hope.
Monitor and maintain
We add monitoring, patching and capacity reporting, and keep a lifecycle plan so replacements are planned and not urgent.
Technologies we work with
- VMware
- Proxmox
- Nutanix
- XCP-ng
- Red Hat
- Ubuntu
- Dell Technologies
- Lenovo
- TrueNAS
- Ceph
- Veeam
Managed IT & end-user services
We run the day-to-day IT your people depend on: a service desk, device management, accounts, patching and monitoring, under a clear service level.
Who it is for
- Organisations without an in-house IT team, or with one stretched too thin.
- Businesses whose staff wait too long for simple fixes.
- Leaders who want predictable IT, with named people and clear response times.
What you get
- A service desk with agreed response times
- Managed devices, patching and accounts
- Standard builds and a repeatable onboarding process
- Monitoring of your network and servers
- Reports and a plan to remove recurring problems
What we do
Take stock
We inventory devices, accounts, licences and systems, and record how each is supported today and where the gaps are.
Standardise
We agree standard builds, naming, access, and onboarding and offboarding steps, so every new laptop and account is set up the same way.
Manage devices and identity
We manage laptops, phones, patches and security settings, and accounts through Entra ID, Keycloak or your directory, with multi-factor sign-in.
Run the service desk
Requests and incidents go to a service desk with agreed response times, a ticket history and clear escalation to an engineer.
Report and improve
Regular reports show tickets, recurring problems and risks, and we fix the causes so the same issue does not keep coming back.
Technologies we work with
- Entra ID
- Microsoft 365
- Google Workspace
- Zoho
- Okta
- Keycloak
- Jira Service Management
- Zabbix
- Grafana
- Prometheus
Ready to get started?
Book thirty minutes with our team for a clear view of scope and cost.
