Managed security for small businesses

Serious protection. Small‑business price.

We remove phishing from your inboxes, watch your computers and Microsoft 365 accounts for attacks, and contain threats before they spread. Automation does the watching. An analyst makes the call.

  • No hardware to buy
  • Set up in days
  • Flat monthly price
  • Every minuteNew email is checked for phishing
  • Every 5 minutesAccounts are checked for signs of takeover
  • Windows, macOS, LinuxOne service for every computer you run
  • A person decidesNothing disruptive happens without review

Why this matters

Attackers don’t skip small businesses. They count on them being unguarded.

A large company has a security team that notices a convincing fake invoice, or a laptop behaving strangely at two in the morning. A ten-person office usually has antivirus, a busy owner, and nobody whose job it is to look.

That gap is what attackers rely on: time. Hours or days in which a stolen password is used, mail is quietly forwarded, and a payment is redirected, all before anyone knows.

Our job is to close that gap. We notice early, we act quickly, and we tell you what happened.

Services

One service covering the three ways small businesses get breached.

Email, computers and accounts, watched together by one team, with one report.

Endpoint detection and response

A lightweight agent on each computer reports security events to us. Serious alerts open a case with the evidence attached, and we can cut one computer off from the network while everyone else keeps working.

  • Windows, macOS and Linux
  • Attacking addresses blocked automatically
  • The computer confirms every action taken

Microsoft 365 account protection

A stolen password is quieter than malware. We watch for the signs: hidden mail forwarding, sign-in protection being removed, and sign-ins from places your people have never been.

  • Malicious mailbox rules switched off
  • Compromised accounts locked and signed out
  • Every action reversible

Reporting and client portal

A plain-language report on what we saw and what we did, plus where your computers stand on software updates and security settings. Sign in to the portal to read it whenever you like.

  • Written for owners, not engineers
  • Evidence for insurers and auditors
  • No dashboards to learn

How it works

Machines do the watching. People make the decisions.

Most security monitoring is repetitive: collecting events, opening a case, gathering evidence, carrying out a response and checking it worked. We automated all of it. What we did not automate is judgement.

  1. Automatic

    Detected

    Suspicious activity is reported the moment it happens.

  2. Automatic

    Case opened

    With the computer or mailbox, the person, and exactly what triggered it.

  3. Automatic

    Evidence gathered

    Seen before? Trusted publisher? Known to be malicious?

  4. Analyst

    Decision

    A person reviews the evidence and approves or declines the response.

  5. Automatic

    Contained

    The action is carried out, and confirmed to have worked.

  6. Analyst

    You’re told

    What happened, what we did, and what comes next.

Cutting a computer off or locking an account stops an attack, and it also stops someone’s work. That is why a person, not a script, makes that call.

Reporting

Know what you’re paying for.

Security you cannot see is hard to trust. Every client gets a report that says, in plain language, what reached you, what we stopped, and what still needs attention.

  • Email: what was screened, what was flagged and why, and what was removed.
  • Computers: what they reported, and every action we took.
  • Exposure: which software needs updating first, and how each computer’s settings compare with recommended practice.

Client portal sign in

Pricing

Security monitoring shouldn’t need an enterprise budget.

Managed security is usually expensive for two reasons: commercial software licences charged per computer, and analysts doing routine work by hand. We removed both.

The usual approach Samson
SoftwareCommercial licences, charged per computerProven open-source software, no licence fees passed on
Routine workDone by hand, billed as analyst timeAutomated, so analyst time goes where it matters
Getting startedAn onboarding projectA few minutes per computer, no network changes
What you buy firstHardware, or a long contractNothing. A flat monthly price

A flat monthly price. Tell us how many people and computers you have and we will give you a number in one short conversation.

Ask for a quote

Getting started

From first conversation to covered, in days.

  1. We talk

    A short conversation about your business, your computers, your email and what worries you.

  2. You connect

    Run one installer on each computer, and approve our access to Microsoft 365 once. No changes to your network.

  3. We tune

    Everything starts reporting in, and we filter out what is normal for your business.

  4. We watch

    From then on, when something is wrong, we contain it and contact you.

About us

Founded on hands-on security experience.

Samson was founded by Maxwell Yass, a security engineer and Army National Guard cyber officer who has worked on both sides of an attack.

In the Guard he serves as a Cyber Warfare Officer on a cyber protection team, leading host and network analysts through incident response exercises and working in both defensive and offensive security. In industry he has been a security operations analyst protecting around 2,000 computers, and an application security engineer at Johnson Controls.

He holds a B.S. in Computer Science with a cybersecurity emphasis from the University of Wisconsin–La Crosse, and the CompTIA Security+ certification.

We built Samson because the tools that protect large companies are out of reach for the businesses that need them most. The name is deliberate: strength where it counts, holding up what matters.

Military service is described as background only and does not imply endorsement by the Department of Defense or the Army National Guard.

A figure standing between two pillars, holding them apart
  • Tested before it’s trusted

    Every change to our platform is tested end to end on Windows, macOS and Linux, from alert to containment to release.

  • Confirmed, not assumed

    When we contain a threat, the computer or account itself reports back that the action was carried out.

  • Nothing reaches into your network

    Each computer connects out to us. We open no ports on your firewall and use no remote-access tools.

  • Your access is yours to revoke

    Remove the agent or withdraw the Microsoft 365 approval, and our access is gone.

Common questions

What clients ask first.

Something else on your mind? Ask us

Do you read our email?

Software checks each incoming message as it arrives. A person sees a message only when it has been flagged, and then sees the sender, the subject, who received it and why it was flagged. We keep those details for flagged messages only, not copies of your mail.

What can you see on our computers?

Security events: who signed in, which programs ran, changes to system files and settings, and antivirus results. We do not collect the contents of your documents.

Is this antivirus or a spam filter?

No, and it replaces neither. Those block known threats automatically. We watch for what gets past them, a person reviews it, and we respond.

What happens when a computer is cut off or an account is locked?

A cut-off computer loses its network connection except to us, so an attacker can no longer control it or spread from it. A locked account is signed out everywhere and cannot sign in. Both are undone remotely once things are safe, and mail keeps arriving in the meantime.

What if you remove an email we wanted?

Tell us and we put it back. Removed messages stay recoverable for about two weeks.

Do we need an IT department?

No. If you have an IT provider, we work alongside them. If you don’t, we tell you plainly what needs doing.

Will it slow our computers down?

The agent is designed to run quietly in the background. If you ever notice an effect, tell us and we will adjust it.

Can we stop?

Yes. Removing the agent and withdrawing the Microsoft 365 approval removes our access, and we delete your enrolment.

Get in touch

Tell us about your business.

We’re taking on a small number of first clients. Write to us and we’ll set up a conversation: no sales script, no obligation.