Singapore-based · AI & IT for small business

AI that earns its keep.
IT that just works.

We build practical automation for Singapore small businesses — customer chatbots, document processing, internal copilots — then run the managed IT and security underneath so it holds up in production. One local team. One number to call.

No lock-in contracts, and we'll say when AI is the wrong tool for the job.

Platforms we support Microsoft 365 Google Workspace Azure & AWS Windows & macOS OWASP Top 10 for LLM Apps PDPA CSA Cyber Essentials
The idea

Alter course by one degree. Arrive somewhere completely different.

A ship that changes heading by a single degree looks identical an hour later, and ends up hundreds of miles away by the end of the voyage.

That's the whole approach, and it's where the name comes from. We don't sell transformation programmes to eight-person companies — they don't survive contact with a busy week. We find one task that's quietly eating hours, remove it properly, make sure it's secure, and let the change compound.

Then we do the next one. Small enough that you'll actually finish it, real enough that you feel it by the end of the quarter.

Today Same as last year Compounded

One automation removed four hours a week. Over a year that's a month of someone's time you didn't have to hire for.

Why us

Most IT vendors sell security as an upsell. We came from the other direction.

We started in offensive security — breaking into companies for a living. Then we got tired of writing reports for businesses whose real problem was that nobody was running their IT properly in the first place.

So we do both. We keep your laptops patched, your email working and your files backed up — and because of where we came from, the baseline is built the way it should have been from day one. MFA everywhere. Least privilege. Backups that are actually tested. No "we'll look at security next year".

  • One partner for all of it. Support, cloud, networks, security and AI. No more three vendors blaming each other while you're offline.
  • A named engineer who knows you. Not a ticket queue and a different stranger every time.
  • Security is included, not quoted separately. Every managed plan ships with a hardened baseline as standard.
  • No lock-in. 30 days' notice. If we're good, you'll stay because you want to.
  • Everything stays local. Singapore team, Singapore support hours, no offshore helpdesk reading from a script.

Monthly IT report

Sample — retail business, 38 devices, 42 staff

Healthy
  • Devices patched36 of 38 · 2 awaiting a reboot On track
  • Multi-factor enforced42 of 42 accounts · no exceptions Complete
  • Backup restore tested4 Aug · full restore in 11 minutes Passed
  • Unused M365 licences4 seats idle · S$96 a month recoverable Action
  • Phishing simulation3 of 42 staff clicked · training sent Improving
  • Legacy NAS firmwareEnd of life · replacement quoted Needs approval
  • Support tickets61 closed · median first reply 14 minutes Within target
Every managed client gets this once a month, in plain English — plus a quarterly sit-down about what's worth spending on next.

Illustrative example. Real reports carry your own numbers.

What we do

Six things, done properly

Take the whole lot and we become the IT department your business was never big enough to hire. Take one piece and we'll work alongside whoever you've already got.

The new bit

We'll build you an AI assistant — and we're one of the few who can secure it

Singapore SMEs are rolling out chatbots and copilots at speed. Plenty of vendors will build you one. Very few can tell you what happens when a customer talks it into showing them somebody else's data.

We do both sides. We'll automate the quoting, the customer FAQs and the paperwork that's eating your team's week — and because we test AI systems for a living, we build them so they can't be talked out of their guardrails.

What SMEs actually automate

  • Customer FAQs — a bot that answers from your real documents instead of making things up
  • Quotation drafting — from a spec sheet to a formatted quote in seconds
  • Invoice and document processing — no more retyping PDFs into Xero
  • Internal knowledge — staff asking a copilot instead of asking you
  • Report generation — the weekly summary somebody currently builds by hand
  • Staff AI policy — what may and may not be pasted into a public chatbot
Where we're different

Security isn't a line item on your invoice. It's how we set things up.

Ask any IT vendor whether they "do security" and they'll say yes. Ask what's actually included and you'll get a quote.

Every managed plan we run ships with a hardened baseline as standard — because configuring it properly costs us the same as configuring it badly, and we know exactly what it looks like when it goes wrong.

Deeper work — penetration testing, Cyber Essentials certification, incident response retainers — is scoped as a project when you need it. But you'll never find out during a breach that the basics were an optional extra.

Included in every managed plan

  • Multi-factor authentication enforced on every account, no exceptions
  • Disk encryption on every laptop and desktop we manage
  • Managed endpoint protection, monitored rather than just installed
  • Patching on a schedule, with compliance reported to you monthly
  • Email security — spam, phishing and impersonation filtering
  • Least-privilege accounts; nobody runs as a local admin by default
  • Same-day account revocation when staff leave
  • Backups with a restore actually tested every quarter
1h

Target first response for anything critical, during business hours

30d

Notice period. No lock-in contracts, no exit fees, ever

1:1

A named engineer who knows your setup — not a rotating queue

SG-only

Local team and local support hours. No offshore helpdesk

How it works

Switching IT providers isn't as painful as you think

Most transitions take about 30 days, and your staff barely notice.

Free 30-minute review

Two questions, answered honestly. First: which repetitive job in your business is actually worth automating — and which ones aren't. Second: what state your IT is genuinely in, from devices and licences to backups and who still has access. You get both in writing whether or not you hire us, and plenty of companies take that straight to their existing vendor. That's fine.

Proposal and transition plan

A fixed monthly price per user, a list of what's included, and a plan for moving across without downtime. We handle the awkward conversation with your outgoing vendor if you'd rather not.

