Cybersecurity · Poitiers (86)

Cybersecurity in Poitiers

Your IT should never let you down.

Protecting a small business, a practice or an independent professional against ransomware, phishing and data loss — with a high security posture, no jargon and no zero-risk promise.

A single point of contact · On-site within 40 km of Poitiers · Remote across mainland France

The stakes

Small organisations are not too small to be targeted.

Quite the opposite: less protected, they have become the most profitable target. The ransomware that encrypts your files on a Monday morning, the fake email that reroutes a transfer, the backup everyone assumed was reliable but no one ever tested.

48%
of cyberattack victims in France are small and mid-sized businesses
+30%
more attacks targeting small and mid-sized businesses between 2024 and 2025
~60%
of small organisations hit shut down within 18 months
  • Since 14 October 2025, Windows 10 is no longer supported: a machine that hasn’t been migrated receives no more patches and exposes your entire fleet.
  • Cyber insurers now require two-factor authentication, anti-ransomware supervision and backups that are actually tested.

These risks are real. They are also largely avoidable — provided you act before, not after.

Sources: ANSSI · Cybermalveillance.gouv.fr

The method

Act before, contain during, recover after.

No security is absolute, and we won’t pretend otherwise. The goal is concrete: reduce the attack surface, detect early, and keep your data always recoverable.

Before

Reduce exposure

Two-factor authentication, least privilege, updates, and hardening of workstations and email: fewer open doors, less risk.

During

Detect and contain

Supervision and centralised anti-ransomware to spot abnormal behaviour early, isolate what needs isolating and limit the damage.

After

Restore and document

Tested backups and a response plan: return to a safe state, understand the cause, and remove the root cause for good.

The levers

What actually protects your business.

No gimmicks: the measures that reduce risk the most for a small organisation, selected and prioritised for your setup.

Two-factor authentication & access

A password alone is no longer enough. Two-factor authentication on email and critical tools, separate administrator accounts, and permissions granted on a least-privilege basis.

EDR & anti-ransomware

A traditional antivirus doesn’t see everything. Centralised anti-ransomware supervision, according to the stack in place, to detect and block suspicious behaviour before it spreads.

Tested backups

A backup is only reliable once tested. We draw a clear line between existing backups that are verified, managed backups, encrypted off-site copies and a restore that has actually been tested.

Email & anti-phishing

Most attacks come through email. Filtering, domain authentication (SPF, DKIM, DMARC) and vigilance on payment requests, to shut down anyone impersonating you.

Hardening & attack surface

Remove anything needlessly exposed, close unnecessary services, and keep workstations, network and websites up to date: a reduced attack surface that stays verifiable and maintainable over time.

Awareness

People remain the first line of defence. Simple awareness for owners and teams on phishing and the basic reflexes — no blame, no over-engineering.

Every measure is proportionate to your size and your plan. The scope stays explicit: what’s included, what counts as a project, what falls outside. We talk about a high security posture and a reduced attack surface — not zero risk.

Insurance & compliance 2026

What your insurers and regulations expect.

Cybersecurity is no longer just good practice: it now shapes your insurance coverage and, for some organisations, your regulatory compliance.

  • Cyber insurance — two-factor authentication, anti-ransomware supervision and genuinely tested backups are now required to be covered and, above all, to be paid out.
  • NIS2 — the law of 30 March 2025 extends cybersecurity obligations to a wider range of organisations; better to prepare now than to wait.
  • End of Windows 10 — since 14 October 2025, un-migrated machines no longer receive security patches and become a way in.

Fixery does not issue certification.

We put in place and document the concrete measures expected, and coordinate exchanges with your insurer or your software vendors. Compliance remains your responsibility — our role is to make it achievable, with evidence to back it up.

The technical foundation

Email and web security, checked line by line.

Invisible settings decide whether your emails are trusted and your website hard to attack. Fixery checks and corrects them, one by one.

DNS SPF DKIM DMARC TLS HTTP headers

The goal: reduce spoofing of your domain name, phishing sent in your name and your website’s attack surface — WordPress included. These checks are part of hardening, not a decorative extra.

Who it’s for

Built for professions where a leak costs dearly.

Sole traders, small businesses and independent professionals in Poitiers and the surrounding area who handle client data, patient records or confidential files — from 1 to 20 workstations, with or without a server.

Allan Desgranges, founder of Fixery Allan DesgrangesFounder · your single point of contact
A single point of contact

Security starts with someone accountable.

Eight years in professional IT services — advanced technical support for major international accounts, then field work for large national retail chains — before founding Fixery in 2025: the rigour of large IT operations, at the scale of a small organisation.

  • A single person accountable for your security: you never explain your setup twice.
  • Professional insurance: professional liability, cyber risk and legal protection cover.
  • Discretion: least-privilege access, minimal logging, no unnecessary sensitive data.
  • An administrative address, on-site work by appointment — no walk-in reception.
The first step

Your security starts with a Diagnostic.

An audit of your equipment, your security level and your backups. A clear map of the risks, with costed and prioritised recommendations — to set a clear path rather than stacking up quick fixes.

€290 excl. VAT (€348 incl. VAT) · 2 to 3 hrs on-site · report within 5 business days

  • An audit of access, security and existing backups.
  • A map of the risks and priority points of attention.
  • Costed, ranked recommendations: critical, important, useful.
  • Fully deductible from your first month if you take out a Serenity plan within 30 days.
Your questions

What business owners ask us.

Is a small organisation really a target?

Yes, and often. Small and mid-sized businesses account for nearly half of victims in France, precisely because they have fewer protections in place. Simple, well-chosen security already makes a real difference.

Can you guarantee I’ll never be attacked?

No one can guarantee that, and we won’t promise it. Our commitment is different: sharply reduce the risk, detect early, and make sure critical data stays recoverable. A high security posture, not a slogan.

Where does a cybersecurity audit start?

With the fundamentals: who has access to what, which backups actually exist, administrator accounts, email, DNS, updates, public exposure and incident scenarios. The €290 Diagnostic sets all of this out objectively before any commitment.

Can you secure a WordPress site?

Yes: access, backups, plugins, security headers, Cloudflare, performance and attack-surface reduction. Website security is part of the same scope as your email and your workstations.

Do I have to change everything at once?

No. We prioritise: critical, important, useful. We tackle what exposes you most first, in an order that works for your business and your budget — with no needless upheaval.

Where do you work?

On-site within 40 km of Poitiers, across Grand Poitiers and the Vienne (beyond that, travel is charged), and remotely across mainland France. All visits are by appointment: the address is administrative, with no walk-in reception.

Repair. Maintain. Make it last.

Don’t wait for an incident to protect yourself.

Two paths, the same peace of mind: book a call, or book your Diagnostic to get an objective read on your exposure.

[email protected] · +33 6 08 68 44 03 · quick reply during business hours · Poitiers (86)