indevis
indevis is a Munich-based Managed Security Services Provider delivering 24/7 SOC, MDR, endpoint, network, and OT/IoT security to DACH mid-market enterprises, backed by an integrated partner technology stack including Google Chronicle, Palo Alto, and Fortinet.
- Company typePrivate
- Founded1999
- HeadquartersMünchen, Germany
- Headcount51–100
- GTM typeB2B
- OfferingServices
What indevis does
indevis GmbH is a Munich-headquartered Managed Security Services Provider (MSSP) founded in 1999, delivering a full Protection-Detection-Response cybersecurity portfolio to mid-market enterprises across the DACH region (Germany, Austria, Switzerland). The company operates 24/7 Security Operations Center (SOC) services from data centers in Munich and Nuremberg, anchored on Google Chronicle as the cloud-native SIEM/SOAR engine, with Palo Alto Cortex XDR for endpoint, Fortinet Secure SD-WAN for network, Cato Networks for SASE/ZTNA, Pentera for automated security validation, and IONIX for continuous threat exposure management.
The service portfolio spans managed firewall, secure SD-WAN, SASE, email security, endpoint protection, OT/IoT security, SOC-as-a-Service, MDR/XDR, incident response, disaster recovery, and forensic analytics, complemented by consulting practices covering NIS-2 compliance, IT compliance (KRITIS, DORA, TIBER, TISAX), ISB as a Service, and security analyses for Palo Alto and Fortinet environments. The company holds ISO 27001 certification and is recognized as a Leader in the ISG Provider Lens Cybersecurity Report 2024 for SOC and MDR midmarket in DACH.
Commercially, indevis generates revenue primarily through subscription-based managed security services billed annually, project-based professional services and consulting engagements, and license rental/usage-based services, sold both directly and via an MSS partner program targeting system integrators and service providers. Following HQ Equita's 2022 majority investment and the 2024 merger with Data-Sec GmbH, the company operates under the 'indevis x Data-Sec' brand and pursues inorganic growth alongside organic expansion of its DACH mid-market footprint.
indevis firmographics
Firmographics- Name
- indevis
- Legal name
- indevis GmbH
- Website
- https://indevis.de
- Company type
- Private
- Founded year
- 1999
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- indevis is a Munich-based Managed Security Services Provider delivering 24/7 SOC, MDR, endpoint, network, and OT/IoT security to DACH mid-market enterprises, backed by an integrated partner technology stack including Google Chronicle, Palo Alto, and Fortinet.
- Ownership category
- akta.pro rank
indevis industry classification
Industry- Product category
- Managed Security Services
- NAICS
- Computer Systems Design and Related Services (5415), Security Systems Services (56162)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- Managed Security Services (MSSP) & 24/7 SOC Operations (BPAKAHAA)
- akta.pro secondary industries
- Security Operations Center (SOC) as a Service (BPAEADAB), Network Security Managed Services (Firewall/IDS/IPS/SASE) (BPAEADAG), Endpoint Security Managed Services (EDR/XDR) (BPAEADAH), Security Incident Response (IR) & Digital Forensics Services (BPAEADAI), Secure Access Service Edge (SASE) & Secure SD-WAN (HDAIAFAH)
Keywords
Where indevis is headquartered
LocationHeadquarters
- HQ city
- München
- HQ country
- Germany
- HQ region
- Europe
Offices2 records
Markets served
indevis business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Infrastructure, Operations, Marketing or Sales
Revenue model
- Managed Security Services (MSS): Recurring managed security services delivered from indevis SOC and data centers. Services are contracted on a subscription basis, typically with monthly or annual billing. Revenue is generated through recurring fees for monitoring, detection, and response services including SOCaaS, MDR, Managed Firewall, Secure SD-WAN, SASE, and related services. Services are sold directly to end customers and via channel partners.
- Professional Services & Consulting: One-time and project-based consulting engagements including NIS-2 consulting, IT compliance consulting, ISB as a Service, Security Awareness Training, System Consulting, Professional Services, and Roadmap to Security. These are typically project-based or retainer engagements that complement recurring managed services.
- License Rental / Usage-Based Services: Rental models for specific security technologies such as ivanti Secure Access License Rental, and rental devices (e.g., rental firewalls). Some services such as OT-Resilience Check and Pentest as a Service are consumed on a per-assessment or usage basis.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Managed Security Services (SOCaaS, MDR, Managed Firewall, SD-WAN, SASE) — subscription-based pricing |
Go-to-market motion2 records
Distribution channels2 records
Marketing channels8 records
indevis product offering
Product offeringCore offering
indevis is a Managed Security Services Provider (MSSP) delivering 24/7 cybersecurity services across Protection, Detection, and Response pillars to mid-market enterprises in the DACH region. Services include SOC as a Service powered by Google Chronicle, Managed XDR, Managed Firewall, Secure SD-WAN, SASE, endpoint and email security, OT/IoT security, Pentest as a Service, Continuous Threat Exposure Management, incident response, and NIS-2 compliance consulting, delivered from German data centers in Munich and Nuremberg.
