Phishing and business email compromise
Attackers impersonate executives, suppliers, banks and trusted contacts to steal credentials, redirect payments or obtain confidential information.
Hozit helps organisations reduce cyber risk through practical security assessments, endpoint protection, Microsoft 365 security, access controls, vulnerability management, user awareness, backup planning and incident readiness.
Cyber security is no longer only an IT concern. It is a business continuity, financial, legal and reputational issue. Organisations of every size depend on email, cloud platforms, websites, servers, mobile devices, networks and third-party suppliers. Each connection creates value, but it can also create exposure.
Modern attacks often begin with ordinary business activities. A user may open a phishing email, reuse a password, approve a fraudulent login request or unknowingly share sensitive information. Attackers may exploit outdated software, exposed services, weak remote access or poor cloud configuration. The result can be business interruption, data loss, financial fraud, reputational damage or regulatory consequences.
Effective cyber security requires more than installing antivirus software. It requires a layered approach that combines technology, process, governance, user awareness, monitoring, backup and recovery. The correct controls depend on the organisation's size, industry, data, systems, risk tolerance and operational requirements.
Hozit Domain Hosting provides practical cyber security services for South African businesses, professional practices, healthcare organisations, educational institutions, public entities, retailers, logistics companies and distributed teams. We help clients identify weaknesses, prioritise remediation and implement controls that are appropriate for their environment.
Our approach focuses on measurable risk reduction. We do not treat every organisation as though it needs the same tools or budget. We assess the current environment, identify critical risks, define priorities and recommend improvements that can be implemented in phases.
Attackers impersonate executives, suppliers, banks and trusted contacts to steal credentials, redirect payments or obtain confidential information.
Reused passwords, shared accounts and missing multi-factor authentication make it easier for attackers to compromise business systems.
Laptops, desktops and mobile devices may be unpatched, unencrypted or missing suitable endpoint protection.
Cloud accounts may have weak sign-in controls, excessive permissions, unsafe forwarding rules or poor administrative separation.
Known vulnerabilities in operating systems, applications, plugins and network devices can be exploited when updates are delayed.
Backups may be incomplete, accessible to attackers or impossible to restore during an emergency.
Without an incident plan, organisations lose valuable time deciding whom to contact, what to isolate and how to communicate.
Service providers, contractors and external applications may have access to business systems and information.
The final scope is tailored to the organisation's users, systems, locations, risks and internal capabilities.
We review the organisation's technology environment, business processes, user access, systems, cloud services, backups, network exposure and existing controls. The assessment identifies weaknesses and produces prioritised recommendations.
Supported systems, websites, servers, endpoints and internet-facing services can be reviewed for known vulnerabilities, insecure configurations and unnecessary exposure. Testing is performed only with written authorisation and an agreed scope.
We help organisations deploy and manage suitable endpoint security controls for desktops and laptops. Depending on the solution, this may include malware prevention, behavioural detection, isolation, device control and central reporting.
Hozit can harden Microsoft 365 through multi-factor authentication, conditional access planning, role separation, mailbox auditing, anti-phishing controls, safe collaboration settings and account lifecycle management.
Services may include SPF, DKIM and DMARC configuration, anti-phishing controls, mailbox protection, suspicious forwarding review, domain protection and user awareness.
We help clients improve password policies, multi-factor authentication, privileged access, shared account removal, joiner-mover-leaver processes and periodic access reviews.
Operating systems, applications, plugins, firmware and network devices should be updated according to risk and operational requirements. Critical systems may require testing and approved maintenance windows.
We can review firewalls, routers, wireless networks, exposed ports, VLANs, remote access, VPNs and branch connectivity. Recommendations focus on reducing unnecessary exposure and improving segmentation.
Windows, Linux, cloud and hosting servers can be reviewed for insecure services, permissions, outdated software, weak authentication, logging, backup and configuration risks.
We assist with SSL, DNS, web application hardening, WordPress security, plugin and theme updates, access controls, backups, malware cleanup and hosting configuration.
A strong backup strategy includes multiple copies, protected credentials, offline or immutable options where appropriate, monitoring and regular restore testing.
Users learn how to recognise phishing, suspicious links, fraudulent payment requests, unsafe attachments, password risks, social engineering and reporting procedures.
We help define roles, contacts, escalation steps, evidence preservation, system isolation, communication and recovery actions before an incident occurs.
Depending on the selected tools and scope, security events can be collected and reviewed for suspicious logins, malware detections, account changes, system exposure and policy violations.
We can assist with practical policies for acceptable use, passwords, remote work, access control, backups, incident response, device management and supplier access.
Findings are prioritised into immediate, short-term and strategic actions, allowing the organisation to improve security in realistic phases.
Layered controls make it harder for attackers to gain access, move through systems or steal information.
Monitoring, clear escalation and prepared procedures help the organisation act sooner.
Backups, recovery planning and resilient configurations reduce the operational impact of incidents.
Access controls, encryption, endpoint security and user awareness reduce unnecessary exposure.
A structured security programme demonstrates that the organisation takes cyber risk seriously.
Documented controls, responsibilities and review processes create clearer accountability.
Risk-based recommendations help clients invest in the controls that matter most.
Security controls can support broader legal, contractual and regulatory responsibilities, although compliance depends on the organisation's full environment and processes.
We identify business-critical systems, sensitive information, users, locations, suppliers, legal obligations and current concerns.
