Firewall & Network Security

Firewall deployment and office network security for NYC businesses

The box your internet provider installed was built to deliver service, not to protect a business network. It doesn’t separate staff from guests. It doesn’t control who can reach the office remotely. It doesn’t log anything you could review later. And when something goes wrong, there’s no record of what happened.

DriveTech deploys and configures FortiGate firewalls for New York City offices, separates the networks that shouldn’t see each other, closes the remote-access paths that get exploited, and leaves you with a configuration that’s written down instead of improvised.

When offices call about this

  • The cyber insurance application or renewal asks about firewall, MFA, and remote access
  • A compliance obligation — HIPAA, NYDFS Part 500, or the New York SHIELD Act — requires demonstrable safeguards
  • Moving offices or building out a new suite
  • Wi-Fi is unreliable and nobody knows how the network is actually laid out
  • A client or vendor sent a security questionnaire
  • Something already happened, and whatever was in place clearly didn’t stop it

What a firewall deployment includes

  • Review of the existing network, internet service, and equipment
  • FortiGate sizing appropriate to the office — not oversold
  • Separation of staff systems, clinical or client systems, guest Wi-Fi, and shared devices
  • Remote-access review: VPN, remote desktop, and third-party remote tools shut down or brought under control
  • Blocking of unauthorized remote-access software of the kind used in support scams
  • Logging and alerting configured so events can actually be reviewed
  • Written documentation of the configuration, handed to you

Remote access is where small offices actually get hurt

The serious incidents in small New York offices usually don’t come through the firewall. They come through something a staff member installed. Someone calls the front desk claiming to be from a vendor or from technical support, walks an employee through installing a remote-access tool, and by the time anyone notices, that session has already been used for something.

Blocking those tools at the network level and training staff to recognize the call is worth more than most of what gets sold as cybersecurity.

Firewalls are not a one-time purchase

A firewall with an expired license and firmware from three years ago is a box with a light on it. Part of this work is knowing when the subscription lapses, when firmware needs attention, and what changed on your network since the last time anyone looked.

Call 212-249-4091Request Service