Product overview
indevis is a Managed Security Services Provider (MSSP) offering a comprehensive portfolio of cybersecurity solutions for mid-market enterprises. The offering operates as a platform-plus-services model combining managed detection and response capabilities with professional consulting services. Core services include SOC as a Service (powered by Google Chronicle SIEM/SOAR), Managed XDR, and Managed Firewall/Secure SD-WAN/SASE for network security. Detection capabilities are augmented by Pentest as a Service (Pentera), Continuous Threat Exposure Management (IONIX), and SIEM/SOAR. OT/IoT security services utilize Asimily and TXOne Networks platforms. The Protection layer encompasses email security (Hornetsecurity), endpoint security (Palo Alto Cortex XDR), authentication (RSA, Okta), and WLAN/switching (ExtremeCloud). Consulting services cover NIS-2, IT-Compliance, ISB as a Service, and security analyses for Palo Alto and Fortinet. Response services include Incident Response, Disaster Recovery, and Forensic Analytics. All services are delivered as managed offerings designed specifically for the German-speaking Mittelstand market.
Differentiator
Problem solved
Functional benefit
Brands
- SOC as a Service (SOCaaS): Managed Security Operations Center service providing 24/7 monitoring and threat detection using SIEM, SOAR, and Google Chronicle technologies
- Managed Detection and Response (MDR)
- Managed Firewall
- Pentest as a Service
- ISB as a Service
- Secure SD-WAN
- OT-Security Solutions
Products and services
- Managed Firewall Firewall management and monitoring service providing perimeter security, policy management, and threat protection for enterprise and mid-market customers.
- Secure SD-WAN Secure Software-Defined Wide Area Network service for branch connectivity, WAN optimization, and secure cloud access.
- SASE & ZTNA/VPN Secure Access Service Edge solution combining network security functions (SWG, CASB, FWaaS, ZTNA) with SD-WAN in a cloud-native architecture via Cato Networks and Palo Alto Networks Prisma SASE.
- E-Mail Security Suite Comprehensive email protection including spam filtering, malware detection, phishing protection, business email compromise detection, encryption, archiving, and Microsoft 365 backup.
- Security Awareness Service Employee security training and awareness program with AI-based phishing simulation to strengthen organizational security culture.
- Enterprise WLAN Enterprise wireless LAN service powered by ExtremeCloud for secure and scalable wireless connectivity.
- Switching & NAC Network switching and Network Access Control services for secure wired connectivity and endpoint management.
- Network Management Network management service powered by ExtremeCloud for monitoring and managing enterprise network infrastructure.
- Authentication (Managed Identity) Multi-factor authentication and identity management service supporting on-premises, cloud, and hybrid environments.
- Endpoint Security Endpoint protection service using Cortex XDR from Palo Alto Networks for advanced threat detection and response on endpoints.
- OT & IoT Security Operational Technology and Internet of Things security services protecting industrial control systems and connected devices for manufacturing and critical infrastructure operators.
- Pentest as a Service Automated security validation and penetration testing service using the Pentera platform for continuous, safe, automated testing of the entire attack surface with prioritized remediation guidance.
- Continuous Threat Exposure Management (CTEM) CTEM service using the IONIX platform for continuous monitoring of external attack surface and digital supply chain risks.
- SIEM as a Service Security Information and Event Management service for log collection, correlation, and threat detection across customer environments.
- SOAR as a Service Security Orchestration, Automation and Response service for automated incident handling and playbook execution.
- SOC as a Service (SOCaaS) 24/7 Security Operations Center service providing threat monitoring, detection, and response using Google Chronicle as SIEM platform with human analyst oversight.
- Managed XDR Managed Extended Detection and Response service for comprehensive threat detection and response across endpoints, networks, and cloud.
- Incident Response Incident response service for rapid containment and recovery from security incidents.
- Disaster Recovery Disaster recovery services for business continuity and rapid restoration after security incidents or outages.
- Forensic Analytics Digital forensics and incident analysis service for understanding attack vectors and gathering evidence.
- NIS-2 Consulting Consulting service helping organizations meet NIS-2 directive requirements and achieve regulatory compliance.
- IT-Compliance Consulting IT compliance consulting for regulatory requirements including KRITIS, DORA, TIBER, and TISAX.
- ISB as a Service External Information Security Officer service providing expertise and support for information security management.