Onboarding — usually 30 days

We document your environment, deploy management and security tooling, fix the urgent things we found, and get every user set up with support access. Work continues throughout; we schedule anything disruptive out of hours.

Ongoing support and quarterly reviews

Day-to-day support your staff can reach directly, a monthly report you'll actually read, and a quarterly sit-down about what's coming — renewals, capacity, risks, and what's worth spending on next year.

Built for Singapore

We know the local rules, and the local realities

Generic IT advice ignores the obligations you're actually held to here — and the quirks of running an office in Singapore.

PDPA
Every organisation here must appoint a Data Protection Officer and protect the personal data it holds. We build the controls, keep the evidence, and support whoever holds the DPO role.
Cyber Essentials
CSA's entry-level certification mark, aimed at SMEs. Increasingly asked for by enterprise clients during procurement. We prepare you and assemble the evidence pack.
Grants
Singapore SMEs may be able to access government support for digital solutions through schemes like SME Go Digital. We'll tell you honestly whether your project is likely to qualify and point you to the official source to verify — we don't lead with a subsidy figure we can't stand behind.
Office reality
Landlord riser rooms, fibre lead times, hot-desking, and the fact that half your team is in a shophouse and half is at home. We plan around how Singapore offices actually work.
Support in your language
English and Mandarin. Your staff shouldn't have to translate a problem before they can report it.

Who we're a good fit for

  • 3 to 50 staff, one or two Singapore offices
  • No internal IT at all — or one overloaded person wearing three hats
  • Handling customer personal data and aware that's a responsibility
  • Being asked security questions by enterprise clients or insurers
  • Growing fast enough that the ad-hoc setup has stopped coping

Who we're not

We're not the cheapest option on the island, and we're not built for a 500-person enterprise that needs a 24/7 staffed operations centre. If that's you, we'll say so on the first call and point you somewhere better rather than take the work and struggle.

Indicative pricing

Published starting prices

Because "request a quote" wastes everyone's afternoon. Final price depends on your setup — you'll get a fixed number before anything starts.

Support

Small teams that just need IT to work — from 3 staff

From
S$39 / user / month

  • Unlimited remote helpdesk, business hours
  • Device management and patching
  • Microsoft 365 or Google Workspace administration
  • Staff onboarding and offboarding
  • MFA, disk encryption and endpoint protection as standard
  • Asset inventory and monthly report
  • On-site visits as needed, charged separately
Enquire

Projects

One-off work, with or without a managed plan

From
S$1,500 / project

  • Microsoft 365 or Google Workspace migration
  • New office IT fit-out, WiFi and network
  • Firewall and VPN deployment
  • Penetration testing — from S$3,800
  • Cyber Essentials readiness — from S$4,500
  • AI chatbot or automation build — from S$4,000
  • Fixed price, agreed before we start
Enquire

Prices in Singapore dollars, excluding GST. Managed plans start at 3 users — a 3-person business is about S$117 a month. Not-for-profits and early-stage startups: talk to us, we keep some capacity for you.

Questions

Before you call

Often you shouldn't. Take the free review, and if your current provider is doing a good job the report will show it — several companies have used ours as a to-do list for the vendor they already had. Switch if the report shows things that should have been caught: no MFA, backups nobody has ever restored, staff who left last year still holding active accounts.

The baseline is included in every managed plan — MFA, encryption, endpoint protection, patching, email filtering, least-privilege accounts. That's not an add-on, it's just how we configure things.

Specialist work is quoted separately because it's project work with a defined scope: penetration testing, Cyber Essentials certification, incident response retainers, AI security assessments. The difference is that you'll never discover mid-breach that the fundamentals were an optional extra.

Thirty days' notice, no minimum term, no exit fees. We'll hand over documentation and access to whoever comes next without making it difficult. Long lock-ins exist to protect vendors who know their clients would otherwise leave.

Both. Most issues are faster to fix remotely, but some things need hands on hardware — a new office, a dead switch, a laptop rollout. On-site visits are included in the Support + Secure plan and charged per visit on the Support plan. We cover the whole island.

Our target is under an hour for anything critical during business hours, and same working day for everything else. Enquiries come in by email. Managed clients get direct contact details — phone and messaging — at onboarding, along with response times written into the agreement rather than implied. We don't publish a number publicly, which keeps the line clear for the people actually paying for it.

We'll tell you honestly whether your project is likely to qualify under schemes such as SME Go Digital, and point you at the official source so you can verify the current criteria yourself. What we won't do is lead with a headline subsidy percentage to close a sale — the conditions change, and you're the one who has to live with the application.

Three is our minimum for a managed plan, so you're right at the line and very welcome — small businesses are who we built this for. Below three people, a one-off setup project plus ad-hoc support is usually better value than a monthly plan, and we're happy to work that way. We'll tell you which makes more sense for you on the first call rather than pushing you onto a retainer.

Managed clients already have our direct line — use it. If you're not a client yet, email nick.t@onedegreeai.com with URGENT in the subject and we'll come straight back with a number to call. We take non-client emergencies when we have capacity, at project rates. If you're dealing with ransomware or a suspected breach, don't delete anything and don't pay anyone before taking advice.

Next step

Start with the free review

A couple of hours of our time, a written report of what we find, and no obligation. Worst case, a small business gets a clear picture of its own IT for free and keeps the vendor it already has.