Cyber Security Act 2021 Compliance

Endpoint Protection & Device Control

Barakat helps organisations bring laptops, desktops, and servers under control through endpoint inventory, EDR deployment, device hardening, and device-incident workflows that support the practical control expectations reflected in Section 36, Section 38, and the National Cybersecurity Policy 2021 technical measures pillar.

Endpoint control, clearly defined

For organisations dealing with unmanaged devices, outdated operating systems, weak local admin control, missing encryption, or unclear malware-response steps, this engagement turns endpoint security into a practical control programme with visible ownership and measurable outcomes.

Legal anchor

Section 36 of Sierra Leone's Cyber Security and Crime Act, 2021 addresses unauthorised interference with programs and data, including acts that damage, alter, suppress, obstruct, impair, or undermine their reliability and security. In practical terms, unmanaged endpoints, weak patching, and poor malware containment make those risks harder to control.

Section 38 addresses misuse of devices, passwords, access codes, and related tools used to facilitate cyber offences, while also recognising legitimate protection and testing activities. The National Cybersecurity Policy 2021 technical measures pillar reinforces the need for practical technical controls across Sierra Leone's digital ecosystem. This engagement focuses on approved endpoint tooling, tighter device control, and clear response actions.

Best for

NGOs Banks Hospitals Law Firms Schools Corporates

Best suited to organisations where endpoint coverage is inconsistent, unmanaged devices still connect to business systems, outdated operating systems remain in service, or IT teams need stronger control over malware response, encryption, and removable-media risk.

Deliverables

  • Endpoint deployment project
  • Device security baseline
  • Encryption rollout
  • EDR console setup
  • Incident handling runbook
  • Monthly device health review

Primary outcomes

  • Accountable inventory of laptops, desktops, and servers
  • EDR coverage grouped by department or sensitivity
  • Hardened endpoint baseline with encryption and admin control
  • Clear isolation and evidence-preservation steps for infected devices
Endpoint Inventory

Find unmanaged and outdated devices before they become the next blind spot

Many organisations still do not have a reliable list of what is actually connected, who uses each device, which systems are behind on updates, and which endpoints are effectively unmanaged. We create that baseline first so control decisions are based on facts instead of assumptions.

List all laptops, desktops, and servers and tie them to named users, teams, and business owners
Identify unmanaged devices, outdated operating systems, missing patches, and coverage gaps that leave systems outside normal control
Give management a usable inventory that can support prioritisation, remediation planning, and future monthly device health review
Placeholder illustration for endpoint inventory and device visibility
EDR Deployment

Deploy detection and response that can isolate threats before they spread

Endpoint detection and response is most effective when coverage is complete, policies are organised around business sensitivity, and response actions are defined before the first major alert hits. We help teams deploy EDR with operational clarity instead of leaving it as another console nobody fully trusts.

Install endpoint agents and organise devices by department, role, or sensitivity so policies reflect real operational differences
Enable malware, ransomware, and suspicious-behaviour detection with response actions such as isolation, scan, and quarantine
Configure the console so alerts, exceptions, and response authority are clear enough for IT teams to use confidently under pressure
Placeholder illustration for EDR deployment and response actions
Device Hardening

Reduce common compromise paths through disciplined endpoint settings

A large share of endpoint risk still comes from weak local admin control, missing disk encryption, unsafe macro behaviour, unrestricted USB use, and inconsistent password or lock settings. Hardening closes those everyday gaps before they turn into malware persistence, data exposure, or credential abuse.

Enable BitLocker or equivalent disk encryption so lost or stolen devices do not become easy data-loss events
Restrict local admin rights, disable autorun and risky macros, and lock down USB storage where the business case requires it
Enforce screen locks and password controls so everyday endpoint use supports, rather than weakens, the wider security posture
Placeholder illustration for device hardening and endpoint encryption
Response Workflows

Make the first hour of a device incident faster, calmer, and more defensible

When a laptop or workstation is infected, delay and confusion cause damage to spread. We help teams define who is called, how a device is isolated, what evidence must be preserved, and what immediate actions are expected from IT staff so the response is consistent under pressure.

Define what happens when a device is infected, including escalation points, decision-makers, and immediate technical actions
Set clear isolation and evidence-preservation steps so urgent response does not destroy the information needed for investigation
Produce a one-page response card for IT staff and a practical incident handling runbook for management and technical leads

Deliverables: Endpoint deployment project, device security baseline, encryption rollout, EDR console setup, incident handling runbook, and monthly device health review.

Urgency: If devices remain unmanaged, unencrypted, or poorly monitored, the organisation is relying on luck where disciplined endpoint control should already be in place.

Book Endpoint Security Review
Placeholder illustration for endpoint response workflows and incident handling

If endpoints are unmanaged, the rest of the security stack is carrying hidden risk

We can identify the devices, close the control gaps, deploy practical response tooling, and leave your team with a clearer and more defensible endpoint-security posture before the next infection forces the issue.

Request a Compliance Review