FAQ.
We are too small to be interesting, aren't we?
Attacks run automatically today: programs look for open doors, not for big names. Whoever is reachable gets hit. A solid baseline makes you uninteresting for the mass of attacks, and that is exactly the goal.
Does NIS2 affect us?
Many mid-sized companies directly, many more indirectly via their customers, who demand evidence from suppliers. We clarify in the situation assessment what applies to you, and build the evidence so that it arises on the side, not as a separate project.
What do we do in an emergency?
Follow a plan that was rehearsed beforehand: who decides, who disconnects systems, who informs customers and authorities, where the backups are. We create this plan with you, and rehearse it before it is needed.
Do we need our own security team?
Usually not. The basis can be built with your IT; monitoring and response around the clock we or a partner take over as an operations service. What matters is that someone is watching, not where they sit.
How does this fit with AI and cloud?
AI and cloud are only as secure as the access, data and rules beneath them. Whoever lets agents loose on ERP and CRM needs clean permissions and logs, exactly the basis we build here. Security is the prerequisite, not the brake.