Cybersecurity product advisory

Products promise a lot. We help you work out what’s real.

The hard part is knowing what will work for your risks, tools, budget and team. We combine deep product research and hands-on know-how to narrow your options to the few worth evaluating.

Trusted by Australian organisations

350+
Organisations supplied since 2006
70,000+
People covered by tools we supplied
20
Security categories researched
1,700+
Product features compared

Where to intervene

What you’re considering may be right. It may not be the whole picture.

We look at the attack path, your environment and what we’ve seen work to find the best places to intervene.

Problem

Malicious email is reaching your users.

You’re considering security awareness training to solve it.

Attack path
  1. Attack step 1: Email arrives

    Email security

    Tune, upgrade or replace

    Other place to intervene
  2. Attack step 2: User clicks

    Security awareness training

    Help users spot and report

    What you’re considering
  3. Attack step 3: Credentials entered

    Browser security

    Prevent credential theft

    Other place to intervene

Our methodology

The Tekspace Fit Method.

We turn your cyber problems into evidence-based product decisions.

  1. What are we solving for?

    We start with you: the problems you're facing and the outcomes you are looking for. We listen to what you have already explored, and we do not assume that what looks like the obvious answer is the right one.

    You keep: Problem brief. The agreed problem and what success looks like.

  2. What could change the answer?

    We map the relevant environment around the problem, including existing tools, identity, users, architecture, your critical data, exposure and the people who will operate the solution.

    You keep: Environment map. Your tools, identity, users and constraints.

  3. Which options deserve your time?

    We combine your context with what we already know from hands-on testing, vendor research, previous proofs of value, deployments and client feedback. The market gets smaller quickly.

    You keep: Shortlist with reasons. Why each option made it, and why the rest did not.

  4. Does it actually work here?

    The strongest options move into a proof of value. Where the decision is more complex, we help define what needs to be tested so the product is judged against the problem you started with.

    You keep: Proof-of-value results. How each option did against your problem.

  5. Deploy, train, make it yours.

    If you need help deploying the selected product, we can provide it. Once the technology and your people are ready, we step back. You retain operational ownership.

    You keep: Handover plan. Deployment, training and who owns what.

Example · UnderstandProblem brief

01 · Understand

What are we solving for?

We start with you: the problems you're facing and the outcomes you are looking for. We listen to what you have already explored, and we do not assume that what looks like the obvious answer is the right one.

You keep: Problem brief. The agreed problem and what success looks like.

Malicious email is reaching your users.

  • Outcome wantedFewer phishing incidents reaching staff
  • Already exploredAn awareness-training trial
  • Obvious answerMore trainingNot assumed

We don’t assume the obvious answer.

Example · MapEnvironment map

02 · Map

What could change the answer?

We map the relevant environment around the problem, including existing tools, identity, users, architecture, your critical data, exposure and the people who will operate the solution.

You keep: Environment map. Your tools, identity, users and constraints.

Malicious email is reaching your users.

  • Existing tools and processesMicrosoft 365 E3
  • IdentityEntra ID
  • Users240
  • ArchitectureCloud-first
  • Critical dataClient records
  • ExposureFinance team targeted
  • Who operates it2-person IT team
Example · NarrowShortlist with reasons

03 · Narrow

Which options deserve your time?

We combine your context with what we already know from hands-on testing, vendor research, previous proofs of value, deployments and client feedback. The market gets smaller quickly.

You keep: Shortlist with reasons. Why each option made it, and why the rest did not.

Email security

  • The market16
  • Credible6
  • Worth your time3ABC
Example · ProveProof-of-value results

04 · Prove

Does it actually work here?

The strongest options move into a proof of value. Where the decision is more complex, we help define what needs to be tested so the product is judged against the problem you started with.

You keep: Proof-of-value results. How each option did against your problem.

Proof of value
A
B
C
  • Detection quality
  • Compatibility
  • False positives
  • Operational effort
  • User impact
  • Deployment complexity
  • Commercial fit
Example · EnableHandover plan

05 · Enable

Deploy, train, make it yours.

If you need help deploying the selected product, we can provide it. Once the technology and your people are ready, we step back. You retain operational ownership.

You keep: Handover plan. Deployment, training and who owns what.

BOption B

Tekspace

Your team

  1. Deploy
  2. Train
  3. Make it yours

Guidance, not a transaction

From the first meeting, we think about what’s next.

We agree your goals, tools, people and constraints with you once, keep them current, and measure every recommendation against them.

“We don’t forget what we learn about your organisation. So when the next problem comes up, the advice already fits how you work.”

Frank De Pasquale, CEO
Example · Working together over time
  1. Malicious email is reaching your users.Email securityAll five steps run.

  2. Known flaws are being exploited before you patch them.Patch managementUnderstand and Map already agreed. Narrow, Prove and Enable run.

