IT Pro Expert
Search
IT · 3 Oct 2025 · 4 min read

AntiVirus Security Checker - Cyber Security 2026

Shields up! All companies and even home users looking to improve their IT security in 2026 need to review our guideline below. With AI malware and phishing on the rise…

PCArmour Antivirus Network Security Tester

Shields up. Every company — and every home user — looking to improve their IT security in 2026 should work through the guidelines below. With AI-driven malware and phishing on the rise, we have an essentials checklist and a new way to make sure your business is protected automatically.

Introducing PC Armour

We are announcing our new PC Armour software, which monitors PC health and security.

This is the world's first automated software to test your overall security and give you an easy-to-read score out of 100.

Your antivirus, DNS and network firewall are safely tested against the very latest malware and phishing attacks.

PC Armour antivirus and network security tester
The number of people who thought they had good protection in place, only to discover it was essentially worthless, has been really surprising.

Typical PC Armour security scores

  • Under 5% — commonly seen on computers with basic Defender antivirus and no additional security.
  • Under 20% — good antivirus, but no additional protection enabled.
  • Under 50% — good antivirus with either DNS filtering or a network firewall with IDS/IPS rules enabled.
  • Under 80% — antivirus, DNS protection and network firewall protection fully enabled, but still requires improvement.
  • 97 to 100% — the gold standard. Your combination of protection is working as it should. Keep an eye on your charts to maintain it.

PC Armour is your privacy-focused, automated PC health and security monitor.

Is your business secure? A quick IT security checklist

Strong cybersecurity is essential for protecting your data, your employees and your reputation. Use this checklist to evaluate your core security measures and identify where the gaps are.

Endpoint security — computers and devices

  • Updated operating systems: make sure all workstations and servers run a modern, fully supported OS (such as Windows 11) so they receive critical security patches.
  • Advanced malware protection: verify that every device is protected by an actively monitored Endpoint Detection and Response (EDR) solution, such as ThreatDown EDR. IT Pro Expert are certified suppliers of ThreatDown.
  • Application control: implement policies to prevent the installation and execution of unauthorised or unvetted software on company computers. ThreatDown App Lock, AppLocker or ThreatLocker will all do this.
  • Browser protection: make sure users do not install unvetted browser plug-ins — very few are actually safe to use. Have a security plug-in such as ThreatDown Browser Phishing Protection enabled.
  • Hardware lifecycle management: identify and plan the replacement of any hardware no longer receiving security and firmware updates from the manufacturer. Anything over seven years old should be replaced; five years is the optimal maximum.

Account and access security

  • Strong password policies: enforce strong, unique passwords for all user accounts across every service.
  • Password managers: enforce a password manager (Proton Pass) for all staff with access to confidential data. General staff can use a secured browser password manager under Edge, locked to their 365 sign-in.
  • Multi-factor authentication: activate MFA/2FA on every supported application and service, especially email, VPN and administrative accounts. This is a critical defence against account takeover. Ideally move to passkeys for the best protection from 2026 onwards.
  • Secure administrative accounts: the highest-level accounts (Global Admin, for example) should be reserved for emergency use only, with daily tasks performed under standard privileged accounts.
  • Staff training: run training at least once a year with refreshers every three to six months. Staff attitude towards security is the most critical factor of all.

Network and email security

  • DNS protection: use a DNS filtering service (NextDNS or ThreatDown DNS Protection) as a second line of defence to block malicious websites and filter harmful content. It must be configured correctly, with multiple current rule sets updated daily, for this layer to work as intended.
  • Next-generation firewall: confirm your firewall has an active, updated IPS/IDS. Turn blocks on for every category — bots, viruses, spyware, hacking, exploits, P2P, dark web, bypass protocols and recon — and ideally block high-risk countries. We recommend a UniFi router or gateway.
  • Ports: the old practice of opening firewall ports or port forwarding should stop outright unless IP-locked. Use local VPN access via the firewall router, or a mesh VPN such as Tailscale. All external staff should connect by VPN. Block external CCTV access.
  • Modern network equipment: phase out legacy routers, switches and other kit no longer supported with firmware updates. Routers and gateways should be replaced every three to four years, switches and other equipment every five to seven.
  • Advanced email security: protect your primary communication channel with a dedicated email security solution (ThreatDown Email Security or Microsoft Defender) to scan for malware, phishing links and impersonation attempts. This sits as another layer on top of the rest.

Need help reaching a near-100% score?

We'll audit what you have, close the gaps, and keep it monitored.

Get in touch