Is your businessNIS2compliant?
EU law now mandates cybersecurity controls for 160,000+ organisations. Most German SMBs with 50+ employees are in scope — and most are not ready.
NIS2 is already law. Are you compliant?
The EU's NIS2 Directive is now binding. If your company has 50+ employees and operates in a critical sector — you must act.
What NIS2 requires from you
Sectors in scope (companies 50+ employees)
Security frameworks we support and align with
Technology integrations — platforms we monitor and connect with
From gap analysis to ongoing protection
We do not sell you a sprawling security platform you cannot run. Three focused products that build on each other — start with an assessment, grow into full managed security.
NIS2 Security Assessment
We audit your current security posture against every NIS2 requirement, identify exactly what is missing, and hand you a prioritised remediation roadmap with clear actions and effort estimates.
- Full NIS2 gap analysis report
- Risk-prioritised remediation roadmap
- Asset and scope inventory
- Policy & documentation review
- Executive briefing (1 hour with your team)
- Immediate quick-win recommendations
Continuous Monitoring
After your assessment, we run ongoing security monitoring for you. AI agents process your logs and alerts around the clock — human analysts review findings, escalate real threats, and produce monthly compliance evidence ready for audits.
- 24/7 AI-powered log monitoring
- Human analyst alert review & escalation
- Monthly NIS2 compliance evidence report
- Vulnerability scan (quarterly)
- Threat intelligence feed integration
- Dedicated security contact
Incident Response Retainer
When a serious security incident happens, you need experienced humans, not a helpdesk. Our retainer gives you guaranteed response times, a named incident lead, forensic investigation support, and NIS2-compliant 24-hour reporting assistance.
- Guaranteed response SLA (terms agreed upfront)
- Named incident response lead
- Forensic investigation support
- NIS2 authority notification drafting
- Post-incident report for management
- Includes all Monitoring features
Most clients start with the Assessment — it takes one week and tells you exactly where you stand before committing to anything else.
AI speed. Human judgment.
German Mittelstand companies buy from people, not black-box platforms. We give you both — AI that handles the volume and a human expert you can actually call.
AI processes thousands of events per minute, filters noise, and surfaces only what needs human attention. It never sleeps, never gets tired.
Machine learning spots credential abuse, lateral movement, and zero-day patterns that rule-based tools miss entirely.
When something serious is flagged, a Berlin-based analyst reviews the finding, validates severity, and calls you with clear next steps.
We draft the 24-hour incident notification to authorities on your behalf — the part most SMBs have no process for.
Threat to resolution — how it flows
Built for the German Mittelstand — AI that works, humans you can call. Start with a free assessment →
Meet Your Digital Security Team
Five specialized AI agents work in concert to deliver 24/7 autonomous cyber defense — all supervised by human security experts.
Continuously ingests and analyses logs from all endpoints, cloud services, and network devices — 24/7, without gaps or fatigue.
Capabilities
One unified security command center
Security posture, active incidents, NIS2 compliance status, and AI recommendations — all visible in one place. No more spreadsheets before audits.
Three paths to NIS2. One clear winner.
DIY compliance is slow and risky. Traditional MSSPs are expensive and not built for German SMBs. We are.
What happens when German SMBs act
Representative results from client engagements. Details anonymised at client request. Individual outcomes depend on environment and scope.
A mid-size German manufacturer with 120 employees had no idea NIS2 applied to them. After our assessment, they had a clear 8-item remediation plan. We completed the critical items together within three weeks — they are now audit-ready.
Our monitoring detected unusual file access patterns on a healthcare client's file server at 2am on a Sunday. AI flagged it, our analyst confirmed it within minutes, and remote containment ran automatically — stopping ransomware before a single file was encrypted.
A Berlin-based SaaS company needed to demonstrate GDPR and emerging NIS2 compliance to a major enterprise customer. Our monthly compliance reports gave them the evidence pack they needed. Their enterprise deal closed as a direct result.
A logistics company was paying a large MSSP €5K/month for a service they did not understand and rarely heard from. They switched to our monitoring plan, got a dedicated analyst contact, and now receive a monthly report they actually read — at less than half the cost.
Outcomes are representative of real client engagements, anonymised at client request. Individual results vary by environment, scope, and implementation timeline.
Built around your situation
Every company is different. We scope and price based on your environment, asset count, and risk posture — not generic tiers. Talk to us first.
Know your gap before anything else
- Full NIS2 gap analysis
- Risk-prioritised action plan
- Asset & scope inventory
- Policy documentation review
- 1-hour executive briefing
- Delivered in 5–7 business days
Perfect starting point — no ongoing commitment.
24/7 AI + human security operations
- Everything in Assessment
- 24/7 AI-powered log monitoring
- Human analyst alert review
- Monthly NIS2 compliance report
- Quarterly vulnerability scan
- Dedicated security contact
Includes your first Assessment at no extra cost.
Guaranteed response when it matters most
- Everything in Monitoring
- Guaranteed response SLA
- Named incident response lead
- Forensic investigation support
- NIS2 authority notification drafting
- Post-incident management report
Scoped and agreed upfront. No surprise costs.
Not sure which tier fits?
A free 30-minute call with our team will tell you exactly what you need — even if it turns out to be less than you expect.
Pricing is scoped per engagement and confirmed after a discovery call. VAT applicable under German law where relevant.
Everything you need to know before you start
Straightforward answers about NIS2 compliance, our services, and how we work.
NIS2 applies to medium and large companies (50+ employees or €10M+ annual turnover) operating in one of 15 critical sectors — including manufacturing, healthcare, digital services, logistics, food production, chemicals, and research. Certain organisations are in scope regardless of size. If you are unsure, our free assessment will confirm your status within 5–7 days.
Still have a question not covered here?
Ask us directlyStart your security conversation
No hard sell. Just honest security advice from our Berlin-based team.
Send us a message
We respond within one business day — usually the same day during Berlin/CET hours.
Your data is handled in accordance with our Privacy Policy. We do not share your data with third parties.