---
title: "Add-ons — building blocks you can add. Never must."
description: "Endpoint protection, Microsoft 365 and other licences, backup, zero-trust access, hosting and hardware — as optional building blocks on top of managed operations. Transparent on the invoice, never a hidden obligation."
canonical: "https://corevatis-redesign.pages.dev/en/services/add-ons/"
lang: en
schema_type: WebPage
---
# Add-ons — building blocks you can add. Never must.

Endpoint protection, Microsoft 365 and other licences, backup, zero-trust access, hosting and hardware — as optional building blocks on top of managed operations. Transparent on the invoice, never a hidden obligation.

## The short version

- **What:** Optional building blocks on top of managed operations: endpoint protection, licences (including Microsoft 365), backup, zero-trust access, hosting, hardware.
- **Principle:** Every block is priced on its own invoice line and can be cancelled on its own. No block is a prerequisite for another.
- **Why:** Because bundled flat fees hide what you actually pay — and bind you to things you may not even need.

A good fit if:

- You want to know what licences cost — and what the work on them costs
- Your backup should be owned by someone, not merely installed
- VPN is a pain and you want a modern way into the company network

Managed operations — [workplace](/en/services/managed-workplace), [server](/en/services/managed-server), [network](/en/services/netzwerk-standort) — are the core. Everything here is an accessory: often recommended, never mandatory. Every block stands on its own invoice line and can be cancelled on its own.

## The blocks at a glance

| Block | What it does | Billing |
|---|---|---|
| [Endpoint protection (EDR)](/en/services/endpoint-schutz) | Active defence on the device, monitored 24/7 | per device |
| [Identity protection (ITDR)](/en/services/identitaetsschutz) | Protects user accounts against takeover | per account |
| [Managed SIEM](/en/services/managed-siem) | Logs collected centrally and analysed | per data source |
| [Backup](/en/services/backup) | Protection with restore tests and a log | per system |
| [Licences & Microsoft 365](/en/services/microsoft-365) | Procurement and care, itemised | per user |
| [Zero-trust access](/en/services/zero-trust-zugang) | Company access verified per request instead of VPN | per user |
| [Hosting](/en/services/hosting) | Cloud, EU data centre or your house — decided by numbers | per workload |
| [Hardware](/en/services/hardware) | Procurement, rollout — device and labour as two lines | per device |

Every block has its own page with the what, why and who-for — the name links there.

## The principle behind it

Mandatory bundles are convenient — for the provider: the flat fee grows, the components blur, switching becomes expensive. We believe the opposite: whoever always sees what they pay for, and could always leave, stays for the right reason.

## FAQ

**Can I buy add-ons without managed operations?**
In exceptions, yes — licences with administration, for instance. A protection block or a backup without ongoing operations delivers only half its value, though: the part that monitors, maintains and reacts is missing.

**What happens to existing licences and contracts?**
They go into the assessment. What is good stays — equivalent existing protection gets operated, not replaced.

**Does an add-on bind me longer than the main contract?**
No. Add-ons follow the operations term or can be cancelled sooner. The exception is vendors' annual licence terms — disclosed before you sign.

## Related topics

- [IT security overview — how the protection blocks interlock](/en/services/it-sicherheit)
- [Packages and pricing logic — what never hides in the flat fee](/en/packages)

