Penetration Testing & Vulnerability Assessment
We attack your systems in a controlled way before criminals do – and show you exactly where action is needed.
Learn moreISO 27001, NIS2, GDPR, BSI IT-Grundschutz: we bring your security organisation to an auditable level.
Regulatory requirements keep growing – with the NIS2 directive now transposed into national law, many mid-sized companies are obliged to run systematic risk management. We analyse your current state, identify gaps against the relevant standards and guide you pragmatically through implementation. No paper tigers – measures that work in daily operations.
We clarify which requirements apply to you – NIS2, ISO 27001, GDPR, customer demands – and which level makes sense.
Through interviews and document review we compare your current state with the requirements and rate every gap by risk.
You receive a prioritised action plan. On request we implement policies, processes and technical measures together with you.
We prepare you for external audits, support the certification process and keep the system current afterwards.
It depends on your customers and regulation. Many SMEs do well with a lean ISMS without a certificate; if you respond to tenders or must provide NIS2 evidence, certification pays off. We tell you honestly what is worth it.
Three to twelve months depending on your starting point. BSI registration and reporting processes can be set up quickly; risk management and supply-chain security take longer. We start with the measures that reduce the most risk.
Yes. As an external information security officer we run your ISMS on an ongoing basis, report to management and act as the contact for customers and auditors.
In a free initial consultation we clarify scope, approach and cost – no obligation, on equal terms.
We attack your systems in a controlled way before criminals do – and show you exactly where action is needed.
Learn moreAround the clock: we monitor your systems, detect attacks early and respond before damage occurs.
Learn moreWhen it happens, every minute counts. We help with ransomware, data exfiltration and system compromise – fast and structured.
Learn more