NIS-2 · GDPR · EU AI Act
Scope assessments, technical and organizational measures, incident reporting, AI risk classification. Pragmatic, not binder-heavy.
We plan, migrate, and operate Microsoft, VMware, and Proxmox environments for companies with 1 to 250 employees — including compliance with NIS-2, GDPR, and the EU AI Act. No buzzwords, just a clear timeline.
We work in clearly scoped work packages with effort estimates, timelines, and defined responsibilities. No consultant-speak, no scope surprises.
Scope assessments, technical and organizational measures, incident reporting, AI risk classification. Pragmatic, not binder-heavy.
Windows Server, Active Directory, Exchange, SQL — or the path to Microsoft 365, Entra ID, and Intune. Hybrid, not hybrid-confused.
Feeling the Broadcom aftershocks? We assess your licensing strategy both technically and commercially and guide migrations cleanly through to the failover test.
Autopilot zero-touch deployment, MDM for Apple devices in Microsoft environments, Linux workstations in mixed-OS operations.
From current-state assessment through risk analysis and roadmap to delivery and hypercare. Classic or agile — we choose what fits the project, not the methodology fad.
Binding proposals with work packages, explicitly named non-deliverables, and realistic effort estimates. Even when they are uncomfortable.
We name products, versions, and standards exactly. Never vague "IT solutions".
Efforts, risks, and dependencies are on the table early, not in a change request.
Who does what by when. Client responsibilities belong in the proposal, not in the dispute.
Concept AND implementation from one team. Still reachable during hypercare after go-live.
Regulatory requirements are not a PDF collection. They are architecture decisions, permission models, and reporting processes — translated into technical measures.
Article 21: risk management, hardening, reporting obligations. Implemented per state of the art.
Technical and organizational measures that hold up in an audit.
Classifying your AI systems, transition periods, governance framework with proportion.
Assessment, evidence, training, and operations — usable as standalone portals or combined into an integrated IT42 solution.
Capture, assess, and document requirements from data protection, IT security, and current regulation in an audit-ready form.
Systematically map out what needs doing in IT, security, and compliance — and in what order.
IT security, data protection, compliance, and digital work capability — for employees, IT teams, and responsible roles.
Continuously monitor availability, risks, and ongoing safeguards — catch anomalies early, not too late.
Not a fantasy matrix — the technologies we actually use in current projects.
Four partners with clearly defined roles. No strategic alliances for press releases — concrete collaboration where it moves our clients forward.
Audits business processes, infrastructure, and efficiency — where clients need a neutral second opinion on IT projects.
Microsoft 365, Azure, Entra ID, Intune, Defender. Technological foundation for a large part of our consulting and migration projects.
Enabler for the rapid delivery of our own portals — foundation of the IT42 offerings Navigate, Watch, and Compliance. Part of the Wix group.
World leader in professional data recovery and secure data deletion. Emergency partner for data restoration and GDPR-compliant deletion.
Tell us in 20 minutes where you stand. You'll get an honest assessment — and if we're not the right fit, a recommendation for someone who is.
Send email →