FortressNet: Comprehensive, proactive network protection.

FortressNet is ES's managed secure network service, built on industry-leading infrastructure and live-monitored by CyberCommand. Designed to safeguard your digital perimeter, FortressNet ensures optimal performance, visibility and resilience across your entire network environment, from firewalls and switches to wireless access points. FortressNet delivers the network security Johannesburg businesses trust, wherever your offices sit across the city.

IS YOUR NETWORK ACTUALLY BEING DEFENDED, OR JUST SITTING THERE?

Most businesses assume their firewall and switches are handling it. Usually nobody’s watching either. This is what we typically find in the first week after taking over network security for a Johannesburg business.

FIREWALLS

Rules get added for one project and never removed. Years later, the firewall is running policy nobody can explain, with ports open that nobody remembers opening.

SWITCHES

Firmware sits unpatched because updating it means a planned outage nobody wants to schedule. Most run for years past the point a known vulnerability was disclosed.

WIRELESS ACCESS

Guest and staff devices often sit on the same network, with no segmentation between a visitor's phone and the server it happens to be on the same subnet as.

MONITORING

Logs get generated across every device and reviewed by no one until something's already gone wrong. Nobody's watching the traffic in real time.

RESPONSE

Nobody in the business can say who gets called when the network goes down, or who's accountable for the firewall rule that caused it. That gap is exactly what a managed network partner closes.

On their own, these are gaps. Together they mean a firewall running on outdated rules, switches carrying known vulnerabilities, and an outage where the only escalation path is a ticket in a queue.

As FortressNet, ES's managed secure network service, we monitor your entire network environment live through CyberCommand, from firewalls and switches to wireless access points, so your perimeter isn't just secure on paper, it's watched, wherever your offices sit across Johannesburg.

EVERYTHING IN YOUR NETWORK, IN SCOPE from day one

This is the standard engagement, not a menu. Nothing below is a surprise add-on after signing, and nothing needs a separate quote once your network audit is done.

FIREWALL MANAGEMENT

We audit every rule against what it’s actually needed for and remove what’s been left behind from old projects. Policy changes get reviewed before they’re pushed.

SWITCH AND PATCH MANAGEMENT

Firmware across your switching infrastructure is kept current on a planned schedule, not left running past a known vulnerability because nobody wanted to book the outage.

WIRELESS SEGMENTATION

Guest, staff and IoT devices are separated onto their own networks by design, so a visitor’s phone is never sitting on the same subnet as the server behind it.

LIVE MONITORING

Every device across your network feeds into CyberCommand, monitored around the clock. Traffic gets reviewed as it happens, not after something’s already gone wrong.

INCIDENT RESPONSE

When something’s flagged, there’s a named path for who’s contacted and who acts, agreed in advance. No guessing who to call when the network goes down.

Ongoing support

Firewall, switch and wireless support delivered inside ESMS bundled support. No per-incident billing every time a rule or configuration needs changing.

A FIREWALL IS ONLY AS GOOD AS THE RULES NOBODY'S CHECKED IN YEARS

Most network breaches we get called in on Johannesburg SMEs didn’t start with clever attackers. They started with a port opened for a project that ended eighteen months ago, firmware nobody scheduled time to patch, and a guest network sitting on the same switch as the finance server.

 

RULES REVIEWED, NOT INHERITED

We don’t take over a firewall and leave the existing ruleset running on faith. Every rule gets checked against a current business reason, and anything left over from a project that’s long since ended gets closed.

A PAPER TRAIL WHEN SOMEONE ASKS

What’s segmented, what’s patched and what changed, and when, is documented as it happens. So when a client, insurer or auditor asks how the network’s secured, the answer already exists.

SOMEONE'S ACTUALLY WATCHING THE TRAFFIC

Your firewalls, switches, and access points report into CyberCommand around the clock. An unusual pattern gets flagged and assessed as it happens, not when someone’s going through logs after an incident.

PATCHING ON A SCHEDULE YOU CAN PLAN AROUND

Firmware updates happen on a cycle we agree with you upfront, so a known vulnerability doesn’t sit open for a year because nobody wanted to own the downtime.

WHAT IT COSTS TO HAVE YOUR NETWORK properly managed

There is no per-device figure on this page, because any number we published would be wrong for most of the businesses reading it. Cost comes down to three things: how many sites and devices you’re running, how complex the segmentation and monitoring needs to be, and whether this is a standalone network engagement or bundled into ESMS managed support. A single-office setup with a handful of switches is a different job to a multi-site business running its own wireless and firewall infrastructure across Johannesburg, and the quote reflects that, not a standard rate card.

01 FIREWALL AND SWITCH MANAGEMENT

02 MONITORING THROUGH CYBERCOMMAND

03 SECURITY CONFIGURATION AND ONGOING PATCHING

Who this is for

This is for businesses whose network has grown organically (a firewall here, a switch added there) without anyone owning the whole picture, and for anyone who's had an outage they couldn't explain or fix quickly.

How it works

1
Assessment
reviewing your current firewalls, switches and wireless access points
2
Design
closing gaps and planning for growth
3
Deployment
configured and brought under management with minimal disruption
4
Ongoing Management
monitored, patched and supported by CyberCommand, 24/7

frequently asked questions

Do we need to replace our existing firewalls and switches?

Not necessarily, we assess what you have first and only recommend replacement where your current hardware genuinely can’t do the job.

FortressNet covers however many sites you have, giving one consistent standard of protection across all of them.

FortressNet manages and secures the network hardware itself. Secure SD-WAN is about how traffic is intelligently routed between sites. Many clients use both together.

FortressNet is live-monitored by CyberCommand, so issues are typically identified before you notice them yourself.

No cracks, no backdoors. Just pure, unbreakable protection.

Request a network security review.