Cybersecurity
APPENDIX G
APPENDIX G - Cybersecurity
Why It Matters
Modern businesses face constant cyber threats – from phishing attacks and ransomware to data breaches and system intrusions. A proactive cybersecurity strategy is essential to protect your operations, customer trust, and long- term visibility. Without it, even small vulnerabilities can lead to major consequences.
What we can include
We offer a layered, business- ready approach to cybersecurity that protects users, devices and data:
- Next-gen firewalls, antivirus, and endpoint protection
- Email filtering and phishing protecting
- Multi-Factor Authentication (MFA) enforcement
- Security audits, policy development, and response planning
- Cybersecurity awareness training and phishing simulations
Benefits
- Reduces risk of data loss, downtime, and breaches
- Enhances trust with clients, partners and stakeholders
- Helps ensure compliance with industry regulations (e.g. ISO, ACSC, Essential 8)
- ISO: A structured way to manage and prove good cybersecurity
- ACSC: Australia’s trusted source of cyber threat advice
- Essential 8: The basic actions every business should take to avoid being hacked
- Defends your brand and financial stability from reputational damage
- Empowers staff to recognise and report suspicious behaviour
| Framework | Type | Applies to | Main Focus |
| ISO (ISO 27001) | International standard | Any organisation | Managing cybersecurity risks through rules, policies and controls |
| ASSC | Government authority | Australian organisation | Cyber threat guidance and best-practice security advice |
| Essential 8 | Government cybersecurity framework | Australian organisation | Stopping common cyber attacks using practical security controls |
Flexible Engagement Options
We offer cybersecurity as part of our ongoing managed IT services, or as a standalone engagement for businesses needing:
- One-time security hardening
- Pre-audit preparation
- Compliance remediation
- User training programs
- Incident response planning
Cybersecurity Services Pricing List
| Audit Type |
Hourly rate (standard business hours)
Cybersecurity services provided during regular business hours including monitoring, updates and patching.
Per Hour $300
After hours/emergency
Urgent cybersecurity response outside business hours including active threats or breaches.
Minimum 2 hour per hour $450
Security audit (per audit)
Full cybersecurity audit covering vulnerabilities and compliance requirements.
Small business 10–50 users - from $7,500
Medium business 50–250 users - from $15,000
Enterprise or regulated organisation - from $30,000
Penetration testing (per test)
Simulated cyberattack to identify vulnerabilities in systems and networks.
Small web application - $5,000 - $15,000
Medium web application - $15,000 – $30,000
External network - $7,000 – $20,000
Internal network - $10,000 – $30,000
Cloud infrastructure - $10,000 – $40,000
Red team exercise - $30,000 – $100,000
Managed Firewall & Endpoint Protection
Ongoing firewall and endpoint security management for proactive threat prevention.
Firewall per month - $50 – $150
Enterprise or HA endpoint protection -$200 – $500
Basic AV/EDR per device per month - $5 – $15
Advanced EDR per device per month - $15 – $30
Managed EDR/MDR per device per month - $30 – $60+
Employee security training (per session)
Training to raise staff awareness of cybersecurity risks, phishing and data protection.
Live or in-person session, 60–90 minutes, 20–30 staff - $1,500 – $3,500
Half-day interactive workshop - $3,500 – $6,000
Optional add-ons
Phishing simulations per user per month - $5 – $15
Ongoing awareness platform per user per year - $20 – $50
Tailored industry content - $500 – $1,500
Incident Response Plan Development
Development of a documented response plan for cyber incidents.
Small business under 25 users - $3,000 – $6,000
Medium business 25–100 users - $6,000 – $12,000
Large or regulated organisation - $12,000 – $25,000+
Want predictable Cybersecurity support?
Managed IT clients enjoy lower hourly rates, proactive threat prevention, and strategic planning.
Ad Hoc Clients can access cybersecurity support as needed, with flexible one- time engagements.
Let us help you choose the right approach for your budget and risk tolerance.