We review the agreed environment, controls, exposure, access, backups, cloud services, endpoints and documentation.
Findings are ranked according to likelihood, potential impact, business criticality and remediation effort.
We define immediate actions, short-term improvements, projects, responsibilities and expected outcomes.
Approved controls are configured, tested and documented with minimal disruption to business operations.
We confirm that remediation was completed and review whether residual risks remain.
Security is reviewed over time as systems, staff, threats and business requirements change.
A fixed-scope review of the organisation's current security posture with findings and prioritised recommendations.
Implementation of agreed controls such as multi-factor authentication, endpoint protection, email security, hardening or backup improvements.
Ongoing administration, monitoring, review and security improvement according to a defined service scope.
Focused security support for identities, Exchange Online, Teams, SharePoint, OneDrive and administrative controls.
Assistance during or after a suspected cyber incident, subject to availability, authorisation and the agreed scope.
Support is subject to the agreed scope, vendor requirements, licences and available technical documentation.
Protect patient, laboratory and operational information while supporting service continuity.
Explore Healthcare solutions →Secure head offices, remote sites, contractors, devices and distributed infrastructure.
Explore Mining solutions →Protect staff, students, cloud platforms, devices and online learning systems.
Explore Education solutions →Support structured cyber risk reduction, access control, continuity and accountability.
Explore Government solutions →Protect confidential client information, email, documents and professional communications.
Explore Legal & Professional Services solutions →Secure booking systems, branches, depots, cloud services and mobile teams.
Explore Logistics & Transport solutions →Protect customer information, websites, online stores, payments and business operations.
Explore Retail & eCommerce solutions →Reduce cyber risk across offices, factories, warehouses and connected business systems.
Explore Manufacturing solutions →We focus on realistic improvements that reduce business risk rather than recommending unnecessary complexity.
Our expertise includes Microsoft 365, servers, networks, hosting, websites, cloud, backup, VoIP and managed IT support.
Security controls are aligned with business operations, budget, critical systems and continuity requirements.
Clients can engage Hozit for assessments, remediation, projects, managed security support or incident assistance.
Findings, priorities, completed actions and remaining risks can be documented for management visibility.
We support local organisations across sectors and understand the operational realities of South African businesses.
These are illustrative examples and are not presented as named customer case studies.
An organisation with recurring suspicious sign-ins may require multi-factor authentication, administrative role separation, mailbox rule review, domain protection and user awareness.
A business concerned about ransomware may need endpoint protection, patching, protected backups, restore testing, network segmentation and an incident-response plan.
A WordPress or hosted website may require software updates, access hardening, malware scanning, backup, DNS protection and hosting review.
A distributed company may need consistent firewall standards, secure remote access, central identity management, endpoint security and documented escalation procedures.
Cyber security services help an organisation identify, reduce, monitor and respond to risks affecting its users, systems, networks, cloud services and information.
Yes. We can assess the agreed environment and provide prioritised findings and recommendations.
Yes, within an authorised and clearly defined scope. Testing must be approved in writing before it begins.
Penetration testing may be available for selected environments or through specialist arrangements. The scope, authorisation, methodology and limitations must be agreed in advance.
Yes. We can assist with multi-factor authentication, access controls, mailbox security, anti-phishing settings, administrative roles and monitoring.
Multi-factor authentication requires an additional verification method beyond a password, making account takeover more difficult.
Yes. A layered approach may include email security controls, domain protection, user awareness, multi-factor authentication and clear reporting procedures.
Yes. We can help select, deploy and manage suitable endpoint protection for supported devices.
Yes, subject to availability and the nature of the incident. Immediate priorities normally include containment, evidence preservation, access control, recovery and communication.
No single tool can guarantee prevention. We reduce risk through layered controls such as endpoint security, patching, access control, segmentation, awareness and protected backups.
Yes. We can assist with updates, hardening, access controls, SSL, DNS, malware review, backups and hosting security.
Yes. Training can cover phishing, passwords, fraudulent payment requests, social engineering, remote work and incident reporting.
We can assist with technical and operational security controls that support a POPIA programme. Legal compliance should also be reviewed with an appropriately qualified legal or privacy professional.
The frequency depends on risk, industry, contractual requirements and the rate of change. Assessments should also be considered after major system changes or incidents.
Yes. Small businesses are often targeted because they may have valuable data, weaker controls and limited recovery capacity.
Yes. We can support selected firewall, router, VPN and remote-access environments.
Vulnerability management is the ongoing process of identifying, prioritising, remediating and validating weaknesses in systems and software.
Yes. We can review backup coverage, monitoring, access protection, retention and restore testing.
Pricing depends on the number of users, devices, systems, locations, required testing, tools and service scope. Hozit prepares a tailored quotation.
Contact Hozit for an initial discussion. We will define the scope, identify priorities and recommend an appropriate assessment or service.
Ongoing support, monitoring and maintenance for users and systems.
Explore Managed IT Support →Secure business email, collaboration, identities and cloud administration.
Explore Microsoft 365 →Hardening, monitoring, backup and support for business servers.
Explore Server Support →Secure firewalls, networks, Wi-Fi, segmentation and connectivity.
Explore Network Design →Managed cloud infrastructure with backup and security controls.
Explore Cloud Hosting →Secure hosting, SSL, backups and website availability.
Explore Website Hosting →Speak to Hozit about your users, infrastructure, support challenges and technology priorities.