---
title: "Endpoint and server protection | Avepto"
canonical_url: "https://avepto.ch/en/cybersecurity/antivirus"
last_updated: "2026-09-13T20:46:37.091Z"
meta:
  description: "Managed EDR for Mac, Windows and servers: behavioural detection, isolation and incident response operated from Geneva."
  "og:description": "Managed EDR for Mac, Windows and servers: behavioural detection, isolation and incident response operated from Geneva."
  "og:title": "Endpoint and server protection"
  "twitter:description": "Managed EDR for Mac, Windows and servers: behavioural detection, isolation and incident response operated from Geneva."
  "twitter:title": "Endpoint and server protection"
---

# Protection for your devices, monitored by Avepto.

Traditional antivirus is no longer enough. Avepto installs modern protection on your devices, watches the alerts and isolates the threat before it can spread.

Book a security audit

The problem

## Six threats, a single blind spot.

Each one bypasses traditional antivirus in its own way. The common thread: they all slip past known-virus lists.

Filter by severity

All 6Critical 2High 2Medium 2

01 Critical

### Ransomware

Files encrypted, ransom demanded, business halted for several days.

Payload

02 High

### Phishing

Credentials stolen, mailbox compromised, fraud and diverted payments.

Email

03 High

### Compromised accounts

Unusual sign-ins, foreign access, silent data exfiltration.

Identity

04 Medium

### Malicious files

Booby-trapped attachments, downloaded executables, hidden scripts.

Attachment

05 Medium

### Suspicious behaviour

Privilege escalation, unexpected processes, unusual changes.

Execution

06 Critical

### Lateral movement

Spread from one device to the next, reaching servers and backups.

Spread

Consequences for an SME

- Teams blocked
- Files inaccessible
- Accounting interrupted
- Time lost to remediation
- Reputational damage

Comparison

## Traditional antivirus vs managed EDR.

The difference isn’t just technical. It’s operational: who watches, who decides, who acts, and how fast.

Criterion

Traditional antivirus Software shipped

Managed EDR Service operated

Detection

Recognises already-known viruses from a signature.

Also detects suspicious behaviour, even without a known signature.

Ransomware

May block known strains, often too late.

Spots encryption behaviour and cuts off the host before it spreads.

Alerts

Notifications shown on the device, read by the user.

Centralised, qualified and handled by the Avepto team, not your staff.

Response

Reaction left to the user or to a provider you have to call.

Remote isolation, remediation and bring-back-to-service handled by Avepto.

Follow-up

On you. Hard to tell whether the protection is still active tomorrow.

State checked continuously. Updates, policies and compliance documented.

Operational responsibility

The vendor ships software. Running it is on you.

Avepto operates the service. You have a person, not a licence.

Detection and response

## Spot suspicious behaviour before it can act.

An antivirus blocks known threats. Behavioural detection goes further: it watches how each device behaves, continuously, flags whatever deviates from the norm, and responds, first automatically, then under the eye of an analyst.

Behavioural feed, device-04 Monitoring, normal flow

Device activity →

powershell.exe execution

Analysis

Each dot is a device action: a file opening, a connection, an execution. Behavioural detection analyses them continuously and keeps the one that falls outside the norm.

Pause

01 ### Continuous monitoring Every process, file and connection on the device is captured at all times.02 ### Behavioural analysis Behaviour is compared to the norm, not just to a list of signatures.03 ### Automated detection Anything out of the ordinary is flagged in real time, without waiting.04 ### Automated response The device is isolated and the threat contained, automatically, within seconds.

A human in the loop On standby ### The machine flags. The analyst qualifies. Every serious alert passes under the eye of a security analyst: they confirm the threat, rule out false positives and qualify the incident. Avepto then agrees the next steps with you. Automation saves time, the human makes sure it’s right. Confirm Real threat or false positive Qualify Scope and severity Hand over Context, scope, recommendation

FAQ

## Your questions on managed antivirus and EDR.

A question that isn’t listed? Ask it during the audit. We answer plainly.

### What’s the difference between antivirus and EDR for an SME?

Classic antivirus versus EDR

An antivirus blocks already-known threats from a list of signatures. Endpoint detection and response (EDR) goes further: it watches suspicious behaviour, spots an attack even with no known virus, and lets us isolate a device remotely before the threat spreads. Avepto deploys EDR on the workstations of Swiss SMEs.

### Is managed antivirus and EDR useful for an SME without internal IT?

Built for SMEs without in-house IT

Yes, this is exactly the case the service exists for. Avepto, based in Satigny in the canton of Geneva, plays the role of the security team that Swiss SMEs of 5 to 80 employees don’t have in-house. You keep doing your job, we monitor and respond to threats, without you becoming a cybersecurity expert.

### Does managed antivirus and EDR cover Macs, PCs and servers?

Unified Mac, PC and server coverage

Yes. Windows workstations, macOS workstations, Windows servers and Linux servers are covered by the same endpoint detection and response (EDR) service, with a unified view. Avepto monitors all your devices from a single console, which avoids the blind spots between your Mac and PC machines.

### What happens when the EDR detects a threat on a device in an SME?

Human response when a threat is detected

Every alert is qualified by our team before any action. If the threat is confirmed, the device is isolated from the network, cleaned, restored if needed, then brought back into service. You then receive a written report explaining what happened and what we did.

### Do antivirus and EDR slow down employees’ computers?

Impact on workstation performance

No, not noticeably in daily use. Modern endpoint detection and response (EDR) agents are lightweight and built to run in the background without getting in the way. If a slowdown does appear, we treat it as an incident in its own right and trace the cause.

Continue exploring

## Related services, and the reading that goes with them.

The services most often deployed alongside this one, and the field notes published by our specialists.

Related services

- [Network security Firewall, segmentation, network protection.](https://avepto.ch/en/cybersecurity/networks)
- [Identity management MFA, SSO, access reviews.](https://avepto.ch/en/cybersecurity/identity)
- [Outsourced IT management Geneva service desk. Tickets tracked and documented.](https://avepto.ch/en/managed-it/it-support)
- [Recovery plans A recovery plan and continuity. Off-site copy held in Switzerland.](https://avepto.ch/en/cybersecurity/disaster-recovery)

Next step

## Want to know if your devices are really protected?

During an audit, we review your current protection and your priority risks. You leave with the actions to take to secure your environment, no commitment.