Skip to main content

Security in the cloud – with evidence

Most security incidents in the cloud are not caused by hacker genius but by misconfiguration, overly broad permissions and missing multi-factor authentication. We check, harden and document – so you can prove it to customers, insurers and auditors.

Abstract illustration of a protected data chip

Common triggers

  • Your company falls under NIS2 or customers demand evidence of information security.
  • Your cyber insurance requires multi-factor authentication, backups and a permissions concept.
  • Microsoft 365 was introduced quickly, and shares and permissions have grown.
  • Nobody knows exactly who can access which data.

Our services

  • Security check

    Review of configuration, identities, network access, encryption and logging – with an action list.

  • Identities and access

    Multi-factor authentication, single sign-on, conditional access and a role concept based on least privilege.

  • Compliance

    Gap analysis for NIS2, GDPR and ISO 27001, policies and documentation for audits.

  • Emergency preparedness

    Tested backups, recovery plans and clear procedures for an incident.

Our approach

Measure first, then act: we start with an inventory and implement the most important measures first.

  1. Clarify requirements: regulation, contracts, insurance

  2. Security check of the cloud and Microsoft 365 environment

  3. Action plan prioritised by risk and effort

  4. Implementation, documentation and regular review

Typical results

  • Multi-factor authentication and conditional access for all accounts
  • Cleaned-up permissions and shares
  • Documentation for NIS2 obligations, customer audits and insurers
  • Tested backup and recovery plan

Entry offer

NIS2 and security check

We clarify whether and how NIS2 affects you, review your cloud and Microsoft 365 environment and deliver a prioritised action list.

  • NIS2 applicability check
  • Review of configuration and identities
  • Action list by risk
Request a security check

We quote the price in advance – no obligation.

Frequently asked questions

Your question is not listed? Ask it in the free initial consultation – the form is at the end of this page.

Does NIS2 apply to us?

That depends on sector, headcount and turnover – and on whether you supply affected companies. We check this together with you against the criteria.

Is the cloud less secure than our own data centre?

Not in principle. Providers secure their platforms very well; you remain responsible for configuration, access and data. That is exactly where we come in.

Does the check replace an audit?

No, but it prepares you for one. Afterwards you know where the gaps are and have the documentation auditors expect.

More Cloud services

Let’s talk about your cloud

Briefly describe your situation – or request a callback. We will get back to you shortly with a proposed time for the free initial consultation.

Send a request

More details to help us prepare (optional)
Spam protection
* Required fields