Managed patching & protection · for small and medium businesses

Patched. Protected. On the record.

PatchAudit keeps small businesses patched automatically across Windows, macOS and Linux, and actively protected around the clock if you need it. No extra IT headcount. No broad managed-services contract. Just a monthly record you can hand straight to your insurer, your board, or your own peace of mind.

1–250+ devices Windows · macOS · Linux 25+ years enterprise ICT Month-to-month
Sample patch activity
DESKTOP-7F2AWindows 11 · KB5041773 installedverified02:14
MBP-SALES-03macOS Sonoma · Security Update 2026-004verified02:15
SRV-FILES01Ubuntu 22.04 LTS · openssl 3.0.13 → 3.0.14verified02:17
SRV-ACCT14Server 2025 · Chrome 127 → 128verified02:19
LAPTOP-HR02macOS Sequoia · Zoom 6.1.11 → 6.1.12pending02:21
DESKTOP-3B91Windows 11 · Adobe Acrobat Reader → 24.003verified02:24
SRV-APP02Rocky Linux 9 · kernel 5.14.0-427 → 503verified02:27
LAPTOP-WFH07Windows 11 · Microsoft Teams 24298 → 24312verified02:30
IMAC-DESIGN01macOS Tahoe · Firefox 129 → 130verified02:32
WKS-OPS22Windows 11 · 7-Zip 23.01 → 24.05verified02:35
SRV-DB01Ubuntu 24.04 LTS · postgresql-client 16.3 → 16.4verified02:38
SERVER-9C14Server 2016 · Java 8u411 → 8u421error02:41
The problem

You don't need an IT department. You need three things done reliably.

If you're running a business with a handful of computers up to a couple of hundred, you almost certainly don't have - and don't need - a full-time IT team. But three things still have to happen: every device needs to stay patched, something needs to be watching for actual threats, and you need to be able to prove both when someone asks.

And someone is asking. Cyber insurance renewals increasingly ask directly whether you have endpoint detection and response (EDR) deployed and a documented patch management process. The Australian Cyber Security Centre's Essential Eight lists patching applications and patching operating systems among its eight baseline strategies. None of that requires an in-house IT department - it requires a system that runs on its own and can show its work.

$97k

average self-reported cost of a cyber incident for an Australian medium-sized business (up 55%).
For small business this number is $56,600 (up 14%)

622

record-breaking vulnerabilities (CVEs) addressed in the July 2026 Microsoft Patch Tuesday alone, with over 400 targeting Windows components. The volume illustrates why manual patching becomes difficult to manage consistently.

128%

surge in Remote Code Execution (RCE) vulnerabilities in 2025. Attackers are exploiting vulnerabilities faster than organizations relying on legacy patching workflows can remediate them.

  • Renewing or applying for cyber insurance
  • A close call at a business like yours
  • Wanting to meet a framework like the Essential Eight
How it works

One subscription, five steps, running quietly in the background

Patching genuinely is a sequence - enroll, assess, deploy, verify, report - and each step depends on the one before it. Here's the order it runs in, every day.

01 / enroll

Enroll devices

A lightweight agent is deployed remotely to every device - Windows, Mac, or Linux - in minutes. No site visit, no downtime.

02 / assess

Continuous assessment

Every enrolled device is scanned around the clock for missing OS and application updates, including known, actively exploited vulnerabilities.

03 / deploy

Schedule & deploy

Patches roll out in maintenance windows built around your business hours. Critical, actively-exploited vulnerabilities can go out same-day.

04 / verify

Verify

Every patch is confirmed installed and functioning after deployment - not just marked as sent.

05 / report

Monthly report

A plain-English record each month: what was patched, what's pending and why, and your overall compliance rate.

Want more than patching? Shield adds continuous endpoint monitoring on top of everything above - if something suspicious happens on a device, a security analyst investigates and responds, 24 hours a day, not just when patches run. See Shield in Pricing →
Coverage

OS patches. Business apps. One patching workflow.

