Complex IT landscapes, growing regulatory requirements and increasing cyber threats demand more than classic systems integration. Here you will find six core areas in which we support corporations, public authorities and production facilities.
01 - Network Architecture & Design
Future-proof network architectures as a robust foundation for digital transformation. From campus and data centre networks to global WAN and cloud structures, with particular expertise in M&A scenarios (carve-in / carve-out) and international rollouts.
Typical topics:
- Campus and data centre networks (LAN, data centre fabric)
- Global WAN: MPLS, SD-WAN, hybrid cloud connectivity
- Routing protocols (BGP, OSPF) and IP design
- M&A scenarios: carve-in, carve-out, post-merger integration
- International rollouts in regulated environments
Outcome: sustainable, scalable solutions with a clearly defined time-to-value.
02 - IT & OT Security
Holistic security architectures based on the Zero Trust principle as an integral part of your governance, risk and compliance strategy. Compliant with ISO/IEC 27001, BSI IT-Grundschutz, IEC 62443 and NIS2 for classic IT environments as well as for industrial control systems (OT/ICS).
Typical topics:
- Zero Trust security architectures for IT and OT
- Compliance: ISO 27001, IEC 62443, NIS2, BSI IT-Grundschutz, TISAX
- Segmentation of production networks (Purdue model)
- OT/ICS security, MES integration, secure remote access
- Integration into governance, risk and compliance processes
03 - Cloud & Data Centre Migration
Structured transformation into the cloud, between data centres, or into hybrid models, with low risk and no impact on business-critical processes. Architecture planning, IP design and WAN realignment with operational implementation expertise from a single source.
Typical topics:
- Cloud migration (public, private, hybrid)
- Data centre relocations and consolidations
- Repatriation from the cloud to in-house infrastructure
- IP design and WAN realignment during transformations
- High availability and disaster recovery
04 - Firewall & Perimeter Security
Highly available security infrastructures from Cisco, Fortinet, Genua, Netfoundry, Palo Alto, Sophos and other manufacturers. We deploy open-source solutions, PAP structures and proxies to reliably secure business-critical services even under attack scenarios.
Typical topics:
- Next-generation firewall architectures
- PAP structures and multi-tier perimeter concepts
- Proxies, reverse proxies, DMZ design
- Open-source solutions for specific requirements
- Vendor-independent evaluation and selection
05 - IPv6 & Protocol Modernisation
Strategic introduction of modern network protocols, including in regulated and security-critical environments. Planning and implementation of dual-stack and native IPv6 architectures as a foundation for long-term innovation capability and technological sovereignty. (In addition to our project experience, we operate IPv6 within our own AS199854, including IPv6-only segments and BGP peering.)
Typical topics:
- IPv6 strategy and roadmap
- Dual-stack introduction in existing networks
- IPv6-only environments (including in the public sector)
- Migration from IPv4 to IPv6 in regulated environments
06 - Expert Reports & Certified Expert Services
Independent, robust expert reports for companies and public authorities - covering network architectures, IT security, virtualisation and cloud. As a certified expert / expert witness accredited by BISG e.V. for the IT domains of network structure / virtualisation / availability / IT security / cloud and data centre solutions, we provide sound decision-making foundations and support the legally sound clarification of technical matters.
Certified IT domains (BISG e.V.):
- IT network structure
- Virtualisation
- Availability
- IT security
- Cloud and data centre solutions
Multi-year transformation projects in complex IT and OT environments require reliability beyond individual project phases. For such engagements, we assemble, as required, an experienced team of long-standing trusted partners - with a single point of contact, a consistent architectural approach, and the ability to scale expertise precisely according to project phase.