R-tec IT Security
R-tec IT Security is a German managed security services provider headquartered in Wuppertal that delivers 24/7 Managed Detection and Response, incident response, and offensive security services to KRITIS operators, Mittelstand, and OT/ICS industrial customers across the DACH region.
- Company typePrivate
- Founded2000
- HeadquartersWuppertal, Germany
- Headcount11–50
- GTM typeB2B
- OfferingServices
What R-tec IT Security does
R-tec IT Security GmbH is a privately held German managed security services provider headquartered in Wuppertal, operating under the trading name "r-tec Cyber Security" and branded within the accompio group. The company delivers a Cyber Security Readiness portfolio focused on continuous monitoring, incident response, and compliance enablement for regulated and industrial buyers. Its core offering is a 24/7 Managed Detection and Response (MDR) service for both IT and Operational Technology environments, built on Exabeam Fusion SIEM for behavioral anomaly detection in IT settings and Claroty and CrowdStrike tooling for OT and SOC operations respectively. Complementary capabilities span offensive services (penetration testing, red teaming, purple teaming, social engineering awareness) and defensive services (incident response retainers, compromise assessment, digital forensics, vulnerability management, dark web monitoring), as well as BSI-SzA readiness consulting for KRITIS operators. R-tec holds ISO 27001 and ISO 9001 certifications, is a BSI-certified APT Response Provider, and operates a Cyber Defense Center staffed by personnel with 25+ years of domain experience.
The company's revenue model combines recurring managed services (MDR, managed EDR, SOC operations, vulnerability management) with fixed monthly incident response retainers and project-based professional services such as penetration tests and security assessments. Distribution is direct, consultative, and regional — primarily DACH — with referral traffic from technology partners including Microsoft, Fortinet, Zscaler, CrowdStrike, and others. Primary customer segments are KRITIS-regulated critical infrastructure (especially energy), the German Mittelstand seeking outsourced SOC operations, and industrial operators with OT/ICS environments, with secondary exposure to healthcare, public sector/municipalities, and automotive suppliers needing TISAX compliance. Notable reference customers include Projektron GmbH (ISMS/ISO 27001) and NGN Netzgesellschaft (ISMS since 2014), with energy utilities represented anonymously due to confidentiality. The company has no external funding, no disclosed headcount trend, and no disclosed revenue, and is structurally part of the broader accompio group.
R-tec IT Security firmographics
Firmographics- Name
- R-tec IT Security
- Legal name
- r-tec IT Security GmbH
- Website
- https://r-tec.net
- Company type
- Private
- Founded year
- 2000
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- R-tec IT Security is a German managed security services provider headquartered in Wuppertal that delivers 24/7 Managed Detection and Response, incident response, and offensive security services to KRITIS operators, Mittelstand, and OT/ICS industrial customers across the DACH region.
- Ownership category
- akta.pro rank
R-tec IT Security industry classification
Industry- Product category
- Managed Security Services
- NAICS
- Computer Systems Design and Related Services (54151), Investigation and Security Services (5616), Custom Computer Programming Services (541511)
- SIC
- Services-Computer Integrated Systems Design (7373), Services-Computer Programming, Data Processing, Etc. (7370), Services-Testing Laboratories (8734)
- akta.pro primary industry
- Security Operations (SOC), Incident Response & Threat Hunting (EDAOAIAI)
- akta.pro secondary industries
- Network Security Managed Services (Firewall/IDS/IPS/SASE) (BPAEADAG), Vulnerability Assessment & Scanning (HDADAHAA), Vulnerability Intelligence & Exploit Prediction (HDADAHAI)
Keywords
Where R-tec IT Security is headquartered
LocationHeadquarters
- HQ city
- Wuppertal
- HQ country
- Germany
- HQ region
- Europe
Offices1 record
Markets served
R-tec IT Security business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales
Revenue model
- Managed Security Services: Recurring managed services including MDR, Managed EDR, SOC operations, and vulnerability management. Customers pay fixed monthly fees for continuous monitoring and protection services.
- Incident Response Retainer: Fixed monthly retainer for incident response readiness, including guaranteed acceptance and response times. Provides standby duty with predefined response capabilities.
- Professional Security Services: One-time consulting and implementation services including penetration testing, security assessments, red teaming, purple teaming, security architecture design and integration, and compliance consulting.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Monthly | Incident Response Service - Fixed monthly retainer |
Go-to-market motion2 records
Distribution channels2 records
Marketing channels5 records
R-tec IT Security product offering
Product offeringCore offering
R-tec IT Security is a managed security service provider delivering 24/7 Managed Detection and Response (MDR) for IT and OT environments, Incident Response retainers with guaranteed response times, and offensive security services including penetration testing, red teaming, purple teaming, and social engineering. Their Cyber Defense Center combines behavioral-based anomaly detection using Machine Learning (via Exabeam Fusion SIEM) and OT-specific passive network monitoring (via Claroty) with expert human analysts. The portfolio also includes digital forensics, vulnerability management, dark web monitoring, BSI-SzA readiness assessments for KRITIS operators, and Microsoft security consulting.