Operating systems:

Windows 10 / 11 Windows Server 2016–2025 macOS Monterey+ Ubuntu Debian Linux Mint RHEL / CentOS Stream Rocky / AlmaLinux openSUSE

Applications:

Chrome, Firefox, Edge Adobe Product Suite Java Zoom Microsoft Teams Slack 7-Zip VLC 300+ more
Remote and hybrid devices are included by default. If a laptop is offline when a patch ships, it's applied the moment it reconnects - no VPN or office network required. Shield's 24/7 monitoring currently covers Windows and macOS endpoints; Linux servers stay covered by Core patching.
Where this fits

Not quite DIY. Nowhere near a full outsourced IT department.

An honest look at how small-medium businesses (1–250 devices) handle patching and protection today.

Comparison of in-house patching, PatchAudit Core, PatchAudit Shield, and a full-service managed service provider
Feature Doing it in-house PatchAudit Core PatchAudit Shield Full-service MSP
Monthly cost Often $0 in software cost - but real, unbilled staff time One flat fee per device One flat fee per device - includes Core Bundled retainer, usually priced well above patching + protection alone
What's covered Whatever there's time for OS + application patching, start to finish Everything in Core, plus 24/7 endpoint monitoring & response Everything - patching, help desk, procurement, and more
Who manages failures and exceptions Your team PatchAudit — patch failures and exceptions investigated and managed PatchAudit + MDR — patch exceptions and security alerts managed Your provider, according to their service scope
Insurance / compliance evidence You assemble it yourself, if you remember to Monthly patch compliance report Monthly patch + protection report Varies by provider
Time to get running As long as it takes internally Days Days Often weeks of onboarding
Typical contract N/A Month-to-month Month-to-month Usually annual
Best fit Businesses with real in-house time to spare Businesses that just need patching handled Businesses that also want active threat monitoring - often for insurance or compliance reasons Businesses that want IT fully outsourced, end to end
Pricing

Type in your device count. See both prices.

One number for patching alone, one for patching plus 24/7 protection. No quote form required.

40
150100150250
Core - patch only
$500
≈ $12.50 AUD / device / month
Shield - patch + 24/7 protection
$1,000
≈ $25.00 AUD / device / month

PatchAudit Core

Patch management for OS + apps, across Windows, macOS & Linux.


PatchAudit Core pricing by device count
1–9 devices$15.00 / device / mo
10–49 devices$12.50 / device / mo
50+ devices$10.00 / device / mo
$75 AUD/month minimum
  • Unlimited patch deployments
  • Windows, macOS & Linux + 300+ apps
  • Monthly compliance report
  • Cancel anytime
Get Core

Prices shown are in AUD per month and exclude GST. A short scope call confirms device count, supported operating systems and onboarding requirements before service begins.

Trust & security

What we run on, and what we don't touch

  • PatchAudit Core is powered by Action1, a cloud-native Autonomous Endpoint Management platform for cross-platform patch management, vulnerability remediation and compliance reporting. Action1 is certified to SOC 2 Type II and ISO 27001:2022.
  • PatchAudit configures, operates and monitors Action1 on your behalf — maintaining patch policies, investigating failures and exceptions, verifying deployment results and providing monthly compliance reporting.
  • Shield's threat monitoring and response is powered by Malwarebytes ThreatDown, backed by a 24/7/365 security operations centre.
  • Data encrypted in transit and at rest (AES-256).
  • We deploy, monitor, and verify - we don't remotely access your devices outside that scope.
  • You keep ownership of your data and can export your full patch and protection history at any time.

Service levels

Critical / actively exploited updatesTargeted within 24 hrs of vendor patch availability
Core - standard patchesApplied in your scheduled window
Shield - suspicious activityTriaged by an analyst, usually within minutes
Support requestsAcknowledged within 4 business hrs
ReportingMonthly, in plain English

Deployment timing remains subject to vendor patch availability, agreed maintenance policies and approved exceptions.

