Cybersecurity checks and training

A clearer view of your security posture.

Security checks that show where you stand, reports your team can act on, and training that helps people recognise and report threats.

  • Checks scoped to your environment
  • Reports your team can act on
  • Training for staff and IT teams

Overview

Know what's exposed, what matters most, and what to do next.

What does an Intelox security assessment include?

An assessment reviews agreed parts of your environment (such as internet-facing systems, cloud configuration or user accounts) to find weaknesses before attackers do. You receive a report that ranks findings by risk, shows the evidence and sets out practical remediation steps. Training then helps your staff and IT team recognise and respond to threats.

Intelox does not currently hold security certifications. Our assessments reference recognised frameworks where relevant; an assessment is not a certification, a compliance guarantee or a promise that incidents cannot occur.

Assessments

Checks scoped to your environment.

Every assessment starts with a written scope: which systems are included, what testing is authorised and when it happens.

Vulnerability assessment

Identify known weaknesses in systems and software, then prioritise them by risk to your business.

Penetration testing

Authorised, controlled attempts to exploit weaknesses, showing what an attacker could actually reach.

Configuration and cloud review

Review of accounts, access, logging and settings in your cloud and core systems.

Maturity review

Assess current controls against a chosen framework, such as the Essential Eight, and plan the next steps.

Frameworks

Grounded in recognised frameworks.

We reference a framework only where the assessment genuinely uses it, and we'll tell you which one and why.

ACSC Essential Eight

The Australian Cyber Security Centre's prioritised mitigation strategies: a practical baseline for many Australian organisations.

ISO/IEC 27001

The international standard for information security management systems. We can reference its controls; we do not certify against it.

NIST Cybersecurity Framework

A widely used structure for describing security outcomes, useful for organising findings and priorities.

Reporting

A report your team can act on.

  • Executive summaryWhat was assessed, overall risk and the few things to do first.
  • Findings with evidenceEach issue rated by risk, with the evidence behind it and who it affects.
  • Prioritised remediationPractical fixes, in order, written for the people who will do the work.
  • Follow-up and re-testOptional review once fixes are in place, to confirm they worked.
Illustrative excerpt · fictional organisation
Finding F-03: MFA not enforced for remote email access
Medium risk
Observation
Multi-factor authentication is enabled for administrators but not enforced for 38 of 52 staff accounts when signing in to email from outside the office network.
Evidence
Sign-in policy export and a test sign-in from an unmanaged device, recorded during the authorised test window.
Why it matters
A stolen password alone would give access to mailboxes that contain invoices and customer details.
Recommended fix
Enforce MFA for all remote sign-ins, starting with finance and leadership accounts; block legacy sign-in methods.
Framework reference
Essential Eight, multi-factor authentication.

Training

Training that changes what people do.

Short, practical sessions built around the threats your people actually see.

All staff

Recognising phishing and scams, handling passwords and MFA, and knowing how to report something suspicious.

IT and technical teams

Secure configuration, access management and first steps when an incident is suspected.

Format

Online or in person, sized to your team. Session length is agreed with you when we scope the training.

Scope and limits

  • Testing happens only within a written scope and with your authorisation.
  • An assessment is a point-in-time view of the systems in scope; it can't find every weakness.
  • Intelox does not hold certifications and does not certify your organisation against any standard.
  • No assessment or training can guarantee that an incident won't occur.

FAQs

Questions buyers ask.

What's included in an assessment?

The systems, testing methods and timing agreed in a written scope, followed by a report with risk-ranked findings, evidence and remediation steps.

Which systems are examined?

Only those you include in scope, for example internet-facing services, cloud accounts, email and identity, or specific applications.

Are you certified?

No. Intelox does not currently hold security certifications. We reference recognised frameworks where they genuinely apply and tell you which ones we used.

What happens after the findings?

We walk through the report with you and agree priorities. Where follow-up is included, we can review fixes once they are in place.

Request an assessment

Start with a scoping conversation.