Cybersecurity

Cybersecurity

Protection against digital threats
Cybersecurity

What is cybersecurity?

Cybersecurity, or IT security, refers to the protection of digital devices, networks, and sensitive information from unauthorized access, theft, and damage.

It encompasses a range of technologies, processes, and practices designed to prevent cyber attacks, detect potential threats, and respond to security incidents promptly and effectively.

Why cybersecurity?

Security
Security
Protection against attacks such as hacking, malware, and phishing
Protection of personal data
Protection of personal data
Secure personal data with strong passwords, encryption, and security measures
Ensuring business continuity
Ensuring business continuity
Protect business continuity with a strong plan to minimize damage and enable rapid recovery
Compliance with regulations
Compliance with regulations
Implement cybersecurity measures in accordance with regulations to avoid penalties and ensure customer trust

Our cybersecurity services

  • During development
  • During operation
  • During an attack
  • After an attack
Application architecture Application architecture
Secure applications do not require plugins but rely on a stable architecture and measures that affect all aspects of the software.
Setting up a firewall Setting up a firewall
With specialized application firewalls like WAFs, bots and automated attacks can be detected or even blocked.
Network rules Network rules
A secure network configuration provides extensive protection against unwanted access before the application is even reached.
Design of a secure rights/roles concept or system Design of a secure rights/roles concept or system
With individual authorization concepts, we lay the foundation for precise access control during development.
Authentication and user recognition Authentication and user recognition
With individual login procedures consisting of two or more steps, we protect user accounts from unauthorized access.
Penetration tests Penetration tests
With regular penetration tests, various attack scenarios are simulated to discover vulnerabilities and proactively close gaps.
Backups Backups
Regular, automated backups on separate storage locations keep recovery possible even in the event of serious incidents.
Employee training Employee training
Training to raise awareness of cyber attacks and how to avoid them reduces the likelihood of human error.
Regular updates Regular updates
Modern stacks quickly consist of hundreds of dependencies. Only an up-to-date system contains the latest security updates. We keep all levels up-to-date, including the operating system, servers, and the application itself.
Perform virus scan Perform virus scan
Automated scans for viruses and other malicious code can detect already installed malware.
Identify security issues Identify security issues
We find security issues in networks and infrastructure before they are exploited.
Take systems offline Take systems offline
In case of emergency, it may be necessary to block external access and quickly take the systems offline to protect the business and infrastructure.
Minimize damage Minimize damage
If an incident has already occurred, it is still necessary to act quickly and situationally to minimize the damage during a cyber attack and speed up the recovery of systems.
Secure evidence Secure evidence
In many cases, attackers leave clues to their identity, which facilitate forensic analysis and investigation to enable the resolution of attacks.
Determine attack type Determine attack type
Phishing, ransomware, SQL injections, DoS attacks... To stop ongoing attacks, the attack type must be determined.
Identify entry point Identify entry point
Once the attack type is determined, we identify the specific vulnerability in the system to permanently close it and prevent future attacks.
Restore from backups Restore from backups
If data loss has occurred or data sets have been compromised, they must be restored. We restore the latest backups, thus reducing the impact of the attack.
Perform verification Perform verification
After restoring the IT infrastructure, we intensively check it for further vulnerabilities and monitor it closely.
Implement security improvements Implement security improvements
Appropriate countermeasures are developed for all identified vulnerabilities and implemented through patches, upgrades, and adjustments to policy changes.
Analyze the security concept Analyze the security concept
An analysis is conducted to review the effectiveness of the response.
Update the incident response plan Update the incident response plan
The response plan is expanded with new insights and best practices.

