Tell us about your business and what worries you. A verified cyber security provider who covers your postal code will get in touch to explain what protection involves, how it is priced and what to check, before you commit to a contract.
A verified professional will get in touch.
You may not need all of these. A provider should help you decide what matters most for your business.
A review of your systems and practices, with a list of what to fix.
Software and settings that guard devices and block common threats.
Requiring more than a password, such as a second step, for important accounts.
Copying your data and being able to restore it after a problem.
Teaching people to spot suspicious emails and requests.
Watching for threats and acting when something is found.
Updates often fix known weaknesses.
Especially for email and anything holding money or customer data.
A backup you have never restored may not work when you need it.
Give people the access they need, and remove it when they leave.
Most attacks start with a convincing message to a person.
Know who to call and what to do if something goes wrong.
A written scope.
Who has access to my systems, and how it is protected.
How fast you respond, who is involved and what is covered.
And can I see evidence of your own security practices?
What you will see, how often, and in plain language.
References from a business like mine.
We'd rather connect you with the right provider once than flood your inbox with a dozen you'll never call back.
No service makes a business safe from every attack. You hear what a provider can realistically do, and what stays your responsibility.
You can ask what each service means in everyday terms and how you would know it was working.
You can ask questions and compare, and nobody pushes you to sign on the spot.
Commonly they include checking your risks, protecting computers and email, requiring stronger sign-in, backups, staff awareness training, monitoring for threats and help when something goes wrong. Which you need depends on your business.
No. Be cautious of anyone who does. A good provider explains how they reduce risk, what they monitor and what they do when something happens.
It varies with the size of your business and what you choose, plus GST or HST. Namoye doesn't set prices. Ask what is included in a fixed fee, what is charged separately, and how the price changes as your team grows.
The Canadian Centre for Cyber Security publishes free guidance for small and medium businesses, including its Baseline Cyber Security Controls. Common basics are multi-factor sign-in, keeping software up to date, backups you have tested, and training staff to spot suspicious emails. A provider can help you decide the order for your business.
It's a federal certification program that shows a small or medium-sized business has put in place a set of baseline cyber security controls. Some customers and contracts ask for it. Ask whether the provider can help you prepare for certification, and what it would cost.
It is a review, or a controlled attempt to break in, to find weaknesses, usually ending in a report of what to fix. Ask what it covers, what you get at the end and whether the testers hold recognized qualifications or accreditation, such as CREST.
Ask what the provider does, how fast they respond and what is covered. If a breach of personal information creates a real risk of significant harm, many businesses must report it to the Office of the Privacy Commissioner or the provincial regulator and notify affected people, and keep a record. You can report fraud and cyber crime to the Canadian Anti-Fraud Centre and the police. If you think you are under attack now, say so in your request and mark it urgent.
If you handle personal information, the federal PIPEDA law or provincial privacy laws apply to most businesses, and Quebec's Law 25 has stricter rules. Some industries have extra rules, for example for card payments. Ask whether the provider has experience with the rules that apply to you, and check the details with a qualified adviser.
Ask for references from similar businesses, what qualifications and accreditations their staff hold, how they protect your own data and access, and how they report to you. Be wary of scare tactics and pressure to sign quickly.
Raise it with them first, in writing. If it isn't resolved, the Competition Bureau can look into misleading claims, and a lawyer or provincial small business services can explain your options for a contract dispute.
What your business does, roughly how many people use computers, what you are worried about, and your postal code. If you don't have everything, send the request anyway.
No. Namoye is a free matching service. It doesn't provide security services. Any proposal or quote comes from the company that contacts you.
No to both. A verified provider contacts you, and Namoye is free for you.
All CA business services · Managed IT Services · VoIP Phone Systems
Namoye is a free matching service. It is not a security provider, supplier or consultant, and it doesn't give technical, legal or compliance advice. Any proposal or quote comes from the company that contacts you. No provider can guarantee your business won't be attacked. Read any contract carefully, and ask for references, before you sign.
Send your details and a verified cyber security provider will get in touch. Free, with no obligation.
Talk to a security provider