Cyber security

In today's digital age, when most sensitive data is processed online, cybersecurity is an essential part of protecting your business. We offer comprehensive solutions to protect against cyber threats, including cybersecurity gap analysisanalysis of sector and impact criteria (NIS2), design and implementation of security measures, audits and penetration tests, continuous SOC monitoringIncident Response, employee training, and cybersecurity manager (CISO as a Service) services. We also provide insurance against cyber threats and security services outsourcing (MSSP). Our solutions guarantee compliance with NIS2, GDPR, ISO 27001 and protect your IT infrastructure from attacks, data leaks, and operational outages.

On demand

Analysis of Sectoral and Impact Criteria (NIS2)

The analysis of sectoral and impact criteria is a process used primarily in the context of the NIS2 Directive and the Cybersecurity Act to determine whether an organization qualifies as a critical infrastructure entity or a significant entity, and thus whether it is subject to the obligations arising from these regulations.

Cybersecurity GAP Analysis

A cybersecurity gap analysis focuses on identifying gaps between an organization’s current security status and required standards, such as ISO 27001, NIS2, GDPR, or other regulations. The output is a list of deficiencies and recommendations for addressing them.

Developing proposals for cybersecurity measures

Developing proposals for cybersecurity measures is a comprehensive service aimed at increasing an organization’s resilience to cyber threats. Based on an audit, a cybersecurity gap analysis, or an analysis of sector-specific and impact criteria, we will prepare specific recommendations and an implementation plan for measures that will ensure compliance with legislation and enhance the security of information systems.

Implementation of Cybersecurity Measures

Implementation of cybersecurity measures is the process of introducing specific technical, organizational, and procedural solutions that ensure the protection of information systems and reduce the risk of cyber incidents. This service follows on from the development of proposed measures and their actual deployment in accordance with legislative and security standards.

Cybersecurity Audit and Penetration Testing

A thorough assessment of an organization's IT security through security audits and simulated hacker attacks (penetration tests) on IT systems, networks, and applications.

Security Operations Center (SOC) and Cybersecurity Monitoring

Continuous 24/7 monitoring of IT infrastructure security. The SOC uses SIEM systems to analyze security events, detect threats, and respond to incidents.

Incident Response (IR) – Handling Cyber Incidents

Professional assistance with detecting, analyzing, and resolving cyberattacks. This includes forensic analysis, post-attack system recovery, and measures to prevent future incidents.

Employee Training and Testing

Training programs to raise awareness of cyber threats and testing of employees on phishing, social engineering, and security procedures.

Cybersecurity Manager (CISO as a Service)

An external cybersecurity manager ensures strategic management of IT infrastructure security, oversees compliance with NIS2, GDPR, and ISO 27001, and implements measures to protect against cyber threats. He or she is responsible for risk management, the implementation of security solutions, incident response, and employee training. This service helps companies without their own CISO effectively manage cybersecurity and protect their sensitive data from attacks. It is suitable for regulated organizations, startups, and companies that need expert oversight of their security processes.

Insurance Against Cyber Threats

Protection against financial losses caused by cyberattacks, data breaches, ransomware, or IT system outages. This includes coverage for the costs of legal services, data recovery, and incident response.

Managed Security Services (MSSP) – Cybersecurity Outsourcing

Long-term management of an organization's IT infrastructure security by an external security team. This includes monitoring, management of security solutions, incident response, and regular audits.

Vulnerability Analysis and Management

A vulnerability analysis is a systematic search for known weaknesses in operating systems, applications, and network devices using automated tools supplemented by expert assessment. Unlike a penetration test, it does not focus on breaching security, but rather on providing a regular and repeatable overview of the security status of your infrastructure. We offer this service as a one-time assessment or as regular (monthly/quarterly) monitoring, including the classification of findings by severity and recommended order of remediation.

Advisory and Consulting Services in the Field of Cybersecurity

We provide expert advice and consulting in all areas of cybersecurity—from assessing a specific situation to designing technical solutions and representing you in communications with regulatory authorities. We tailor our advice to the actual needs and capabilities of your company, with an emphasis on practical and sustainable improvements to the security of your environment. Thanks to our close collaboration with experts in related fields (law, data protection, IT infrastructure), we can provide you with a comprehensive, one-stop approach.

Our goal is to benefit our clients

Choosing the right and reliable advisor is always a great help in improving yourself. Above all, consulting in the field of law is extremely broad-spectrum and affects almost all areas of the life of entrepreneurs and individuals, therefore the choice of a legal advisor is extremely important. In the law office Hronček & Partners, s. r. o. we pay attention to professionalism and high quality legal services with an individual approach. Our main goal is to provide legal services of the highest quality and to bring innovative and professional solutions for the client so that we become their trusted partner.

