Skip to content
Services

Cyber Security Consulting in Bucharest

We provide cyber security consulting for companies that want to know exactly where they are exposed: risk assessment, security architecture, NIS2 and GDPR compliance, and a team ready to respond to incidents.

Get in Touch

Who this service is for

We work with the boards, CEOs, and IT managers of companies in Bucharest and across Romania who need to answer one simple question: how exposed are we? The conversation usually starts from a concrete trigger: the company now falls under NIS2, a major client or your insurer is asking for proof of your security measures, an audit left findings unresolved, or an incident at a partner showed how fragile the processes are. An independent assessment also helps IT managers make the case for the security budget to leadership.

What is included

  • Risk and security assessment — A report of the technical and organizational vulnerabilities we identified, ranked by business impact, with a prioritized remediation plan your IT team can put into practice.
  • Security architecture — A target model for identities, network, cloud, backup, and monitoring, together with the related policies, tailored to the systems you actually have rather than a generic template.
  • NIS2 and GDPR compliance — An assessment of where you stand today against NIS2 and GDPR requirements, with the missing measures, the designated owners, and the documentation you will be able to present to authorities or auditors.
  • Incident readiness — An incident response plan with clear roles, contacts, and steps, tested through simulation exercises with leadership and the technical team, including the procedure for reporting to the authorities within the legal deadlines.
  • Implementation and monitoring — The recommended security solutions configured and put into operation, together with monitoring that alerts you in time, run by your own team or by vendors we choose together.

How we work

  1. Initial assessment

    Over two to four weeks, we review your infrastructure, access rights, backups, and processes through interviews, configuration reviews, and technical tests agreed in advance.

  2. Remediation plan

    We present the results to leadership and the IT team in a single session, with the risks ranked by impact and an action plan for the next 3, 6, and 12 months.

  3. Implementation and compliance

    We implement the priority measures in monthly stages, update the policies, and prepare the compliance documentation, with a progress report at the end of each stage.

  4. Exercises and periodic reassessment

    Once or twice a year, we run tabletop exercises on realistic scenarios, such as a ransomware attack or a compromised administrator account, and reassess the risks.

Frequently asked questions

Does NIS2 apply to our company?

It depends on your sector and on the size of your company. NIS2 and Romania's transposing legislation generally apply to medium-sized and large entities in the sectors listed in the directive, such as energy, transport, healthcare, digital infrastructure, or certain branches of manufacturing, and some entities are covered regardless of size. Even if you are not directly in scope, clients who fall under NIS2 may require similar measures from their suppliers by contract. We recommend an assessment of whether and how you are covered, and for the legal interpretation we work alongside your legal counsel.

What does a security assessment include?

The assessment covers access rights and privileged accounts, network and cloud service configuration, backups and your actual ability to restore from them, security updates, and internal procedures. The result is a report with the risks ranked by impact, concrete recommendations, and a remediation plan with priorities and estimated effort.

How much does a cyber security assessment cost?

The cost depends on the number of locations, the systems in scope, and the level of technical testing you ask for. After an initial conversation, you receive a firm quote for the assessment; implementing the measures is estimated separately, once the risks are known and prioritized together with you.

What is a tabletop exercise?

It is a simulation in which leadership and the technical team walk step by step through a fictional incident, such as a ransomware attack. It takes a few hours, does not affect your systems, and quickly shows who makes the decisions, what is missing from the response plan, and how fast you can notify the authorities and your customers.

What happens after the security assessment?

You receive the remediation plan and decide who implements it: your internal team, your current vendors, or our team. If you choose us, we take on the priority measures in monthly stages and periodically reassess the level of risk, so progress can be reported to leadership in clear terms.

Let's talk about your project