- Security patching — scheduled application of OS and package security updates, with pre- and post-patch verification to confirm clean application.
- System updates — controlled package updates managed against your change window, with rollback capability where required.
- Log rotation & housekeeping — log rotation configuration, review, and archiving to prevent runaway disk usage and ensure audit logs are retained correctly.
- Backup verification — regular automated and manual verification that backups are completing successfully, restoring correctly, and meeting your recovery objectives.
- Health checks — scheduled review of RAID array state, filesystem status, service states, failed units, certificate expiry, and resource utilisation trends.
- Security hardening checks — periodic review of exposed services, open ports, user accounts, sudo access, SSH configuration, and file permission drift.
- Kernel & firmware management — tracking available kernel updates, scheduling reboots where required, and managing firmware updates on supported hardware.