Rauentaler Str. 22/1, 76437 Rastatt Mon–Fri 9:00 am–5:00 pm
Home
Case studies News
Send enquiry
IT security & NIS2 · Rastatt

Cyber security for SMEs in Rastatt – protected against cyber attacks.

Firewall, endpoint protection, backup and a contingency plan – we make your company IT resilient and get you ready for NIS2. Factual, easy to follow and tailored to small and medium-sized businesses in Rastatt. If an incident is under way, we are there for you straight away.

IT security · your business Live
Firewall activeOK
Endpoint protection: 24/24 devicesOK
Backup 2 h agoOK
MFA activeOK
Updates currentOK
Security score96 / 100
since 2006
IT partner in Rastatt
24/7
Monitoring & alerts
NIS2
ready for SMEs
< 24 h
Response time
Security services

Company IT that stands up to attacks

Cyber security is not a single product but the interplay of several layers of protection – from the firewall through to a trained team. We cover all of it for your business.

Firewall & network

A properly configured firewall separates your company network from the internet and segments it internally. We set it up cleanly and monitor it continuously.

  • Next-generation firewall
  • Network segmentation
  • Secure VPN for remote working

Endpoint & virus protection

Every PC, laptop and server is a possible way in. Modern endpoint protection detects malware before it spreads across the network.

  • EDR instead of a plain virus scanner
  • Central management
  • Automated response

Backup & contingency plan

The most important safety net: separate, tested backups and a clear contingency plan that prevents data loss and downtime when it matters.

  • Backups kept off-site
  • Regular restore tests
  • Documented contingency plan

MFA & passwords

Stolen credentials are the most common cause of an attack. Multi-factor authentication and a password manager close that gap effectively.

  • Multi-factor authentication
  • Password manager
  • Permissions & access model

Email & phishing protection

Most attacks arrive by email. Spam and phishing filters, secure email settings and warning banners cut the risk considerably.

  • Spam & phishing filters
  • SPF, DKIM & DMARC
  • Attachment & link scanning

Awareness training

The best technology counts for little if a single click undoes it. We train your team using real examples – clear rather than preachy.

  • Staff training
  • Phishing simulations
  • Clear rules of conduct

NIS2 consulting

Whether NIS2 applies to you directly or as a supplier: we check your obligations, close the gaps and document everything so it stands up to an audit – without burying you in paperwork.

  • Scope assessment
  • Risk management
  • Audit-ready documentation

Monitoring & patches

Security is not a state but a process. We keep systems up to date and watch your IT around the clock for suspicious activity.

  • Updates & patch management
  • 24/7 monitoring
  • Early warning of incidents
NIS2 for SMEs

Does NIS2 apply to me?

The German NIS2 implementation act has been in force since the end of 2025. It affects many small and medium-sized companies – either directly or as suppliers to larger customers. The quick check shows whether you should take a closer look.

Quick check: four criteria

If several points apply to you, a proper scope assessment is worthwhile.

  • 1
    Industry & sectorDo you belong to one of the regulated sectors – energy, water, health, transport, food, IT services, manufacturing or waste management, for example?
  • 2
    SizeDo you employ at least 50 people or turn over more than 10 million euros a year?
  • 3
    Supply chainDo you supply larger companies that fall under NIS2 themselves and ask you for evidence of your security?
  • 4
    ResponsibilityNIS2 makes IT security a board-level matter: management is personally liable – delegating alone is not enough.
Even if NIS2 does not apply to you directly, you still benefit: the same measures protect effectively against the most common attacks.

The first 90 days

Security is not built overnight. This is how we proceed – structured and without alarmism.

  1. 1
    Taking stockWhich systems, data and access rights exist? We build a clear picture of your IT.
  2. 2
    Risk analysisWhere are the biggest dangers? We assess risks and prioritise by impact.
  3. 3
    Backup & contingency planSeparate, tested backups and clear procedures for an emergency – the most important safety net.
  4. 4
    TrainingThe team is trained so that security is practised day to day instead of worked around.
Layers of protection

Six layers that keep your business safe

No single product makes you secure – only several layers working together stop an attack. These are the points we cover for you.

