Microsoft Cybersecurity & Zero Trust

Secure your business with a Zero Trust architecture

A unified cybersecurity architecture for European SMBs, built on the native Microsoft 365 (XDR) ecosystem. Protect your identities, endpoints, and corporate data against modern threats.

Delphisoft Cybersecurity Team
24/7 Monitored SOC
43%
SMB Threat

Global cyberattacks are directly targeting small and medium-sized businesses.

60%
Ultimate Risk

Of SMBs permanently close within 6 months of a major cyberattack.

74%
Human Factor

Of security breaches are caused by human error or misconfiguration.

Why choose a Zero Trust approach?

« Never trust, always verify. »

errorTraditional Approach

closeSingle Authentication (Passwords)

Implicit trust once the password is entered. No validation of the connection context.

closeSignature-based Antivirus (Passive)

Reactive protection based on known blacklists. Blind to "Zero-Day" and fileless attacks.

closePermanent Admin Rights

Users are local administrators on their machines for "ease" of use. Maximum attack surface.

closePerimeter Security (ACLs)

Security is tied to the storage folder (File server). If the file leaves, it's no longer protected.

closeDefault Trust

The internal network is assumed to be safe. Detecting an intrusion takes months (Average: 280 days).

check_circleZero Trust Approach

checkConditional Access (Adaptive MFA)

Continuous validation based on risk signals (Location, Device health, Application) for every access request.

checkBehavioral EDR & Compliance

Real-time analysis of processes (XDR). Data access is blocked if the device is not healthy.

checkLeast Privilege (JIT/JEA)

Standard users by default. Temporary, justified, and audited privilege elevation only when necessary.

checkInformation Protection (DLP/AIP)

Security is encrypted within the file (Labels). Data remains protected anywhere, even on a USB drive.

check"Assume Breach" (Isolation)

The network is considered compromised by default. Micro-segmentation and automatic isolation of infected PCs in seconds.

Technical Architecture

fingerprint

Identity Protection and Access Management

The new security perimeter (Based on Microsoft Entra ID)
rule
"Zero Trust" Conditional Access:Central decision engine that validates every connection in real-time based on the full context (User, Device, Location, Application).
smart_toy
Identity Protection (AI):Expanded breach detection: credentials stolen on the Dark Web, anomalous tokens, suspicious or anonymous IPs (Tor/VPN).
key
Strong Authentication (MFA):Strict enforcement of phishing-resistant MFA (FIDO2, Number Matching) to neutralize brute-force attacks and credential theft.
computer

Endpoint Security (EDR)

Active hardware protection (Based on Defender for Business)
radar
EDR (Endpoint Detection & Response):Real-time behavioral analysis to stop unknown threats (Zero-day) and malicious scripts.
auto_fix
AIR Technology (Auto-Healing):Investigation and remediation are automated 24/7. AI isolates the threat and cleans the malicious artifact without human intervention.
block
Attack Surface Reduction (ASR):Preventive blocking of risky behaviors (Office macros, obfuscated scripts, USB execution) to prevent malware installation.
mail

Email & Collaboration Protection

Securing the #1 threat vector (Based on Defender for Office 365)
delete_sweep
ZAP Technology (Zero-hour Auto Purge):Automated retroactive neutralization: removes malicious emails from mailboxes even after their initial delivery.
science
Sandboxing (Safe Attachments & Links):Virtual detonation of attachments and time-of-click link analysis to block unknown payloads.
phishing
Anti-Phishing & Anti-Spoofing:Advanced filtering of identity theft attempts, BEC (Business Email Compromise) attacks, and social engineering.
folder_shared

Information Protection (Data)

Data Security (Based on Microsoft Purview)
phone_iphone
Mobile Application Management (MAM):Containerization of corporate data on personal mobile devices (BYOD), guaranteeing strict work/personal separation.
enhanced_encryption
Data Loss Prevention (DLP):Identification and automatic blocking of unauthorized external sharing of sensitive data.
description
Information Protection (AIP):Classification and persistent encryption of sensitive documents, ensuring their protection regardless of storage location.

Powered by the Microsoft Security Ecosystem

SOLUTION POWERED BY DELPHISOFT

Akuity SOC: Your sovereign security monitoring cockpit

Go beyond basic passive protection. Connect your infrastructure and endpoints to our advanced **Akuity-SOC** detection platform to monitor, correlate, and neutralize cyber threats in real-time, 24/7.

