Insights
Security insight for South African business
Practical, jargon-free guidance on cybersecurity, Citrix, cloud and compliance — from a team that deploys this every day.
Phishing-Resistant MFA and Passkeys for SA Business
Your MFA may be giving you a false sense of security. SMS codes and push prompts can be phished. Passkeys and phishing-resistant MFA cannot. Here is how to make the switch.
RTO and RPO: Setting Realistic Recovery Targets
Everyone wants zero downtime and zero data loss. Almost nobody is willing to pay for it. RTO and RPO are how you make that trade-off honestly — here is how to set them.
Microsoft Entra Conditional Access Policies That Work
Conditional Access is the most powerful security control in Microsoft 365 — and the easiest to misconfigure. Here is a baseline that works, and how to roll it out without locking everyone out.
Ransomware Recovery: How Immutable Backups Save Your Data
Modern ransomware encrypts your backups before it encrypts your data. Immutable cloud backups are the only way to guarantee recovery. Here's how they work.
Government IT Modernisation: Legacy to Secure Cloud
South African government departments face mounting pressure to modernise IT while maintaining data sovereignty and security. Here is the path forward.
Endpoint Protection for Remote Workers: A Quick Guide
Your team works from home, coffee shops, and co-working spaces. Are their devices protected? 7 practical tips to secure every remote endpoint.
Azure Virtual Desktop vs Citrix DaaS: Head to Head
AVD or Citrix DaaS? Both deliver virtual desktops — but they solve different problems. Here is an honest comparison from a team that deploys both.
TrueDelta: How Cove Makes Backups 60x Smaller
Traditional backups send the entire changed file every time. Cove's TrueDelta sends only the changed blocks — making incrementals 60x smaller. Here's how it works.
Financial Services Cybersecurity: Meeting FSCA Requirements
The FSCA Joint Standard on cybersecurity is now in enforcement. Here is what financial services firms need — and how to prove compliance to regulators.
Virtual Desktop Infrastructure: A Buyer's Guide for 2026
VDI is not one-size-fits-all in 2026. On-premises, cloud, or hybrid — each model has trade-offs. This buyer's guide breaks down the real decision factors for IT directors evaluating virtual desktop delivery.
How to Plan Your Cloud Migration Step by Step
Cloud migration fails when it starts with technology instead of planning. This step-by-step guide covers assessment, strategy, execution, and rollback — built for SA businesses.
Disaster Recovery Planning: Your Business Continuity Checklist
93% of businesses without a tested disaster recovery plan close within a year of a major data loss. Use this checklist to make sure yours actually works.
5 Signs You've Outgrown Break-Fix IT Support
Break-fix IT was fine when you had five PCs. But if the same problems keep coming back and surprise invoices keep arriving, you have outgrown it.
Zero Trust Security: A Practical Guide for SA Enterprises
Zero trust is not a product you buy — it is an architecture you build. Here is how SA enterprises can implement it with tools they may already have.
Healthcare IT Security: Protecting Patient Data in SA
Healthcare is the most targeted sector for ransomware globally. South African hospitals and practices face unique challenges — here is how to address them.
NetScaler Vulnerabilities: What South African Businesses Must Do Now
Critical NetScaler vulnerabilities are actively exploited by ransomware gangs. South African businesses using Citrix ADC or Gateway must act now. Here's what to do.
How to Back Up Microsoft 365: A Complete Guide
Microsoft protects the infrastructure. You protect the data. Most businesses do not realise M365 backup is their responsibility — until they lose something they cannot recover.
South Africa's Cyber Threat Landscape: What 2025 Taught Us
South Africa ranked among Africa's most targeted countries in 2025. Here is what the threat landscape taught us — and what smart businesses are doing about it in 2026.
Protect, Detect, Recover in Practice: Building a Complete Stack
Theory is one thing. Implementation is another. Here is exactly how OAS builds a complete Protect, Detect, Recover security stack — and what each layer actually does.
POPIA Compliance in 2026: What's Changed and What to Do
POPIA enforcement is accelerating. Here is what the Information Regulator expects in 2026 — and where most South African businesses still fall short.
Automated Patch Management: Stop Chasing Updates
Every unpatched application is an open door for attackers. Automated patch management closes those doors — across every device, every week, without manual effort.
Microsoft 365 E5 Security: What You're Actually Paying For
Most organisations with M365 E5 licences use less than half the security features they're paying for. Here's what's actually included — and why it matters.
Cove Data Protection: Why Cloud-First Backup Changes Everything
Cove Data Protection backs up direct-to-cloud with no appliances, 60x smaller incrementals, and immutable storage that ransomware cannot touch. Here is why it matters.
N-able N-central: The IT Management Platform Behind the Scenes
N-able N-central is the RMM platform powering enterprise IT management. 700+ automations, 100+ third-party patches, and network discovery — all from a single pane of glass.
5 Ransomware Prevention Steps for South African Businesses
South Africa is the most ransomware-targeted country in Africa. These five steps will protect your business — and they map directly to a proven security framework.
Azure for South Africa: Data Sovereignty and Local Regions
Your data doesn't need to leave South Africa. Azure's local regions in Johannesburg and Cape Town give SA businesses POPIA-compliant cloud without compromise.
SentinelOne vs Traditional Antivirus: What's Changed
Traditional antivirus catches known threats. SentinelOne catches the ones designed to slip past it. Here is how they compare — and what the switch actually costs.
Why Your Security Strategy Needs All Three Pillars
You locked the front door but left the windows open. Most SA businesses invest heavily in one pillar of security and ignore the other two. Here is what that actually costs.
What Is EDR and Why Every SA Business Needs It
Your antivirus can only stop threats it already knows about. EDR watches what software actually does — and stops attacks in real time. Here is why every SA business needs it.
Citrix LAS Migration Deadline: What SA Enterprises Need to Know Before April 2026
Citrix file-based licensing ends 15 April 2026. If your organisation runs on-premises Citrix, the License Activation Service migration is not optional. Here is what you need to know — and what to do now.
Have a question our blog didn't answer?
Talk to an OAS specialist about your specific environment and compliance needs.