- Palo Alto Security Analyse Security analysis and health check service for Palo Alto Networks firewall and security solutions.
- Fortinet Security Analyse Security analysis and optimization service for Fortinet firewall and security fabric solutions.
- Roadmap to Security Strategic security roadmap service for building comprehensive cybersecurity programs aligned with business objectives.
- OT-Resilience Check OT and IoT security assessment service providing analysis of operational technology environments and risk evaluation.
Quantifiable outcome
- Cyberattacks are typically discovered within 11 days on average in the broader industry, highlighting the value of continuous SOC monitoring in reducing dwell time.
Companies that use indevis
Customer profileNamed customers9 records
Segments5 records
Ideal customer profiles4 records
indevis technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration16 records
AI capability4 records
Feature11 records
indevis partnerships and signals
Strategic signalPartnerships
13 partnerships are on record, tiered core, flagship and minor.
- Data-Sec GmbHcoreindevis and Data-Sec GmbH merged in 2024 to form a new league of German-speaking cybersecurity providers for the mid-market. The combination brings together two established MSSPs to offer comprehensive cybersecurity solutions including 24/7 SOC and Incident Response under a unified organization.
- IONIXcoreindevis added IONIX to its portfolio for Continuous Threat Exposure Management (CTEM), enabling continuous monitoring of the external attack surface and digital supply chain. indevis also achieved top marks in the IONIX Attack Surface Discovery Test.
- AsimilycoreStrategic partnership adding Asimily's leading IoT/OT/IoMT security platform to indevis portfolio. Asimily provides risk mitigation, continuous vulnerability assessment, and automated IoT patch management for securing operational technology and connected medical devices.
- TXOne Networkscoreindevis added OT security solutions from TXOne Networks to its portfolio for protecting industrial control systems and critical infrastructure from cyber threats. TXOne focuses specifically on securing operational technology environments in manufacturing and critical infrastructure.
- HornetsecuritycorePartnership with Hornetsecurity expanded indevis portfolio with innovative cloud security solutions and a Security Awareness Service for comprehensive protection and employee training. The service was jointly developed with learning psychologists and social engineering experts.
- Cato Networkscoreindevis added Cato Networks' SASE (Secure Access Service Edge) solution to its portfolio, offering cloud-native network security and secure remote access. Joint webinars and events position Cato SASE as a strategic model for complex IT environments.
- PenteracoreStrategic partnership with Pentera for automated pentesting and Automated Security Validation (ASV). The Pentera platform enables indevis to offer continuous, safe, automated testing of the entire attack surface with prioritized remediation recommendations, as a managed service.
- Sophoscoreindevis added Sophos Managed Detection and Response (MDR) service to its portfolio, offering customers a broader selection of security solutions and enabling more targeted responses to individual company needs. Sophos MDR provides proactive protection and rapid incident response.
- Mandiant (Google Cloud)coreindevis strengthened its strategic alliance with Google Cloud by adding Mandiant services to its portfolio. Mandiant, now part of Google, provides leading threat intelligence and incident response capabilities that indevis integrates into its managed security offerings.
- Google Cloudflagshipindevis is a strategic Google Cloud partner in Germany, one of the first strategic partners for Google Chronicle in the DACH region. The partnership centers on Google Chronicle (cloud-native SIEM and Security Operations Suite) as the core engine for indevis MDR and SOCaaS. indevis also integrates Google SecOps, Chronicle, and Mandiant services.
- Palo Alto Networkscoreindevis is a certified partner offering Palo Alto Networks Cortex XDR (endpoint protection), Prisma SASE, and Next-Generation Firewall solutions. The company provides Cortex XDR implementations (e.g., for Andechser Molkerei) and Palo Alto Security Analyses as a consulting service.
- Fortinetcoreindevis offers Fortinet Secure SD-WAN, Fortinet Universal ZTNA, Fortinet Security Fabric, and Fortinet Next-Generation Firewall solutions. The company provides Fortinet Security Analyses as a consulting service and has delivered multiple SD-WAN implementations for multi-branch customers.
- ISG (Information Services Group)minorindevis was recognized as a leader in the ISG Provider Lens Cybersecurity Report 2024 for SOC and MDR services in the midmarket segment. ISG provides independent market analysis and benchmarking for the cybersecurity services market in the DACH region.
Scale indicators4 records
Recent moves6 records
Expansion highlights6 records
indevis competitors and assessment
Company assessmentDirect peers
- secunet Security Networks AG: Public German pure-play cybersecurity provider offering managed security services, consulting and certified solutions, with deep KRITIS, BSI and government credentials. Closest domestic listed peer to indevis in terms of DACH focus, regulated-market expertise and mid-to-large enterprise customer mix.
