Service reference

Protect the business without making work harder

We manage the everyday security controls, explain the risks clearly and help your team respond when something goes wrong.

Clear scope · friendly support · practical advice

Last reviewed
Applies to
London & Greater London
Written for
Businesses handling important or sensitive information

Nerdster provides managed cyber security for London businesses, covering identity, devices, email, vulnerabilities, backups and incident preparation. The service is designed to reduce practical risk while keeping technology straightforward for the people using it.

The short version

Included as standard

Everything here is covered by the agreed fee. Anything outside it is quoted in advance.

  • Endpoint detection and response
  • Email security and phishing protection
  • Multi-factor authentication and access reviews
  • Vulnerability scanning and patch management
  • Backup and recovery testing
  • Incident planning and security reporting

Start with the risks your business actually carries

Cyber security should begin with the information, systems and services the business cannot afford to lose. For most organisations that means email, Microsoft 365, customer or client records, finance systems and the ability for staff to keep working.

We review how people sign in, where information is stored, which devices can reach it, how quickly updates are applied and what would happen if a system became unavailable. That gives us a prioritised plan instead of a shopping list.

Protect identity, email and devices together

Most incidents involve more than one weakness. A convincing email leads to a stolen password; the password reaches an account without strong authentication; the account reaches information it did not need.

The controls therefore work together:

  • Multi-factor authentication and sensible access policies
  • Separate administration accounts and regular access reviews
  • Email filtering and protection against impersonation
  • Managed endpoint detection and response
  • Supported software with timely security updates
  • Web and DNS filtering where it adds useful protection

We configure them around the way your team works and explain changes before they arrive. Security that people understand is less likely to be bypassed.

Keep the work manageable

Security tools generate findings. The useful service is deciding which ones matter, fixing what can be fixed safely and giving the business a clear decision where a trade-off remains.

We review vulnerabilities, exposed credentials, unusual account activity and device health, then rank the work by likelihood and impact. The output is a short list with owners and dates, not hundreds of alerts forwarded without context.

For organisations needing analysts to investigate and contain threats at any hour, managed detection and response adds round-the-clock SOC coverage. That service may use specialist partners; the delivery and escalation model is agreed in writing.

Prepare for recovery as well as prevention

No security programme removes every possibility of an incident. A prepared business knows who makes decisions, how affected systems are isolated, which specialists need to be contacted and how safe operation is restored.

We help document that plan and test the technology underneath it. Backups are checked through restores, important contacts are kept current and responsibilities are agreed before an urgent situation.

If an incident occurs, the exact response depends on the service in place. We do not describe monitoring as incident response or promise a capability that has not been contracted.

Support certification and compliance where they apply

Nerdster is Cyber Essentials certified and helps businesses prepare for Cyber Essentials and Cyber Essentials Plus. We put the controls in place, organise the evidence and coordinate the assessment; an IASME-licensed certification body awards the certificate.

We can also support the technology and evidence required by frameworks such as ISO 27001, the NHS DSPT, FCA operational resilience and DORA. Applicability depends on your organisation, permissions and contracts. We provide the technical work and collaborate with your compliance or legal advisers rather than replacing them.

Make security part of everyday IT

Security works best when it is not a separate annual project. Joining it to device management, Microsoft 365, support, supplier management and technology planning keeps controls current as people, systems and risks change.

That is the service we aim to provide: practical protection, clear priorities and help from people who can explain what the business needs to do next.

Last reviewed , and maintained by the Nerdster engineering team.

Tell us what would make IT easier

Share what is causing problems or taking up time. Our London team replies during business hours.

We respond within 2 hours during business days. Your data is handled per our privacy policy.

Contact details

0330 043 7414

Mon-Fri 8am-6pm

[email protected]

We reply within 2 hours

71-75 Shelton Street

Covent Garden, London WC2H 9JQ

IT assessment

A review of your IT, your security posture and your compliance readiness, free of charge.

  • 30-minute consultation call
  • Infrastructure & security review
  • Compliance gap analysis
  • Custom recommendations report

What practical security looks like

Cover the common ways in

Identity, email, devices and unpatched software receive coordinated protection instead of unrelated products.

Keep security usable

Controls are designed around how people work, with clear guidance and fewer reasons to create workarounds.

Know what needs attention

We prioritise findings by business risk and give you a practical plan rather than a long list of alerts.

Respond with less confusion

Documented responsibilities, recovery steps and escalation routes help the business act quickly during an incident.

FAQ

Frequently asked questions

Do we need more than antivirus?

Yes. Antivirus is one control. Most businesses also need strong identity protection, secure email, managed updates, reliable backups, user awareness and monitoring that joins the signals together.

Can you work with our existing IT provider?

Yes. Security can be delivered alongside an internal team or another provider, provided responsibilities, access and incident handling are agreed clearly.

Can you help with Cyber Essentials?

Yes. We prepare the technical controls and evidence for Cyber Essentials and Cyber Essentials Plus. An IASME-licensed certification body carries out the assessment and awards the certificate.

What happens during a security incident?

The response depends on the service agreed. We help contain the issue, preserve useful evidence, restore safe operation and document what happened. Clients requiring round-the-clock analyst response use our managed detection and response service.