Free · 2 minutes · No sign-up required

What's Your Security Score?

Answer 10 quick questions across all security pillars and get an instant score.

1
🖥️
PILLAR 1 OF 10

Endpoint Protection

Are your computers and devices protected against malware and ransomware?

Endpoint Protection — What is it?

EDR (Endpoint Detection and Response) works like an intelligent security guard on every device. Unlike basic antivirus, it monitors behavior in real time, blocks ransomware before it encrypts your files, and alerts your IT team immediately if someone tries to break in.
Yes — EDR or next-gen antivirus on all devices
Partially — some devices have basic antivirus only
No — we rely on Windows Defender or nothing
I'm not sure
2
📧
PILLAR 2 OF 10

Email Security

Is your organization protected against phishing and malicious email attachments?

Email Security — What is it?

Email Security filters incoming messages before they reach your inbox — blocking phishing attacks, malware attachments, and business email compromise. One convincing fake email is all it takes for an attacker to gain access to your systems.
Yes — advanced email filtering and anti-phishing tools
Partially — basic spam filtering only
No — default email settings only
I'm not sure
3
💾
PILLAR 3 OF 10

Data Backup & Recovery

If ransomware encrypted all your files today, could you recover everything?

Data Backup & Recovery — What is it?

Data Backup & Recovery means automatically saving copies of all your important files to a secure, separate location. Without proper backups, a ransomware attack can permanently destroy years of business data.
Yes — daily automated backups, tested regularly, stored offsite
Partially — we backup occasionally but haven't tested recovery
No — no formal backup solution
I'm not sure
4
🌐
PILLAR 4 OF 10

DNS Protection

Are your employees protected from malicious websites, even when working remotely?

DNS Protection — What is it?

DNS Protection acts as a filter for every website your employees visit. Before connecting, it checks if the site is known for malware or phishing — and blocks it instantly. Works on all devices, even when working from home.
Yes — DNS filtering for all users including remote workers
Partially — only for office network, not remote workers
No — no DNS filtering in place
I'm not sure
5
🔍
PILLAR 5 OF 10

Monitoring & Incident Response

Is someone actively monitoring your network 24/7 for signs of a breach?

Monitoring & Incident Response — What is it?

MDR (Managed Detection and Response) is like having a security team watching your network around the clock. If an attacker gets in at 3 AM Sunday, they'll be detected and stopped — not discovered Monday morning when it's too late.
Yes — 24/7 SOC monitoring and an incident response plan
Partially — we review logs periodically, no dedicated monitoring
No — we rely on alerts only when something breaks
I'm not sure
6
☁️
PILLAR 6 OF 10

Microsoft 365 Security

Is your Microsoft 365 environment configured securely with Multi-Factor Authentication?

Microsoft 365 Security — What is it?

Microsoft 365 contains your most sensitive business data. By default it's not fully secured. MFA adds a second login step making stolen passwords useless alone. Proper hardening also includes conditional access policies and audit logging.
Yes — MFA enforced for all users, hardened with security policies
Partially — MFA enabled for some users only
No — standard passwords only, no MFA
I'm not sure
7
📋
PILLAR 7 OF 10

Compliance & Governance

Does your organization have documented security policies aligned with PIPEDA or Protected B?

Compliance & Governance — What is it?

Compliance means having documented policies and technical controls that meet Canadian privacy laws (PIPEDA) and government security standards (Protected B). Without these, you're exposed to legal liability, regulatory fines, and disqualification from government contracts.
Yes — fully documented, reviewed annually, aligned with PIPEDA/Protected B
Partially — some policies exist but not formally documented
No — no formal security policies
I'm not sure
8
🛠️
PILLAR 8 OF 10

Managed IT Services

Do you have a dedicated IT partner proactively managing your infrastructure?

Managed IT Services — What is it?

Managed IT Services means having a team that proactively monitors, patches, and maintains your technology. Reactive IT support means vulnerabilities go unpatched and security gaps grow unnoticed until attackers exploit them.
Yes — a managed service provider handling proactive IT
Partially — some IT support but mostly reactive
No — we handle IT ourselves or call when things break
I'm not sure
9
⚙️
PILLAR 9 OF 10

Infrastructure & Business Setup

Is your IT infrastructure built on modern, supported technology with documented asset management?

Infrastructure & Business Setup — What is it?

A secure business setup means your hardware is current, software is licensed and updated, and you know exactly what devices exist on your network. End-of-life systems no longer receive security patches — making them permanent vulnerabilities.
Yes — all systems current, documented, on a refresh cycle
Partially — mostly current but some legacy systems still in use
No — outdated systems and no formal asset tracking
I'm not sure
10
🎓
PILLAR 10 OF 10

Security Awareness Training

Do your employees receive regular security training and phishing simulations?

Security Awareness Training — What is it?

Security Awareness Training teaches employees to recognize phishing emails, suspicious links, and social engineering attacks. 74% of all breaches involve human error. Regular training with simulated phishing tests can reduce click rates by over 80%.
Yes — ongoing training program with regular phishing simulations
Partially — occasional training but no phishing simulations
No — no formal security training for employees
I'm not sure

Why This Matters

  • 🎯 Identify gaps before attackers do
  • 📋 PIPEDA & Protected B readiness check
  • 💡 Actionable recommendations per pillar
  • 🇨🇦 Built for Canadian businesses

Prefer to Talk?

Book a free 1-hour IT security assessment with one of our Ottawa-based engineers.

Book Free Assessment