Firewall & network

A properly configured firewall and a segmented network keep attackers out and stop an incident from spreading unchecked.

Endpoint & virus protection

Modern endpoint protection on every device spots malware early and stops it automatically before it does any damage.

Backup & contingency plan

Separate, tested backups and a clear contingency plan keep you able to act if something does happen.

MFA & passwords

Multi-factor authentication and a password manager make stolen credentials practically worthless to an attacker.

Email & phishing protection

Most attacks arrive by email. Filters, secure settings and warning banners catch forged messages early.

Awareness training

A trained team recognises phishing and fraud attempts – the most effective and at the same time cheapest layer of protection there is.

IT technician in the server room configuring firewall and network – cyber security at NK IT Service
Technical protection

Technical protection that thinks ahead.

Good security works quietly in the background: the firewall blocks suspicious traffic, endpoint protection stops malware, updates are installed and backups run automatically. You notice none of it – until the day that very technology repels an attack before it does any harm.

Firewall & network cleanly configured Endpoint protection on every device Updates & patches under control Separate, tested backups
Request a security check
Employees at an IT security awareness training session – learning to spot phishing
Awareness

The most important safeguard sits in front of the screen.

Most successful attacks do not begin with a technical flaw but with a click: a forged invoice, a call that sounds urgent, a supposed manager sending an email. That is why we train your team with real examples and in plain language – so that uncertainty turns into healthy scepticism and staff react correctly when it counts.

Plain-language training instead of jargon Phishing simulations from real life Clear rules of conduct for everyday work A named contact whenever something looks wrong
Request training
How we work

Properly secured in four steps

From the security check to ongoing protection – structured, measurable and with no sales pressure.

1

Check

Free review of firewall, endpoints, backup and whether NIS2 applies to you.

2

Plan

Risk analysis and a prioritised action plan – explained in plain language.

3

Implementation

Harden the technology, set up backups, train the team, write the contingency plan.

4

Ongoing support

Continuous monitoring, updates and fast help in an emergency.

Security technology

Proven technology from leading manufacturers

We combine established security products from any vendor into one coherent defence – from firewall and endpoint through backup to email security and staff awareness. What we use depends on what you need, not on our margin.

Sophos – security technology at NK IT Service Securepoint – security technology at NK IT Service Fortinet – security technology at NK IT Service LANCOM Systems – security technology at NK IT Service ESET – security technology at NK IT Service Bitdefender – security technology at NK IT Service G DATA – security technology at NK IT Service Veeam – security technology at NK IT Service Acronis – security technology at NK IT Service Hornetsecurity – security technology at NK IT Service SoSafe – security technology at NK IT Service Microsoft Defender – security technology at NK IT Service

A selection of typical solutions – combined independently of any vendor. We tailor the right protection to your business.

Cyber know-how

The key questions – answered clearly

Answers from practice – written for people and for AI search engines such as ChatGPT & Google AI.

What?What is NIS2 and does it apply to me?

NIS2 is an EU directive for stronger cyber security, in force as German law since the end of 2025 – it covers companies in 18 regulated sectors with 50 or more employees or a turnover above 10 million euros. Many smaller businesses are affected indirectly as well, because larger customers ask them for evidence of their security. A short scope assessment provides clarity quickly.

Why?Why are small companies attacked too?

Because most attacks are automated: bots scan the internet around the clock for outdated systems and weak passwords – the size of your company is irrelevant. Hijacked networks are abused for extortion, spam and further attacks. Any unprotected business is a worthwhile target for that.

What?What does IT security cost?

Basic protection with firewall, endpoint protection, backup and monitoring costs a predictable monthly fee – a single ransomware incident, by contrast, quickly costs many times that in ransom, downtime and rebuilding. We start with a free check and then quote you a fixed price with no small print.

Enough?Is a virus scanner enough?

No – a virus scanner is only one of several necessary layers and mainly detects malware that is already known. Modern attacks come through phishing, stolen passwords or unpatched systems. Only the combination of firewall, endpoint protection, MFA, backups and a trained team is effective.

What?What should you do during a cyber attack?

