Skip to content
Secure Network 03
Managed Workstation Business Protection Services (BPS)

Strong, Simple Security Built for Your Peace of Mind

At OXEN Technology, we know that your users' workstations are the frontline of your business—and the primary target for cyber threats. Today, you don't just need an antivirus; you need an invisible fortress. 

Our Business Protection Services (BPS) deliver a comprehensive, layered security stack built directly into every managed workstation. We combine enterprise-grade technology with 24/7 human oversight to catch what others miss, stop threats before they disrupt your day, and keep your business moving forward. 

The OXEN Advantage: Real Security, Zero Fluff

We don't just install software and walk away. We actively manage your security so you can focus on growing your business. 
30-Minute Response SLA for Active Threats
When seconds count, we don't make you wait in a queue. Critical incidents get a guaranteed response from our team within 30 minutes.
More Layers, Less Noise
Alert fatigue is real. Our BPS stack brings DNS filtering, email security, EDR, SIEM, network protection, and cloud identity monitoring together. OXEN's 24x7x365 Security Operations Center (SOC) filters out the noise, meaning you only hear from us when there are real, actionable alerts.
MFA is Required, Not Optional

Passwords aren't enough anymore. We enforce Multi-Factor Authentication (MFA) for all users as a baseline requirement through Microsoft 365 Security Defaults. Coupled with active Cloud Identity Monitoring, we catch the credential-based attacks that MFA alone might miss.

Vulnerability Correlation Closes the Loop
We don't just hand you a list of abstract vulnerabilities (CVEs). Microsoft Defender scans your devices for weaknesses and directly links them to active detections. You'll see exactly what's exposed and what's actively being exploited, allowing us to prioritize and eliminate the most critical risks first.
Circuit BG White

What’s Included in Your BPS Security Stack?

We've engineered a seamless security ecosystem where every tool talks to the others, creating a safety net that catches threats at every possible entry point. 
1
Endpoint Detection and Response (EDR) with Vulnerability Correlation
Next-generation behavioral threat detection powered by Microsoft Defender EDR runs silently on every covered workstation. But software is only half the battle. OXEN's dedicated SOC monitors these alerts around the clock, investigating every event and correlating endpoint detections against known vulnerabilities so exposures are prioritized and neutralized. 
2
SIEM with Cloud and Network Visibility

Modern threats cross multiple boundaries before striking. That's why logs from your Microsoft 365 environment, edge firewalls, and endpoints are all fed into our cloud-native Security Information and Event Management (SIEM) platform. By correlating events across all three layers, OXEN catches sophisticated threats that no single tool could ever see on its own. 

3
DNS Filtering and Network Protection

Stop danger before it even reaches the front door. Our DNS filtering blocks malicious sites, phishing attempts, and malware delivery right at the connection level. Combined with robust network protection, we enforce strict security controls at the workstation—keeping your users safe regardless of where they are connecting from. 

4
Email Security with Anti-Spam

Email remains the number one attack vector for modern businesses. We utilize advanced Microsoft email security to filter out phishing, malware, and spam long before they reach your inbox. With enforced MFA and continuous cloud identity monitoring, your user accounts are locked down and tracked for any suspicious access attempts. 

5
Workstation Monitoring and Patching
Security goes hand-in-hand with system health. We proactively monitor CPU and memory utilization against critical thresholds to keep your machines running smoothly. 
Circuit BG

Ready to Fortify Your Workstations?

Don't wait for a breach to find out if your current security is enough. Let OXEN Technology make IT simple and secure for your organization. 

Frequently Asked Questions

What's included in this service?

Managed Workstation BPS includes EDR with vulnerability correlation, a cloud-native SIEM, DNS filtering, network protection, Microsoft email security with anti-spam, cloud identity monitoring, MFA enforcement, automated patching, and hardware monitoring. It does not include labor from the Service Desk or Technical Engineers for general IT support, which requires a separate service agreement.

How does onboarding work?

OXEN deploys a remote support agent to every covered workstation at no extra charge, then layers in EDR, DNS filtering, email security, and network protection. We connect your Microsoft 365 environment and firewall logs to the SIEM, configure your patching window, and verify all monitoring is active before the service goes live.

How is this service priced?

Managed Workstation BPS is priced per workstation per month. The SIEM component includes a consumption-based cost for Microsoft Sentinel based on how many devices and data sources are connected. Your OXEN account manager will provide a detailed quote that breaks out the Sentinel cost as a separate line item.

How is this different from Managed Workstation D&R?

Managed Workstation D&R uses a third-party EDR platform and provides endpoint and cloud identity security with email filtering. Managed Workstation BPS uses Microsoft Defender EDR with Azure Sentinel as the SIEM and adds DNS filtering, network protection, and Microsoft vulnerability correlation. BPS is Microsoft-native and provides broader attack surface coverage.

What happens when OXEN detects a threat?

OXEN's SOC investigates the alert, determines scope and severity, and takes containment action. For critical incidents, we respond within 30 minutes. Remediation labor is included in the service at no extra charge. Onsite response is available for clients within 60 miles of an OXEN office.

What does OXEN monitor vs. what are we responsible for?

OXEN monitors your workstations, Microsoft 365 environment, cloud identities, firewall logs, and email 24x7x365. You're responsible for keeping devices enrolled, ensuring MFA is active for all users (required for this service), and giving OXEN the administrative access needed to respond. General IT support sits outside this service.

How quickly does OXEN respond to a security incident?

Critical (confirmed active threat): 30 minutes. High (high suspicion of compromise): 1 hour. Medium (low suspicion): 2 hours. The SOC operates 24x7x365. After-hours critical escalations: 888-296-3619.

What is vulnerability correlation and what does it cover?

Microsoft Defender vulnerability correlation scans devices where Defender is active and identifies known software weaknesses, linking them to active detections. It's narrower in scope than a dedicated vulnerability scanner but adds real value by showing you what's exposed and whether it's being targeted. All covered workstations must have Microsoft Defender installed.

Do I receive reports?

Yes. OXEN provides incident reports for every confirmed security event, detailing what was found, what was done, and what the outcome was. You'll always know when OXEN acted on your behalf and why.