- Net at Work GmbH: Privately held German IT service provider with a managed security division (managed firewall, endpoint, cloud security, consulting) serving mid-market German Mittelstand. Direct comparable to indevis on size, DACH mid-market focus and partner-driven managed security delivery.
- Arctic Wolf Networks: US-headquartered MDR/SOC-as-a-Service scale-up serving small and mid-market enterprises via channel partners. Comparable to indevis on the mid-market MSSP positioning, recurring SOCaaS revenue model, partner-led GTM and global-vendor technology stack (XDR, SIEM, ASV).
- Eye Security: Netherlands-based European cybersecurity scale-up focused on MDR, incident response and cyber insurance-adjacent services for mid-market in DACH, Benelux and UK. Closest European mid-market MDR competitor emerging in the same regulatory tailwind (NIS2) that indevis is targeting.
- ReliaQuest: US-based managed detection and response provider operating its own GreyMatter SOC platform for mid-market and enterprise. Directly comparable on the 24/7 SOCaaS/MDR offering, vendor-agnostic SIEM/XDR integration model, and channel partners delivering services to mid-market customers.
- Controlware GmbH: Privately held German IT infrastructure and managed security services provider operating its own 24/7 Cyber Defense Center for mid-market and enterprise customers. Comparable to indevis on managed firewall, SOC, MDR and partnership-led services delivery in DACH.
Broad incumbents
- Deutsche Telekom Security (T-Systems): Germany's largest telco-owned cybersecurity and managed security services group, offering 24/7 SOC, MDR and consulting to enterprise and mid-market across DACH. Directly overlaps indevis on SOCaaS, MDR and NIS-2 advisory but at significantly larger scale and as part of a broader portfolio (cloud, networking, telecom).
- Bechtle AG: One of Europe's largest IT system integrators and managed service providers, with a sizeable Bechtle Security/managed security practice serving German Mittelstand and enterprise via direct and channel. Competes head-on with indevis on managed firewall, SD-WAN, SASE and SOC services in the DACH mid-market.
Emerging players
- Hornetsecurity: German-cloud security provider offering managed email security, backup, awareness and a 365 Total Protection managed service used by SMB and mid-market across DACH. Partially overlaps indevis on managed security, awareness and email/backup, but lacks indevis's full SOCaaS/MDR scope and competes rather than partners in some tenders.
Regional players
- Allgeier Group / SITS Group: German IT services group with security and managed services practices operating across DACH through regional entities like SITS and Allgeier Enterprise. Competes with indevis on managed security and consulting for mid-market, including NIS-2 and ISB-as-a-Service style advisory.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat6 records
Key risks6 records
Key highlights7 records
Customer concentration
indevis social profiles
Digital presenceindevis compliance and trust
Trust signalCompliance1 record
indevis financial estimates
Financial estimateRevenue estimate
Valuation estimate
indevis leadership team
Management profileNumber of profiles
Profiles7 records
indevis funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
indevis M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about indevis
What does indevis do?
indevis is a Managed Security Services Provider (MSSP) delivering 24/7 cybersecurity services across Protection, Detection, and Response pillars to mid-market enterprises in the DACH region. Services include SOC as a Service powered by Google Chronicle, Managed XDR, Managed Firewall, Secure SD-WAN, SASE, endpoint and email security, OT/IoT security, Pentest as a Service, Continuous Threat Exposure Management, incident response, and NIS-2 compliance consulting, delivered from German data centers in Munich and Nuremberg.
Is indevis a public or private company?
indevis is a private company. It is classified as private equity controlled and is currently operating.
When was indevis founded?
indevis was founded in 1999. It employs 51 to 100 people.
Where is indevis based?
indevis is headquartered in München, Germany, in the Europe region.
How does indevis make money?
Three revenue lines are on record. Managed Security Services (MSS) is the primary driver. The others are professional Services & Consulting and license Rental / Usage-Based Services.
Who are indevis's main competitors?
Direct peers on record are secunet Security Networks AG, Net at Work GmbH, Arctic Wolf Networks, Eye Security, ReliaQuest and Controlware GmbH. Broad incumbents are Deutsche Telekom Security (T-Systems) and Bechtle AG. Hornetsecurity is listed as an emerging player. Allgeier Group / SITS Group is listed as a regional player.
Does indevis have an API?
No public API is recorded for indevis.
What industry is indevis in?
indevis's product category is Managed Security Services. Its primary akta.pro industry code is BPAKAHAA, Managed Security Services (MSSP) & 24/7 SOC Operations, with a secondary code of BPAEADAB, Security Operations Center (SOC) as a Service. Its NAICS code is 5415 and its SIC code is 7370.