FAQs

In which areas does TenMedia provide protection against security threats? keyboard_arrow_down keyboard_arrow_up
We develop a custom protection concept for individual cloud applications or for entire organizations. It addresses the typical attack paths: malware and ransomware, phishing and identity theft, and brute-force attacks on access credentials. The concept is implemented in a one-time setup phase followed by monthly support.
How does TenMedia differ from standard cybersecurity solutions on the market? keyboard_arrow_down keyboard_arrow_up
We don't offer a classic cybersecurity solution for purchase and installation. Instead, we develop a custom, vendor-independent security concept for a single cloud application or project teams, which we implement together. The implementation is carried out exclusively by our on-site team in Berlin, including a direct personal contact person. After an initial phase in which the concept is created and implemented, the greatest value lies in the long-term, personal support. We reserve a fixed number of hours per month for security measures and can respond at short notice in emergencies within the scope of the agreed support.
How does TenMedia stay up to date with cybersecurity developments? keyboard_arrow_down keyboard_arrow_up
Our team consists of experienced experts who continuously train and educate themselves to stay up to date with cybersecurity developments. We regularly attend industry events, conferences, and workshops, using the insights gained to adapt our services to current threats and requirements.
What type of customer support do you offer? keyboard_arrow_down keyboard_arrow_up
We can be reached during standard office hours via email, phone, and in person. Upon agreement, we offer special Service Level Agreements (SLAs) so that the personal support contact remains available by phone outside of office hours within the agreed scope. Customer support is provided exclusively by our permanent team in Berlin. Regardless, all projects are continuously monitored by our monitoring system.
Can a solution be adapted to specific security needs? keyboard_arrow_down keyboard_arrow_up
Each security concept is developed individually, so specific security needs are addressed directly. The basis is a protection requirement analysis, a threat assessment and the requirements arising from the sector and its regulation.
Which technologies and hosting providers are used? keyboard_arrow_down keyboard_arrow_up
We work with a variety of technologies and programming languages such as PHP, C#, and Java. Regardless of the requirements, we adapt flexibly. In terms of hosting providers, we primarily rely on Microsoft Azure but also work with other hosting companies.
How are data protection and regulatory compliance handled? keyboard_arrow_down keyboard_arrow_up
We place great emphasis on data protection and compliance. We develop our security concepts in accordance with applicable data protection laws and guidelines. Additionally, we support our clients in adhering to industry-specific regulations and standards by implementing appropriate security measures and controls.
Is training or continuing education offered in the field of cybersecurity? keyboard_arrow_down keyboard_arrow_up
Yes, we offer training and continuing education for companies and their employees. Our experts provide essential knowledge and practical skills in the field of cybersecurity to raise awareness of security risks and strengthen defense measures within the company.
What costs are involved for TenMedia's services? keyboard_arrow_down keyboard_arrow_up
Costs vary depending on the scope and complexity of the project. For an individual quote, the requirements, the desired range of services, and the necessary depth of integration are clarified together first. The pricing page offers initial guidance on the available price models. A free, no-obligation consultation can be arranged by email or phone.
How quickly does TenMedia respond to security incidents? keyboard_arrow_down keyboard_arrow_up
We place great importance on responding quickly and effectively to security incidents. Our offices are staffed during standard office hours, and all supported applications are monitored through our 24/7 monitoring to detect potential threats early and initiate countermeasures promptly. In case of an emergency, we are able to intervene at short notice and carry out the necessary steps to resolve the issue. For extended availability, we offer special SLA agreements.

Customers who trust us

Logo Friedrich-Alexander-Universität Erlangen-Nürnberg
Logo Landwirtschaftskammer Nordrhein-Westfalen
Logo Land Berlin, Senatsverwaltung für Integration, Arbeit und Soziales
Logo KätheCare GmbH
Logo Stiftung Denkmal für die ermordeten Juden Europas
Logo involas Institut für berufliche Bildung, Arbeitsmarkt- und Sozialpolitik GmbH
Logo Bezirksregierung Köln
Logo Deutsches Kulturforum östliches Europa e.V.
Logo IfFP Institut für Finanzplanung AG
Logo SIGNUM Consulting GmbH / Marke DISA
Logo Zentrum für Qualität in der Pflege
Logo medienrettung
Logo advise research gmbh
Logo Berolina Bestattungsinstitut GmbH
Logo B&W Software GmbH
Logo Verein Deutscher Distanzreiter und -fahrer e.V.
Logo Aussteuerhaus Mannsdörfer GmbH
Logo CustomersX GmbH
Logo gigaaa International SA
favorite Contact & Feedback TenMedia
All contact requests are free of charge and non-binding, by phone, e-mail and in person. We are happy about every project and will get back to you as soon as possible.