More services in the field of data protection and security

GDPR security documentation

€500.00
The price is quoted without VAT and may be increased depending on the scope of work performed and the extent of personal data processing.

Preparation of new customized basic security documentation for the operator, updated in accordance with current legislation and the available decision-making and interpretative practice of the authority (internal regulations for the protection of personal data).

Services of the person responsible for personal data protection

On demand
The price is quoted without VAT and may be increased depending on the scope of work performed and the extent of personal data processing.

Through our own team of experts, we will provide you with a comprehensive service of a responsible person who is fully qualified to perform this function based on the conditions set out in Article 37 of the GDPR. The appointment of a responsible person has been made mandatory by the regulation for controllers.

Assessment of the impact on personal data protection

On demand

Processing of documentation for impact assessment (DPIA) within the meaning of Article 35 of the GDPR, which is special documentation that the controller is required to process only if the legal conditions are met (e.g., extensive processing of special categories of personal data, systematic monitoring of public spaces on a large scale, processing of biometric data, etc.).

GAP analysis – GDPR

€1,800.00
The price is quoted without VAT and may be increased depending on the scope of work performed and the extent of personal data processing.

Analysis of personal data processing procedures at the client processing personal data (mapping of purposes, personal data processing, legal bases, security management, information security, physical security and facility security, intermediary contracts, terms and conditions, regime measures, personnel and administrative security), which will be carried out on the basis of a personal consultation. The analysis includes proposals for securing personal data and proposals for necessary measures to be adopted and implemented by the client in order to harmonize the processing of personal data in accordance with the GDPR and the law.

Legal settings for cookies on websites

€200.00
The price is listed without VAT.

Cookie settings on websites in accordance with the amendment to the Electronic Communications Act and the GDPR. We still encounter incorrect technical settings, banner and information bar settings, and information obligations.

Training in the field of personal data protection

On demand
The total price depends on the number of people, the number of training courses, and the number of areas/agendas in which your employees need to be trained.

The training focuses on the legitimacy of personal data processing and personal data security. If interested, we can provide training tailored specifically to a given professional group.

Expert advice on specific personal data processing activities

On demand
The price depends on the scope of personal data processed in your company and the content and specifications of the project.

The issue of personal data protection is not limited to the GDPR and the Personal Data Protection Act. When setting up individual processes and processing activities, it is also necessary to comply with national legislation governing specific areas of activity of individual operators (e.g., crowdfunding, provision of installments and loans, and other sector-specific features in various areas).

Information security

On demand
The price depends on the scope of work performed.

Information security is a solution for securing information systems, information, and access to data. The information security management system is developed with regard to the culture, processes, technologies, and requirements of your company/organization. With this service, you get an information security system that complies with ISO/IEC 27000 standards and protects your business from loss and theft by ensuring the protection of all data, whether yours or your customers'.

Industrial safety

On demand
The price depends on the level of secrecy and the type of access to classified information.

The subject of the service is the processing of documents in accordance with Act No. 215/2004 Coll. and relevant NBÚ decrees, the purpose of which is to ensure the processing of mandatory documentation that must be submitted to the National Security Authority in order to obtain industrial security clearance for all levels of classification (Restricted to Top Secret). The documentation may include various processing of classified information (familiarization, storage in a protected area, or, together with documentation for technical means, also processing of classified information using technical means).
We also perform security settings for technical equipment (e.g., PCs) according to the recommendations of the National Security Authority – we will set up your technical equipment for certification purposes.

Preparation and submission of security clearance applications

€7,000.00
The price is quoted excluding VAT and may be increased depending on the scope of work performed and the required level of confidentiality. Administrative fees are not included in the price.

As part of the service provided, we can comprehensively secure the entire process for issuing a license to trade in defense industry products in relation to the National Security Authority, through providing an initial consultation for the purpose of presenting the legal requirements for obtaining confirmation, analyzing the compliance of the business plan with the requirements of the relevant legislation, preparing the documentation for the entrepreneur's security project, and preparing and submitting an application for a security clearance by the National Security Authority.


Let's discuss your project together.

Company *
Povinná položka
Company ID
Name
Required
Surname *
Required
E-mail *
Required. Write the e-mail address in correct form.
Telephone number
Required
Message *
Required

More information about the processing of your personal data can be found HERE.

Povinná položka