Zum Hauptinhalt springen
Back to FAQ overview

Managed Services & Operations

Answers on managed security operations, FinOps, backup & disaster recovery, Microsoft licence optimisation and 24/7 cloud operations for DACH mid-market companies.

What is the difference between Managed Services and classic IT support?

Managed Services are proactive: we monitor, optimize, and act before problems arise. Classic support only reacts when something is broken. This saves you downtime and stress.

Can we book individual services or just the complete package?

Both are possible. You can start with individual services - e.g. only monitoring or backup - and expand as needed. We tailor the offer to your needs.

How quickly do you respond to disruptions?

Our response times are defined in the contract and depend on the criticality. We respond to critical incidents within minutes, not hours.

How do you help us reduce cloud costs?

We analyze your Azure usage and Microsoft licenses, identify savings potential, and implement optimizations. Most clients save 20-30% without loss of functionality.

Do you replace our internal IT team?

No, we complement it. Managed Services relieve your team of routine tasks so they can focus on strategic issues. We work as an extension of your team.

Do we really need Zero Trust?

If your employees work remotely, use cloud services, or process sensitive data: yes. Zero Trust is not a trend, but the answer to a changed threat landscape.

How long does the implementation of a security solution take?

A Microsoft Defender rollout takes 2-4 weeks. A full Zero Trust implementation with identity, endpoint, and network security takes 3-6 months.

Do you support certifications like ISO 27001?

Yes, we accompany you from the gap analysis through implementation to audit preparation. Many of our clients have successfully certified with our support.

What happens in the event of a security incident?

If you use our Managed Security Services, we react immediately. We analyze the incident, contain it, and support you in recovery. For everyone else, we offer incident response on demand.

Do you work with specific security products?

Our focus is on Microsoft Security (Defender, Sentinel, Entra ID) and CrowdStrike. However, we also integrate other solutions if they are already established in your environment.

Who is affected by NIS2?

NIS2 applies to organizations in 18 defined sectors (energy, health, finance, transport, digital services and others) with at least 50 employees or €10 million in annual revenue. Suppliers and service providers to these organizations are also affected. In Germany, the directive is implemented via the NIS2UmsuCG. Many mid-market companies underestimate that they are affected indirectly through supply chains.

What are the NIS2 fines for non-compliance?

NIS2 foresees fines of up to €10 million or 2% of global annual revenue (essential entities), respectively €7 million or 1.4% of revenue (important entities). In addition, management is personally liable for the implementation of security measures.

How long does NIS2 compliance implementation take?

A complete NIS2 compliance program typically takes 6–12 months: gap analysis 3–4 weeks, prioritized quick wins 2–3 months, structural measures (governance, risk management, incident response, supply chain security) 4–9 months. We focus first on the largest compliance gaps.

What is the difference between Zero Trust and a classical firewall solution?

Classical security relies on perimeter protection: everything inside the internal network is considered trustworthy. Zero Trust reverses this principle — every access is verified, regardless of location. Based on identity, device state and context. Particularly important for remote work, cloud services and SaaS — where the classical perimeter no longer exists.

Related glossary terms