  3. Stolen passwords are letting attackers sign in.Password managementUnderstand and Map already agreed. Narrow, Prove and Enable run.

Agreed once, kept currentProof of value runs every time.

Tekspace Research

We publish some of what we know, we use all of it.

Four benchmarks are published. The other sixteen categories are internal research that shapes every recommendation we make. Sign up to get them first.Four benchmarks are published. The rest shapes our advice. Sign up to get it first.

Read the published research

3 published · 1,700+ features compared

  • Vol. 01 · Published benchmark

    Email Security

    Catches what Microsoft 365 and Google let through, before and after it reaches the inbox.

    Assessed on efficacy, not reputation.

    Vendors assessed include Abnormal, Barracuda, Check Point Harmony, Cloudflare, Darktrace, Graphus, Hornetsecurity Vade, Ironscales, KnowBe4 Egress, Material, Mesh, Mimecast, Paubox, Proofpoint, Sophos, SpamTitan, Sublime.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

  • Vol. 02 · Published benchmark

    Security Awareness Training

    Turns staff from the easiest way in into people who spot the lure and report it.

    Assessed on efficacy, not reputation.

    Vendors assessed include Adaptive Security, Barracuda, Boxphish, CyberHoot, Hacker Rangers, Hoxhunt, Huntress, ID Agent, Immersive Labs, Infosec IQ, KnowBe4, MetaCompliance, Mimecast, Ninjio, Phished, Proofpoint, Riot, SANS Institute, SoSafe, usecure.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

  • Vol. 03 · Internal research

    Endpoint Detection and Response (EDR/XDR)

    Spots and stops attacks on laptops and servers, with someone watching around the clock.

    Assessed on efficacy, not reputation.

    Vendors assessed include Bitdefender, CrowdStrike, Huntress, Microsoft Defender, Palo Alto Cortex XDR, SentinelOne, Sophos, Trend Micro.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 04 · Internal research

    Application Control

    Stops unapproved software running, and limits what approved apps can touch.

    Assessed on efficacy, not reputation.

    Vendors assessed include Airlock Digital, Carbon Black App Control, Ivanti Application Control, ManageEngine, Microsoft App Control, ThreatLocker, Trellix Application Control.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 05 · Internal research

    Patch Management

    Gets operating system and app updates onto every device quickly, without breaking things.

    Assessed on efficacy, not reputation.

    Vendors assessed include Action1, Adaptiva, Automox, Ivanti, ManageEngine, NinjaOne, Patch My PC, PDQ.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 06 · Internal research

    Vulnerability and Exposure Management

    Closes the gap between finding vulnerabilities and fixing them, worst first.

    Assessed on efficacy, not reputation.

    Vendors assessed include Action1, Automox, HCL BigFix, Ivanti Neurons, ManageEngine, NinjaOne, PDQ Connect, Qualys VMDR, SecOps Solution, Tanium, Tenable One, Vicarius vRx.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 07 · Published benchmark

    Browser Security

    Protects where your people actually work: the browser, its extensions and the AI tools in it.

    Assessed on efficacy, not reputation.

    Vendors assessed include Acium, Akamai LayerX, Apozy, Conceal, CrowdStrike Seraphic, DefensX, Harmony, KeepAware, ManageEngine, Menlo Security, Push Security, Red Access, SquareX.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

  • Vol. 08 · Internal research

    Secure Access (SASE/ZTNA)

    Connects staff to apps from anywhere, without a VPN that opens the whole network.

    Assessed on efficacy, not reputation.

    Vendors assessed include Cato Networks, Check Point, Cisco, Cloudflare, Fortinet, Netskope, Palo Alto Prisma Access, Zscaler.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 09 · Internal research

    Password Management

    Keeps every password, passkey and admin login in a vault only you can open.

    Assessed on efficacy, not reputation.

    Vendors assessed include 1Password, Bitwarden, CyberArk, Dashlane, Delinea, Keeper, LastPass, NordPass.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 10 · Internal research

    Identity and Access Management

    Gives people the right access, and takes it away the day they leave.

    Assessed on efficacy, not reputation.

    Vendors assessed include CyberArk, JumpCloud, Microsoft Entra, Okta, Ping Identity, SailPoint, Saviynt.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 11 · Internal research

    Certificate and Machine Identity Management

    Finds every certificate you own and renews it before an expiry causes an outage.

    Assessed on efficacy, not reputation.

    Vendors assessed include AppViewX, CyberArk Venafi, DigiCert, GlobalSign, Keyfactor, Sectigo.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 12 · Internal research

    CNAPP

    Finds and fixes the risky settings, exposures and live threats across your cloud accounts.

    Assessed on efficacy, not reputation.

    Vendors assessed include CrowdStrike, Microsoft Defender for Cloud, Orca Security, Palo Alto Cortex Cloud, SentinelOne, Sysdig, Upwind, Wiz.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 13 · Internal research

    Agentic AI Security

    Keeps AI agents in check: what they can reach and what they can do.

