CRA full compliance required 453 days left What it means for you
THZ Networks Under attack? SOS — incident response, any hour of any day

0.1 – 10 THZ · THE BAND THAT SEES THROUGH THINGS

See the way in before someone else does

Every breach begins as something small that nobody was watching. We find those first — testing, monitoring and closing the gaps while they are still cheap to close. Twenty-five years of it, run by people who came out of the military and law enforcement.

Book a security review What we do

WHAT WE DO

Eight services, one operations team

Everything here is delivered by the same analysts, out of the same operations centre. That is the point: the people who tested your systems are the people watching them.

SOCaaS

Security Operations Center

Analysts watching your estate around the clock, with the tooling and the honeypots to see an intrusion while it is still an intrusion and not yet a breach.

Read more
CISOaaS

Chief Information Security Officer

A security executive on subscription: policy, risk register, board reporting and the evidence an auditor asks for — without a six-figure hire.

Read more
PenTest

Penetration testing

A real attack, run by people who have done it for a living, ending in a report your engineers can act on and your auditor will accept.

Read more
TPRMaaS

Third-party risk management

Your suppliers are your attack surface, and under NIS2 they are also your legal responsibility. We inventory them, rate them and keep watching.

Read more
VM

Vulnerability management

Continuous discovery, prioritised by what is actually reachable and actually exploited — not by a scanner dumping ten thousand findings on your team.

Read more
IoT / OT

IoT and OT security

Cameras, controllers and machines that shipped with no security and cannot be patched. We segment them, watch them and stop them talking to strangers.

Read more
IR

Incident response

Containment, eradication and recovery, on site if it needs to be. The 24-hour clock in the law starts the moment you notice, not the moment you call.

Read more
DFIR

Digital forensics

Evidence handled so it survives a courtroom and an insurer: what was taken, when, by whom, and what has to be disclosed to whom.

Read more
NOT SURE

Which of these do you actually need?

Most organisations need two of them and are being sold five. Describe your estate and we will say which two, in writing, before you commit to anything.

Ask us

THE CLOCK

The LAW now requires what we already do

Slovenia's ZInfV-1 took the number of obliged organisations from about a hundred to about a thousand, and put the board personally on the hook. These are the dates that matter and what they cost if you miss them.

96 days left

NIS2 / ZInfV-1

Slovenia's Information Security Act, in force since 19 June 2025, took the number of obliged organisations from roughly 100 to roughly 1,000. Risk measures, incident reporting, supply-chain security and training, supervised by URSIV.

Up to €10 M or 2% of turnover

What it means for you
453 days left

Cyber Resilience Act

Anyone placing hardware or software with digital elements on the EU market: secure by design, secure defaults, signed updates, and reporting of actively exploited vulnerabilities. Reporting duties start first; full compliance follows on 11 December 2027.

Up to €15 M or 2.5% of turnover

What it means for you
In force now

DORA

Every EU bank, insurer, broker, payment and crypto firm. ICT risk framework with the board accountable, major incidents classified and reported, a register of every ICT provider, and threat-led penetration testing.

Up to 2% of global turnover

What it means for you
Contract requirement

ISO/IEC 27001

Not a law but a contract requirement: increasingly the price of bidding at all. SIST EN ISO/IEC 27001:2023 is the Slovenian adoption. We take organisations from gap analysis to a certifiable management system.

Lost tenders

What it means for you

CIVIL AND DEFENCE

One customer, two mandates

The organisations Slovenian law designates as essential entities — power, water, transport, health, digital infrastructure — are the same ones the European Commission's counter-drone action plan of February 2026 tells to defend their airspace. Cyber and airspace arrive at the same building, in the same year, from two different regulators. We answer both.

WHAT IT RUNS ON

The stack, named

A wall of logos proves nothing. These are the platforms the service is actually delivered on, and what each one is there to do.

  • CrowdStrike Endpoint detection and response Falcon on the endpoints, watched by our analysts — so a three-in-the-morning alert wakes us, not you.
  • SentinelOne Autonomous endpoint protection Rolls a machine back to the state it was in before the ransomware ran. For containment that cannot wait.
  • Microsoft Defender and Entra estates Defender and Entra tuned, not merely switched on. Most estates already pay for far more than they use.
  • Fortinet Network security and segmentation Firewalls and the segmentation behind them — what decides whether an incident is one subnet or all of them.
  • Stellar Cyber Open XDR — the SOC correlation layer Folds every other tool into one case, so an analyst reads a single timeline instead of six consoles.
  • Logsign SIEM and log retention Where the evidence lives. NIS2 and DORA both make you prove what happened, months after it did.
  • Cynet All-in-one protection for smaller estates One agent for endpoint, network and user — the same monitoring for estates too small for a full stack.
  • Cynomi The vCISO platform behind CISOaaS Turns a gap assessment into a costed, dated plan a board can read without a translator.
  • Pentera Automated security validation between tests Walks the attack path continuously between tests, so a change made in March is found in March.
  • Vicarious Vulnerability remediation without patching Blocks exploitation without the vendor patch — for OT and medical systems that cannot be taken down.

Find out what an attacker already knows

A first review takes a fortnight and ends in a document you can take to your board. If you are dealing with an incident right now, call instead — the number is answered around the clock.

Book a security review +386 51 249 533