Computer Security Service | San Antonio Cybersecurity

Computer Security Service in San Antonio, TX by ASAP.  A Security+ Certified Cybersecurity Expert

ASAP provides 24/7 enterprise class security coverage via SOCaaS through Fortinet, alongside network defense, endpoint protection, multi factor authentication, customized risk assessment protocols, secure data backups, and employee phishing awareness training, backed by more than 20 years of regional experience.  Zero trust is our default security stance and the security architecture we recommend, we have seen its success in the field.  Around the clock monitoring is delivered through Fortinet’s FortiGuard SOC, with ASAP as the managing partner. Fortinet analysts watch the alerts 24/7, and ASAP handles the response, the remediation, and the relationship. You get true 24/7 eyes on glass without alert fatigue, and gain specialized 24/7 coverage without multi-million dollar construction overhead costs for SOC power / comms redundancy.  There are two Fortinet routes and one that enterprise, mid sized orgs and SMBs will appreciate:

Computer Security Service San Antonio 

  • FortiGuard MDR (managed detection and response) is priced per endpoint and natively targets larger deployments, with minimum order quantities that commonly run 25 to 500 endpoint licenses depending on the bundle. At scale, FortiEDR plus MDR baseline pricing can run around $3 per endpoint per month, but a 10 user office will usually pay the minimum entry bundle: a basic 25 user FortiEDR software license starts around $2,000 per year, with MDR services added.
  • FortiGuard SOCaaS is our primary recommendation, priced per monitored appliance or by log volume, not by user, which usually makes it the cost effective route for a small team with one office firewall. Monitoring a standard small business FortiGate, such as a 60F or 70F, adds approximately $1,500 to $3,000 or more per year depending on the model, and a standalone multi vendor SOCaaS cloud subscription with 1 GB per day of log tracking and 24/7 analysis is around $4,860.

These are Fortinet list prices and can change. Tell us the size of the fleet and we will get a current quote and go for route that actually fits.

ASAP Computer Services was founded by Courtney Pelzel, RCDD, a BICSI Registered Communications Distribution Designer and holder of the CompTIA Security+ certification. Security+ is a DoD approved baseline certification: under DoD 8570.01-M it satisfied Information Assurance Technical (IAT) Level II and Information Assurance Management (IAM) Level I, and it remains an approved qualification under DoD 8140, which replaced 8570 in 2023. In plain terms, the founder holds a credential the Department of Defense itself uses to qualify its cybersecurity workforce. Verification links for every credential are on our licensing and certifications page.

Compliance Support: TDPSA and HIPAA

Security work in Texas increasingly means compliance work. ASAP supports the two frameworks that come up most for San Antonio businesses: the Texas Data Privacy and Security Act and HIPAA.

Texas Data Privacy and Security Act (TDPSA)

The TDPSA, passed as House Bill 4, took effect July 1, 2024 as Chapter 541 of the Texas Business and Commerce Code. It requires covered businesses to maintain reasonable administrative, technical, and physical data security practices, honor consumer rights requests, and limit data collection to what is reasonably necessary. The Texas Attorney General enforces it, with civil penalties up to $7,500 per violation. HIPAA covered entities are exempt, and so are small businesses as defined by the SBA, with one exception: a small business still needs consumer consent before selling sensitive personal data.

For small businesses exempt from the TDPSA, we provide the basics done right: basic cyber hygiene, zero trust endpoint security, network and endpoint patching, and cloud environment incident response.

HIPAA physical and technical safeguards

Most IT vendors stop at the login screen. ASAP is both a managed IT provider and a TX DPS licensed security contractor, so one accountable team covers the physical safeguards and the technical safeguards of the HIPAA Security Rule, from the server room door to the user account.

Physical safeguards (45 CFR 164.310)

  • Facility access controls: badge readers, electronic locks, and logged entry on server rooms and records rooms
  • Workstation use: screen placement and privacy screen protectors so patient information is not visible from waiting areas
  • Workstation security: cable locks, restricted room placement, and camera coverage for equipment rooms
  • Device and media controls: serial number tracking and chain of custody when hardware moves in, out, or between locations
  • Media disposal and re-use: documented wiping, degaussing, or shredding of drives before disposal or repurposing

Technical safeguards (45 CFR 164.312)

  • Unique user identification: one named account per person so activity traces to an individual
  • Access control and authorization: role based access limited to the minimum necessary data
  • Encryption: ePHI encrypted at rest on devices and in transit across networks
  • Audit controls: logs that record logins, data access, and system activity
  • Automatic logoff: idle sessions lock or terminate after a set period
  • Multi factor authentication: enforced on email, remote access, and administrative accounts

When an auditor or an OCR investigator asks for evidence, ASAP supplies the technical side: the ePHI system inventory behind the Security Risk Analysis, configuration proof that MFA, encryption, and automatic logoff match the written policies, and documentation of our own work under a signed business associate agreement.

We offer flexible, month to month contracts for our JUMP-START security audit services, we strongly recommend implementing zero-trust security architecture at a minimum.. These advisory audits do not include security reviews for new vendors. Configuration and deployment of core systems such as MDM, EDR, SIEM, password managers, VPNs, and IDPs require a fully managed IT services agreement.

Computer Security FAQs

Does the Texas Data Privacy and Security Act apply to my small business?

Most small businesses as defined by the SBA are exempt from the Texas Data Privacy and Security Act, and HIPAA covered entities are exempt entirely. One exception applies to small businesses: selling sensitive personal data still requires consumer consent. Exempt does not mean safe, so for small businesses we provide basic cyber hygiene, zero trust endpoint security, network and endpoint patching, and cloud environment incident response sized to the risk.

What does a HIPAA auditor ask for first?

The Security Risk Analysis is almost always the first request, followed by written policies and procedures, business associate agreements, workforce training records, and the documented designation of a Privacy Officer and a Security Officer. Auditors cross check policies against real configurations, so a policy that says sessions lock after ten minutes needs system logs that agree. ASAP supplies the technical side of that evidence: an inventory of the systems that create, receive, store, or transmit ePHI, configuration proof for MFA, encryption, and automatic logoff, and documentation of our own work under a signed business associate agreement.

Can ASAP handle both the physical and the technical HIPAA safeguards?

Yes. ASAP is a managed IT provider and a Texas DPS licensed security contractor, so the team that manages your accounts, encryption, and backups also installs access control on server rooms, camera coverage for equipment areas, and privacy screen protectors at the front desk. One vendor, one set of documentation, and no gap between the network side and the building side.

Call Now