    Assessed on efficacy, not reputation.

    Vendors assessed include Check Point Lakera, CrowdStrike Falcon AIDR, Microsoft Entra Agent ID, Noma Security, Palo Alto Prisma AIRS, SentinelOne Prompt Security, Zenity.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 14 · Internal research

    Data Governance and Access Control

    Finds your sensitive data and makes sure only the right people can open it.

    Assessed on efficacy, not reputation.

    Vendors assessed include BigID, Cyera, Lepide, Microsoft Purview, Netwrix, Securiti, Varonis.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 15 · Internal research

    SIEM Data Optimisation

    Cuts what you pay to collect and store security logs, without losing what matters.

    Assessed on efficacy, not reputation.

    Vendors assessed include Cribl, CrowdStrike Onum, DataBahn, Edge Delta, Google SecOps, Microsoft Sentinel, SentinelOne Observo AI, Splunk.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 16 · Internal research

    Governance, Risk and Compliance

    Shows where you stand against the Essential Eight, ISO 27001 and other frameworks.

    Assessed on efficacy, not reputation.

    Vendors assessed include 6clicks, Archer, AuditBoard, Drata, OneTrust, ServiceNow, Vanta.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 17 · Internal research

    Penetration Testing and Exposure Validation

    Proves which weaknesses an attacker could actually use, and that your fixes worked.

    Assessed on efficacy, not reputation.

    Vendors assessed include AttackIQ, Cobalt, Cymulate, HackerOne, Horizon3.ai, Pentera, Picus Security, SafeBreach.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 18 · Internal research

    Threat Intelligence and Digital Risk Monitoring

    Watches outside your network for leaked data, fake sites and attackers naming you.

    Assessed on efficacy, not reputation.

    Vendors assessed include Bitsight, Cyble, Flashpoint, Google Threat Intelligence, Group-IB, Recorded Future, ZeroFox.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 19 · Internal research

    SOC Drift Management

    Catches when your detections and security settings quietly stop working as intended.

    Assessed on efficacy, not reputation.

    Vendors assessed include Anvilogic, CardinalOps, Nagomi Security, Reach Security, SOC Prime, Tidal Cyber.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

  • Vol. 20 · Internal research

    M365 Management

    Keeps your Microsoft 365 tenant securely configured, backed up and tidy as it changes.

    Assessed on efficacy, not reputation.

    Vendors assessed include AvePoint, CoreView, Inforcer, ManageEngine, Nerdio, Syskit, Veeam.

    What it answers: which capabilities matter, where products differ, and what to test in a proof of value.

    Internal research. Informs our advice, not yet published.

Results

Advice has to survive the real world.

An engineer's desk: a structural model on two monitors and a printed drawing
Phishing-related IT tickets

−63%

  • Before
  • After

“Engaging with Tekspace across our cybersecurity stack has been a game‑changer for our organisation.”

IT Operations Manager

Engineering consultancyAustralia

Starting problem
Phishing kept reaching staff and filling the IT queue.
What changed
Email protection and training chosen against their environment, then deployed with us.
Measured over
First 12 months after deployment
Result
63% fewer phishing-related IT tickets

How the model works

No consulting fee. Here’s how we make money.

Example · Statement of work

Scope:

Malicious email keeps getting through

  • UnderstandWhat are we solving for?$0
  • MapWhat could change the answer?$0
  • NarrowWhich options deserve your time?$0
  • ProveDoes it actually work here?$0

Consulting fee$0

Then one of three things happens.

  • You buy through Tekspace. We earn the reseller margin on the sale.
  • Something you already own solves it. We tell you. No new product, still a good outcome.
  • Nothing is right yet. No obligation to buy.

Even where we have a product we like, we’ll recommend something else if your context calls for it.

  • No consulting fee
  • If nothing fits, we say so
  • Vendor-independent
  • Operating since 2006

More results

What it looks like after we step back.

A school blazer on a hook, a lanyard card in its pocket
First 12 months
  • Participation+70%
  • Effort to run it−83%
  • Risky actionsHalved

Education · 10,000 peopleAustralia

Starting problem
Awareness training few people finished, and too much effort to run.
What changed
Three platforms narrowed to one, proven across several groups before anything was bought.
Measured over
First 12 months
Result
Participation up 70%, effort to run it down 83%, risky actions halved
A shop counter with a tablet till, card reader and receipt printer
Open critical and high vulnerabilities

−70%

  • Before
  • After

Retail · 700 seatsAustralia and New Zealand

Starting problem
Too many critical and high vulnerabilities left open across 700 seats.
What changed
Two viable options within budget, and a better one beyond it that re-opened the budget conversation.
Measured over
Eight weeks after deployment
Result
70% fewer open critical and high vulnerabilities