Akuity SOC Interface

Transparent Pricing

Essentials
Designed for standard SMBs
69 EUR/Month /User
Included licenses:
checkMicrosoft 365 Business Premium and Microsoft Defender Suite
Functional scope:
checkIdentity protection
checkEndpoint security
checkEmail & collaboration protection
checkDevice management
Service:
checkSOC & Incident Response 24/7
checkSecurity Posture Maintenance
checkPatch Management
checkPhishing Campaigns & Awareness
checkSecurity Support & Remediation
auto_awesomePopular
Premium
Tailored for sensitive sectors
99 EUR/Month /User
Included licenses:
checkLicenses included in the Essential plan
addMicrosoft Purview Suite
Functional scope:
checkAll Essential tier features
addData protection
addInsider risk management
addLegal archiving
Service:
checkAll Essential tier features
addQuarterly Governance Review
addData Incident Management (DLP)
addData policy administration
addData access auditing
infoInitialization (Onboarding Pack) required: One-time setup fee of €179 / user (Initial audit, Clean Slate, enrollment, and training).

Cybersecurity Add-Ons

External Cyber-Resilience Backup

Immutable and sovereign backup of your mission-critical data (Emails, OneDrive, SharePoint) hosted on our secure servers.

€15 / month (per 100 GB tier)

Executive Reporting & Dashboards

Interactive Power BI executive dashboard to visualize blocked threats and track your security score over time.

€25 / month (Power BI license included)

Microsoft Sentinel SIEM (Investigation)

Configuration and correlation of technical event logs within Microsoft Sentinel SIEM, monitored by our security analysts.

€179 / month + Azure ingestion costs

Our Onboarding Process

01

Audit & Clean Slate

Full assessment of identities, cleanup of obsolete privileges, and removal of legacy antivirus software to prepare the environment.

02

Tenant Hardening

Implementation of security baselines, conditional access (MFA), and configuration of Defender (XDR) services.

03

Deployment (Rollout)

Gradual enrollment of user devices (Intune), drive encryption, and application of DLP policies (Premium).

04

Handover to Run (SOC)

Activation of continuous monitoring. Our SOC takes over alert handling and user awareness (Phishing).

Frequently Asked Questions (FAQ)

Category 1: Service Scope & Boundaries

1. Are Microsoft licenses included in your monthly price?+
Yes, the Guard solution is designed as an "All-inclusive" package. In the Guard Essential plan, we provide and manage the required Microsoft 365 Business Premium license. In the Guard Premium plan, we also include the Microsoft Purview Suite, which is necessary for advanced Data Loss Prevention (DLP) and insider risk management. This bundled model ensures centralized, frictionless management at a highly competitive all-in price.
2. How does Delphisoft Guard differ from a basic antivirus?+
A traditional antivirus works reactively based on known signature lists, making it blind and passive against modern threats like "Zero-Day" or fileless attacks. Conversely, Delphisoft Guard provides Managed Security Services (MSS) built on a "Zero Trust" architecture ("never trust, always verify"). The subscription includes recurring and continuous monitoring, active alert management, and precise security policy configuration. The service provides real-time threat collection and behavioral analysis using Microsoft Defender's XDR/MDR technologies. The solution handles the inventory, configuration, and compliance of your device fleet via Microsoft Intune. It rigorously manages user accounts and conditional access rules via Microsoft Entra. Delphisoft commits to an enhanced obligation of means to apply best-in-class cyber protection practices.
3. Will Delphisoft Guard replace my IT maintenance provider?+
No, Delphisoft Guard services are strictly limited to cybersecurity and do not replace a general IT maintenance service, Managed Services Provider (MSP), or helpdesk in any way. The contract explicitly excludes handling hardware failures and malfunctions affecting hardware, printers, or peripherals. Daily support for office software usage (such as Excel training or fixing Word bugs) is not included. Malfunctions related to the physical network infrastructure (cabling, switches, internet boxes, ISP) and telephony remain completely outside the scope of intervention. Our solution works in perfect synergy and as a complement to your internal IT team or your usual provider.

