Cloud-hosted security vendors upgrade on their own schedule — your configuration doesn’t always survive the transition. A Fortinet EMS incident this week shows what proactive managed security monitoring looks like when it matters most.
Cyber Security
When 600 Addresses Isn’t Enough: Building a Smarter Threat Feed
How do you manage firewall threat intelligence when your block lists outgrow the firewall’s limits? Si Futures built a dynamic threat feed to replace static Fortinet address groups — cutting overhead and scaling without limit.
Who Is Checking the AI’s Work?
AI can write code faster than any developer. The question is whether anyone is checking what it actually produced — and whether it is secure, not just functional. Si Futures ran penetration tests against their own services to find out.
The Email Authentication Gap Most Businesses Don’t Know They Have
Most businesses only discover an email authentication problem when something breaks. This post explains how SPF, DKIM and DMARC determine whether your email is trusted — and why getting them right is as much a security decision as a deliverability one.
The 6am Call: Why Verification Is Your Most Important Security Control
What happens when the 6am standby call sounds completely legitimate — but something still feels wrong? Nicholas Broderick on the verification process that protects MSP engineers and clients when AI voice cloning makes impersonation almost indistinguishable from the real thing.
Your Microsoft 365 Audit Logs Are Harder to Use Than You Think
Microsoft 365 audit logs retain 180 days of activity — but the compliance portal wasn’t built for serious investigations. Rudie de Vries explains the retention ceiling, bulk extraction via PowerShell, and what happens when the clock runs out mid-investigation.
Your Business Domain: Who Actually Owns It?
Domain security sits in a gap most businesses have never audited. If a contractor registered your domain years ago and the relationship has since ended, you may not control one of the most critical pieces of your infrastructure — including all your business email. This piece explains what that exposure looks like and what to check before it becomes a crisis.
When a Personal Device Becomes a Business Risk
A personal device signs into a work email account. That device is already compromised. Before the morning is out, spoofed payment requests have gone to suppliers with changed banking details. This piece examines how personal device security sits outside the perimeter most SMEs actively protect — and what rapid account compromise detection looks like when it works.
Why VPN and MFA Are No Longer Enough
VPN and MFA are good controls — but attackers have adapted their techniques to work around both. Si Futures explains adversary-in-the-middle attacks, MFA fatigue, and why managed threat detection is the next essential layer for any serious security posture.
