Organizations ready to protect cloud accounts, employees, laptops, desktops, and eligible servers through one coordinated program.
Expanded Managed Coverage
Tech Trends Managed Defense
Shield
Managed Endpoint Detection, Response & Hardening
Extend Managed Defense From the Inbox to Every Covered Device.
Shield includes Signal and adds advanced endpoint prevention, detection, investigation, vulnerability reduction, patching, and managed response for covered devices.
Everything in Signal, plus covered endpoints, applications, device policies, vulnerabilities, and patch posture.
Fully Managed
Protection Areas
What This Package Protects
Each protection area is operated as part of one coordinated service, with the final covered population documented after discovery.
Endpoint Threats
Helps prevent, detect, and investigate malware, ransomware, fileless activity, exploits, suspicious processes, and other endpoint attacks.
Device Vulnerabilities
Surfaces vulnerable software and device exposure so remediation can be prioritized around risk and operational impact.
Patch Posture
Creates a managed patching rhythm for supported operating systems and third-party applications using agreed maintenance windows.
Endpoint Network Use
Applies supported web-content and endpoint firewall policies to reduce risky destinations and unwanted device communication.
Device and Application Hygiene
Maintains application inventory and supported device-control policies to improve operational awareness and reduce avoidable exposure.
Advanced Email Operations
Adds deeper message investigation, administrative visibility, protected outbound workflows, and policy controls where supported.
Managed Operations
How the Service Works
Connected controls provide the signals. Tech Trends provides the operating discipline, investigation context, and accountable follow-through.
- 01
Deploy and Tune
We validate eligible devices, deploy the endpoint control, define policy groups, establish patch rings, and tune protections around your environment.
- 02
Monitor and Triage
Human and automation-assisted security operations continuously review identity, email, and endpoint alerts and escalate verified threats.
- 03
Investigate and Coordinate Response
Analysts connect related signals, document the affected scope, and coordinate authorized containment or remediation actions.
- 04
Patch and Harden
Prioritized vulnerabilities feed managed patching, policy tuning, firewall updates, and hardening work through an agreed change process.
Coverage Detail
Included and Conditional Capabilities
Included capabilities form the standard package. Conditional capabilities require compatibility, permissions, licensing, or explicit scope confirmation.
Everything in Signal
Managed email, identity, collaboration, awareness, exposure, secure-browsing, and risk-review capabilities remain included.
Advanced Endpoint Prevention and EDR
Behavior-based prevention, endpoint telemetry, threat investigation, and supported remediation for covered devices.
Managed Detection and Incident Support
Continuous alert intake, classification, analyst triage, escalation, playbook guidance, and response coordination.
Endpoint Vulnerability and Application Visibility
Vulnerability findings, application inventory, and prioritized remediation guidance across eligible devices.
OS and Third-Party Patch Management
Patch review and deployment for supported operating systems and applications under agreed rings, schedules, and reboot policies.
Web Filtering and Endpoint Firewall Policy
Managed controls for supported devices, profiles, locations, and approved business requirements.
Endpoint Containment and Remediation
Process termination, file quarantine, device isolation, rollback, or similar actions depend on operating system, technical capability, and pre-agreed authorization.
Device-Control Policies
Peripheral and device restrictions require compatible endpoints and an approved policy design that accounts for business operations.
Business Outcomes
What Better Looks Like
- 01
Shorten the path from endpoint detection to informed containment and recovery.
- 02
Reduce preventable exposure through managed patching, vulnerability prioritization, and policy tuning.
- 03
Connect cloud, identity, email, and endpoint findings into a more complete investigation picture.
- 04
Give internal teams managed protection without requiring them to operate a full endpoint-security program alone.
Scope Clarity
Important Boundaries and Conditions
The proposal and signed service agreement are the final source of truth for covered users, systems, assets, actions, service levels, and exclusions.
- Network vulnerability scans, automated penetration-testing scans, Web Application Firewall protection, and private-access replacement are not included in Shield.
- Supported operating systems, device types, applications, patch catalogs, maintenance windows, and reboot behavior are confirmed during discovery.
- Endpoint deployment requires an approved agent, compatible devices, sufficient system access, and the licenses documented in the service agreement.
- Containment and remediation actions follow agreed authorization, escalation, and change-control procedures; some actions can interrupt users or services.
- Deep forensic investigation, advanced threat hunting, and outbound data-loss controls require Command or a separately scoped engagement.
Expand Coverage
Need More Coverage? Meet Command.
Move up one level when your attack surface or operating requirements extend beyond this package.10 protected-workstation minimum ($499.90/month). One protected user included per supported workstation.
Additional protected workstations at the shown unit rate.
One-time onboarding of $499.90.
12-month commitment billed monthly: $499.90 onboarding waived.
Annual prepay (10-unit minimum): 12 months for $5,498.90.
One service month free ($499.90) plus $499.90 onboarding waived.
Total first-year savings: $999.80 vs. 12 month-to-month payments plus onboarding.
USD. Final scope and additional assets are confirmed in the proposal.
Build the Right Scope