Category 2: Security, Confidentiality & Intervention

4. As an administrator, do you have access to our internal documents or emails?+
Absolutely not. Delphisoft guarantees that all of its employees authorized to process data formally commit to strict confidentiality. As a data processor under Article 28 of the GDPR, Delphisoft processes personal data solely on the documented instructions of the client. Processing is strictly limited to operations essential for executing the managed security services. The only categories of data collected and monitored are identification data (first name, last name, professional email, user ID), technical infrastructure data (IP addresses, hostnames, operating systems, connection logs), and security telemetry data (antivirus alerts, vulnerability statuses, installed software). Your email correspondence and the contents of your business files remain entirely inaccessible.
5. How do you respond to an active attack on our IT network?+
Automated threat monitoring (provided by Microsoft Defender EDR/XDR agents) is active 24/7 to instantly block and isolate dangers. The Guard package includes all remediation actions aimed at stopping the ongoing attack, isolating compromised equipment, and removing malicious artifacts. In-depth analysis, technical support, and human remediation interventions are carried out during business days, Monday to Friday from 09:00 to 17:00 (excluding Bavarian public holidays). Please note: Major post-disaster reconstruction operations (Disaster Recovery), such as the complete reinstallation of corrupted operating systems or the massive restoration of data (unless the Cyber-Resilience option was selected), are excluded from the package and are billed on a time and materials basis.
6. Do you handle the cleanup of a compromised network before signing the contract?+
The purpose of the subscription is to maintain and monitor a healthy IT environment. The monthly fee covers only security incidents that occur during the active contract coverage period. It does not cover the cleanup of an IT system that was historically compromised prior to your subscription (the "Patient Zero"). If our teams identify a threat or compromise during the initialization phase whose existence prior to the start date is proven by logs, the necessary cleanup and remediation interventions will be billed additionally on a time and materials basis.
7. Does the offer cover our regulatory obligations (NIS2, insurance policies)?+
From a technical standpoint, the Guard offer implements the enhanced technical and organizational measures demanded by market standards and insurance companies. We deploy strict protection protocols including strong authentication (MFA), persistent endpoint encryption, continuous threat monitoring, and access compliance enforcement. However, achieving global regulatory compliance (such as the NIS2 directive) relies on a shared responsibility model. The client strictly commits to accepting and maintaining the active security policies configured by us. The client is expressly required never to disable or bypass the installed security agents and to prohibit the installation of unauthorized (Shadow IT) or pirated software.

Category 3: Pricing, Tech & Scalability

8. What packages are available and why apply Onboarding fees?+
To adapt to the maturity and requirements of your business, our pricing is structured around two levels of support and a mandatory initialization: The Essential Package (69.00 EUR excl. tax / month / user): forms the standard security foundation. It integrates Microsoft Business Premium licenses and the Defender suite, covering identity protection, endpoint security, email analysis, and fleet compliance management. The Premium Package (99.00 EUR excl. tax / month / user): designed for more sensitive environments, it includes all Essential content and adds the Microsoft Purview Suite to guarantee advanced data protection (AIP encryption, DLP blocking) and insider risk management. The Onboarding Fees (179.00 EUR excl. tax / user as a one-time payment): deploying a true "Zero Trust" architecture requires a rigorous initial project phase (Setup) to map the existing environment, harden access, clean up old antiviruses, and configure healthy foundations.
9. Can I subscribe to the service if my company already manages its own Microsoft 365 licenses?+
Yes, our contract terms incorporate total flexibility via the "Bring Your Own License" model. If the client provides all or part of the licenses required for the service themselves (for example, via an existing contract with another reseller), they receive a direct discount on their monthly fee. In return, the client must guarantee Delphisoft the validity, compliance, and a sufficient technical feature level of these third-party licenses (requiring at least the equivalent of a Business Premium tier). The client will solely bear the legal and financial consequences arising from any non-compliance or an under-licensing situation revealed by a Microsoft vendor audit.
10. How is billing adjusted when an employee joins or leaves?+
The lifecycle of your workforce is managed to combine technical responsiveness and billing accuracy: Arrival (Onboarding): The integration of a new user or the enrollment of an additional device constitutes an active commissioning service. Consequently, each employee added during the contract gives rise to the unit billing (One-off) of the Onboarding fees, in addition to the monthly upward adjustment of the subscription volume. Departure (Offboarding): In order to immediately secure the perimeter and avoid any data leakage, services for account closure, access revocation, and remote wiping of professional data are included in the monthly package at no extra cost. The client commits to notifying us of any departure before the employee's actual exit date. Downward Adjustment: The reduction in the volume of subscribed licenses can only occur on the anniversary date of the contract, subject to a 30-day notice period, in accordance with the strict rules of the Microsoft vendor (NCE model).
11. What is the duration of the contract and how do I cancel?+
The recurring services contract is signed for a firm initial term of twelve (12) months, calculated from the date of signature or effective commissioning. At the end of this first year, the agreement is automatically renewed by tacit agreement for successive periods of twelve (12) months. Each party retains the right to terminate the contract at the end of the current annual period. The termination notice must obligatorily be transmitted by sending a registered letter with acknowledgment of receipt. A strict notice period of three (3) months prior to the end date of the current period must imperatively be respected.

Discuss your cybersecurity with an expert

Our analysts watch over your data

Delphisoft deploys its security experts to monitor and maintain your IT fleet in operational condition. Our teams assist you step by step, from the technical audit to real-time response to cyberattacks.

shieldStandardized Zero Trust Approach
verified_userCertified Microsoft Solutions Partner
support_agent24/7 Support & SOC available
* Required fields