First real security incident, what to do in order
A compromised account or ransomware on a laptop feels like panic. The first minutes decide how big the damage gets. Work through a prepared plan, not ad-hoc decisions.
Try this first
- 1Isolate the suspect device or account immediately, cable out and wifi off, or account suspend, before doing anything else.
- 2Change passwords on the affected account and any accounts tied to the same mailbox or phone, that is usually more than you think.
- 3Document what you see, screenshots, timestamps, error messages, before you clean up, that matters later for insurer and possibly authorities.
- 4Assess whether you have a GDPR notification duty toward the Autoriteit Persoonsgegevens, you report a personal-data breach within 72 hours, not 'when we finish investigating'.
- 5Bring in your cyber insurer if you have one, they often want their own forensic team and that needs to go before you start cleaning up.
- 6Communicate to affected customers and staff with facts, not reassurances, honesty builds trust, smooth messages break it.
When to bring us in
Call an incident-response partner immediately if scope is unclear or ransomware is actively encrypting. Vectel can triage and mobilise the right team, but do not wait on this step.
See also
- First IT setup as a freelancer, what do you actually needNot everything at once. One laptop, a mailbox on your own domain, a password manager, a backup. That covers the first year.
- Hiring your first employee, what IT to arrange before day oneLaptop, account, mailbox, access to the right folders. In that order, not all of it at 9 a.m. on day one.
- Moving to a new office, IT checklistInternet and power have the longest lead times. Plan at least three months out, not three weeks.
None of the above fits?
Describe your situation below. We pass your input plus the steps you already saw to our AI and return tailored next-step advice. If it's too risky to DIY, we'll say so.
Or skip the DIY entirely
Our Managed IT clients do not look these things up. One point of contact, a fixed monthly price, resolved within working hours.