Getting started

From first conversation to managed endpoints.

Getting started doesn't mean replacing your existing IT environment. We agree the scope, prove the configuration on a small group of devices, then roll out from there.

01 / scope

Understand your environment

A short conversation about your device count, operating systems, current patching process, maintenance windows and what you're trying to achieve.

02 / pilot

Prove the configuration

We enrol a small group of representative endpoints into the Action1 patch-management platform, configure the policies and maintenance windows, and verify that everything behaves as expected.

03 / roll out

Enrol the remaining devices

Once the configuration is agreed, the remaining supported endpoints are enrolled remotely. No site visit and no replacement of your existing IT systems.

04 / operate

Patch. Verify. Protect. Report.

From there, PatchAudit runs the service — continuously assessing endpoints, deploying updates, investigating exceptions and giving you a clear monthly record of the result.

No rip-and-replace. No lengthy onboarding project. PatchAudit is designed to work alongside the IT environment you already have.Book a 15-minute call →
FAQ

Common questions before getting started

Isn't a patch tool free if I do it myself?

Some patch management platforms give away a generous free tier if you're the one configuring policies, watching dashboards daily, and troubleshooting failures. That's a fine option if someone on your team has the spare hours for it. PatchAudit is for the businesses that don't - we own the whole process end to end and put a response time in writing.

Why wouldn't we just use Action1 ourselves?

You can. Action1 is an excellent platform and businesses with the time and expertise to configure, monitor and operate it directly may not need PatchAudit.

PatchAudit is for organisations that want the outcome without adding another system for someone internally to manage. We configure the environment, maintain patch policies, monitor deployments, investigate failures and exceptions, verify compliance and provide the monthly reporting.

Action1 provides the platform. PatchAudit provides the managed service.

What's the actual difference between Core and Shield?

Core is for businesses that want patching handled continuously across their supported endpoints, with verification and monthly compliance reporting.

Shield includes everything in Core and adds 24/7 endpoint detection and response, with security alerts monitored and investigated around the clock.

Choose Core when patch management is the priority. Choose Shield when you also want active threat monitoring and response.

Will this help with our cyber insurance renewal?

It can. Cyber insurers commonly ask about endpoint detection and response and whether the business has a documented patch-management process.

PatchAudit provides evidence of the patching and endpoint-protection controls we manage, which you can provide to your insurer or broker. We aren't insurance brokers and can't guarantee coverage, acceptance or a particular premium.

What if a patch breaks something?

Patch deployments use maintenance windows and staged rollout policies where appropriate to reduce the risk of problematic updates.

If a managed patch causes an issue, PatchAudit investigates the deployment and coordinates rollback or remediation within the scope of the service.

Do you cover remote and hybrid devices?

Yes. Devices connect over the internet from anywhere — no VPN or office network required. If a laptop is offline when a patch is scheduled, it is handled when the device reconnects.

Do you patch servers as well as workstations and laptops?

Yes — servers can be managed alongside workstations and laptops, subject to supported operating systems and the agreed maintenance policy.

Can we cancel any time?

The service is month-to-month. Cancel with 30 days' notice — no multi-year lock-in.

Is this a replacement for our IT support or MSP?

No. PatchAudit is a focused patching and endpoint-protection service rather than a general-purpose IT provider.

If you already have internal IT or an MSP, we're designed to operate alongside them and take ownership of this specific part of the environment.

Get started

Tell us what you're running.

Give us a rough idea of your device count and what you need help with. We'll come back with any clarifying questions and tell you whether PatchAudit is a good fit.

We use these details only to respond to your enquiry and provide a quote. Form submissions are processed by Formspree. See our Privacy Notice.

Prefer to talk first?

Book a 15-minute call. We'll ask about your device mix, current patching process and what you're trying to achieve — and tell you directly whether PatchAudit is a good fit.

hello@patchaudit.com.au