Cybersecurity

Your IT is vulnerable.
We'll change that.

We monitor your systems around the clock, test them under real-world attack conditions, and handle the response in the event of an incident.

In-house SOC in Austria · EU Technology

Event StreamEvaluated by the analyst
Noise
Manually verified
Incident Contained
241 days
On average, it takes until a data breach is detected and contained
IBM Cost of a Data Breach 2025
1.14 million USD
Additional costs if a data breach goes undetected for more than 200 days
IBM Cost of a Data Breach 2025
10 million euros
Penalty Ranges for Violations of the NISG
NISG 2026, Austria
Oct. 1, 2026
As of this date, the new NISG will take effect in Austria
Effective Date
Getting Started

Where are you right now?

Security isn't something you can just pick from a catalog. Choose the situation that applies to you, and we'll tell you what the best first step is.

Acute

Something happened

Encrypted files, a suspicious login, a blackmail note. Every hour counts now.

No foundation

We don't have anything structured

There's a firewall and a virus scanner—that's it. Here, you start with visibility, not with additional tools.

Basic protection in place

We want to know if it will hold up

Measures have been implemented but not tested. Or a deadline is approaching: NISG, CRA, ISO 27001.

Detection & Response

An attack doesn't go unnoticed for weeks.

An analyst evaluates every anomaly, around the clock. In an emergency, we take action ourselves instead of passing on a report and waiting for your decision.

  • Managed Detection & ResponseRound-the-clock protection provided by experienced analysts, without the need for an in-house security team. HarfangLab EDR and IKARUS EPP serve as the technical foundation, with analysis conducted in our own ITanic SOC
  • Threat HuntingProactive search for attackers who do not trigger alerts. Individually or as part of ongoing operations
  • Incident ResponseIn the event of an incident: containment, remediation, recovery, and reporting within the statutory deadlines

Contractually Guaranteed Response Times

MDR 24/7 · as soon as the report is received
Severity 1max. 4 hCritical
Severity 2max. 6 hHigh
Severity 3max. 8 hMedium
Severity 42 business daysLow

Measured from the time the report is received until the security analyst begins the analysis. For Severity 1, containment takes place simultaneously and immediately. All service levels in detail

Check for vulnerabilities

Two paths into the company: technology and people.

Attackers take the easy way out. That's why we test both under real-world conditions before anyone else does.

Security Tests

Penetration testing and red teaming of technology, cloud systems, and physical access points. The result is a prioritized action plan.

Network and Active Directory
Web Apps, APIs, and Mobile According to OWASP
Cloud Environments in Azure and AWS
Physical Security: Server Room, Reception Area, Entrances
Security Tests

Social Engineering & Awareness

Simulated phishing, vishing, and CEO fraud campaigns reveal where your organization’s human vulnerabilities lie.

Phishing and Spear Phishing with Analysis by Role
Vishing and CEO Fraud Under Controlled Conditions
USB Dropping and Physical Awareness
Training sessions based on the results; no mandatory program
Social Engineering

Where attacks actually come from.

31 %

All data breaches begin with an exploited vulnerability. This is the most common technical point of entry.

Verizon Data Breach Investigations Report 2026
62 %

All data breaches have a human element—whether due to error, manipulation, or misuse. These two factors overlap.

Verizon Data Breach Investigations Report 2026
IT Forensics

It depends on the attack whether he comes back.

Those who clean up and move on resolve the issue and keep the path open. We reconstruct how the attacker gained access, what they accomplished, and which data was affected.

Topic
Without forensic analysis
Using forensic analysis
Entry point
remains unknown and open
reconstructed down to the second
Data Outflow
It is unclear which data is affected
Affected systems and outflow documented
Insurance
Claim Without Proof Is at Risk
Documentation in Accordance with Forensic Standards
Government agency
Report Lacking Reliable Facts
reportable within the statutory time limits
Repetition
The same method works again
specific measures to address this
Consulting & Compliance

Prove safety; don't just claim it.

First the strategy, then the evidence. We analyze your risks, plan the necessary measures, and prepare the documentation to the point where it can withstand an audit. Both managing directors are certified NIS2 consultants.

Consulting & Risk Management

Before any measures can be effective, it must be clear what is worth protecting and what will fail first in an emergency.

  • Risk Analysis with a Prioritized Action Plan
  • Ransomware Protection and a Tested Backup Strategy
  • Disaster Recovery Planning and Tested Recovery
  • Preparing for and Supporting Audits
Consulting & Risk Management

Compliance

Records that can withstand an audit by the authorities, rather than documents that just fill up a folder.

  • Gap Analysis for NISG, CRA, and ISO 27001
  • ISMS Implementation Through to Certification Readiness
  • Complete documentation and reporting chain
  • Quarterly Review of New Requirements
Compliance
Deadlines

Two laws, the same basis.

Both the NISG and the Cyber Resilience Act require effective detection, well-rehearsed response procedures, and a clear reporting chain. Anyone who waits until after the law takes effect to begin compliance will be working against a tight deadline.

–days

Cyber Resilience Act, Reporting Requirements

11.09.2026

Manufacturers of connected products and software: Initial report within 24 hours, triage after 72 hours, final report after 14 days.

–days

NISG 2026 Takes Effect

01.10.2026

Approximately 5,000 organizations in Austria, spanning 18 sectors, including small and medium-sized businesses. Registration with the Federal Office for Cybersecurity; fines of up to 10 million euros.

NISG holds management personally liable. Anyone who waits until after the law takes effect to take action is working against a deadline that has already begun.
Procedure

This is how we work together.

Four steps, each one yielding a tangible result.

01 Initial Consultation

Understanding Your Situation

30 minutes. We listen, ask the right questions, and give you our honest recommendation.

02 Analysis

Clarity on the Situation

Technical review or remote workshop. By the end, both sides will know where the greatest leverage lies.

03 Implementation

What's Most Effective

Prioritized action plan. Not just a concept paper that ends up in a drawer, but direct implementation.

04 Partnership

Stay the Course and Grow

Threats change, and demands grow. We monitor, optimize, and continue to develop.

Where is your biggest security risk?

In 30 minutes, we'll analyze your situation and give you an honest assessment of where action is most urgently needed.

Free and with no obligation
30 minutes, focused
Specific Next Steps