Stay calm, disconnect affected devices from the network at once, delete nothing in haste and get help immediately – paying a ransom is not a solution. Then analyse the incident, restore systems from a clean backup and close the gap. If NIS2 applies to you, reporting deadlines are in force. If you suspect an attack right now, call us straight away.

How?How important are backups and training?

Backups and staff training are the two most effective measures of all: a separate, tested backup makes extortion pointless, and a trained team prevents most attacks in the first place. Both cost little compared with the damage caused by an incident – and belong in every security strategy.

Frequently asked questions

Cyber security & NIS2 – briefly explained

Does NIS2 apply to me as a small or medium-sized business?
Directly affected are companies in one of the 18 regulated sectors with at least 50 employees or more than 10 million euros in annual turnover. Many smaller businesses are affected indirectly, because their larger customers demand evidence of security along the supply chain. In a short scope assessment we clarify your situation – and tell you honestly what is actually needed.
What happens if I do not meet my NIS2 obligations?
NIS2 makes IT security the responsibility of company management – which can be held personally liable. Breaches can attract substantial fines depending on your classification. More important than the penalty is the actual risk: an incident without any preparation quickly costs many times what proper protection would. We help you meet the obligations pragmatically and in a way that stands up to an audit.
What does cyber security cost at NK IT Service?
That depends on the size and condition of your IT. Baseline protection with firewall, endpoint protection, backup and monitoring is available for a predictable monthly fee, well below the cost of a single security incident. After a free check we quote you a fixed price – transparent and with no hidden costs.
Is a traditional virus scanner not enough?
A virus scanner is one building block, but not a strategy. It mainly detects known malware, while modern attacks run through phishing, stolen credentials or unpatched software. Effective protection only comes from firewall, endpoint protection, multi-factor authentication, separate backups and an alert team working together.
Why would anyone attack my company in particular?
In most cases the attack is not personal but automated. Bots scan the internet constantly for vulnerable systems – regardless of industry or size. Hijacked networks are used for extortion, sending spam and further attacks. Small companies without professional protection are therefore an easy and worthwhile target.
How important are backups really?
They are the single most important safety net. In a ransomware attack, a separate, tested backup decides whether you are working again within hours or at a standstill for days. What matters is this: the backup must be kept off the network and tested regularly to confirm it can be restored – otherwise it is worthless when you need it.
What does staff training achieve against cyber attacks?
A great deal – it is often the most effective and at the same time the cheapest measure. Most successful attacks begin with human error: a click on a phishing link, a forged invoice, an email impersonating the boss. A trained team recognises such attempts and reacts correctly. We train with practical examples and in plain language, not by lecturing.
We suspect an attack – what now?
Disconnect affected devices from the network immediately, but do not switch them off in haste, and delete nothing. Do not pay a ransom. Call us straight away – in an emergency every hour counts. We analyse the incident, restore systems from clean backups, close the gap and support you with any reporting obligations.
Do we have to report a security incident?
If NIS2 applies to you, clear deadlines are in force: an initial early warning within 24 hours, a more detailed report within 72 hours and a final report within one month. If personal data is involved, the GDPR reporting duty applies as well. We help with the assessment, the deadlines and the documentation.
Does this also work if another provider looks after our IT?
Yes. We are happy to start with a neutral security check and tell you honestly where your IT stands. On request we work alongside your existing provider, add specific layers of protection or take over the support entirely – whichever makes most sense for you.
Is all this not excessive for a small company?
An understandable concern – but reality looks different: small and medium-sized businesses are popular targets precisely because they are often less well protected. This is not about expensive corporate solutions but about sensible basics: up-to-date systems, a firewall, MFA, backups and a trained team. That foundation is affordable and prevents the vast majority of incidents.
Insights

Security technology in action

Firewalls, secured networks and server cabinets from real client projects – click through to browse. Sensitive details have been obscured.

Free security check

Ready to be properly secured?

Send us a short note about what you need – we check your firewall, backup, endpoint protection and NIS2 status free of charge and tell you honestly where action is required. If an incident is under way, call us immediately – then every hour counts.

07222 / 59 49 890 support@nk-it.de Reply usually in < 24 h
Google rating: 5 stars for NK IT Service
ProvenExpert: 4.90 out of 5 – VERY GOOD