Product overview
R-tec IT Security is a Cyber Security Readiness Provider offering a comprehensive portfolio of managed security services and consulting. The core offering centers on Managed Detection and Response (MDR) services for both IT and OT environments, which combine Exabeam-powered behavioral anomaly detection with 24x7 expert monitoring. The service portfolio spans offensive security (pentesting, red teaming, purple teaming, social engineering) and defensive capabilities (incident response, digital forensics, vulnerability management, SOC services). Notable specialized offerings include OT-specific MDR, BSI-SzA readiness assessments for KRITIS operators, and Microsoft security services. The company operates a Cyber Defense Center staffed with experts having 25+ years of experience and recently expanded its technology partner ecosystem to include Abnormal AI, Fortinet, Keeper Security, and Zscaler.
Differentiator
Problem solved
Functional benefit
Products and services
- Managed Detection and Response Service (MDR for IT) 24x7 managed security service combining next-generation SIEM technology (Exabeam Fusion) with expert human analysts to detect, qualify, and respond to security incidents using behavioral-based anomaly detection powered by machine learning.
- MDR Service for OT (Operational Technology) Managed Detection and Response service specifically designed for Operational Technology environments, combining specialized OT-capable technology (Claroty-based passive network monitoring and protocol decoding) with expert monitoring to detect attacks in industrial networks without disrupting operations.
- Managed EDR Service Managed Endpoint Detection and Response service providing continuous endpoint monitoring and threat detection.
- Incident Response Service Monthly retainer service providing guaranteed response times and on-call availability. Includes pre-developed action plans and rapid expert deployment for cyber incidents, malware, ransomware, and data breaches.
- Incident Response Emergency Team Emergency response team available for immediate deployment during active cyber attacks to investigate and contain incidents.
- Incident Response Readiness Assessment Assessment service that tests technical and organizational incident response capabilities, determines the organization's individual maturity level, and provides concrete recommendations for improvement.
- Incident Response Simulation Exercise service that tests and trains organizational response capabilities to security incidents through realistic attack scenarios, including Active Directory compromise and ransomware simulations.
- Pentests & Sicherheitsanalysen (Penetration Testing & Security Analyses) Manual penetration testing services identifying vulnerabilities in both IT and OT environments using practical insights and comprehensive expertise.
- Red Teaming Adversary simulation service where the red team takes an attacker perspective to conduct realistic attack scenarios and test the efficiency of existing defense mechanisms.
- Purple Teaming Collaborative security testing service combining offensive (red) and defensive (blue) team approaches to improve overall security posture.
- Social Engineering & Awareness Security awareness service addressing the human element of security through social engineering tests and training programs.
- Compromise Assessment Service to determine if an organization has been compromised by analyzing security indicators and threat intelligence.
- Dark Web Monitoring Service Service monitoring dark web sources for leaked credentials, stolen data, and threat intelligence relevant to the organization.
- Digitale Forensik (Digital Forensics) Digital forensics service for investigating security incidents and preserving evidence.
- Vulnerability Management Service Ongoing vulnerability identification and management service to help prioritize and address security weaknesses.
- Cyber Security Operations Center SOC service combining processes, expertise, and technologies to protect IT infrastructures. Operates with 25+ years of experience in designing, building, and operating cyber security solutions.
- Cyber Security Check Assessment service determining the current state of an organization's security landscape and comparing it against current best practices.
- Orientierungshilfe SzA Readiness Assessment Consulting service helping KRITIS operators meet BSI-SzA (Angriffserkennung) orientation requirements, including verification of system conformity and implementation of compliant attack detection systems.
- Microsoft Security Microsoft security service for securing Microsoft domains including Active Directory security, privileged account protection, password policies, and Security Baselines implementation.
Quantifiable outcome
- 123 security incidents documented in 2025 Cyber Security Report
- +1 more outcomes
Companies that use R-tec IT Security
Customer profileNamed customers3 records
Segments6 records
Ideal customer profiles3 records
R-tec IT Security technology and API
TechnologyTechnology focussed No
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration3 records
AI capability2 records
Feature4 records
R-tec IT Security partnerships and signals
Strategic signalPartnerships
Eleven partnerships are on record, tiered core.
- Abnormal.aicoreAbnormal AI provides AI-based email security solutions. r-tec expanded their technology partner portfolio to include Abnormal AI as part of their ecosystem approach to provide comprehensive cybersecurity solutions.
- FortinetcoreFortinet provides network security solutions including firewalls and security fabric. r-tec offers Fortinet Partner Services as part of their security portfolio.
- Keeper SecuritycoreKeeper Security provides password management and secrets management solutions. r-tec offers Keeper Security Partner Services.
- ZscalercoreZscaler provides cloud security solutions including ZIA and ZPA. r-tec expanded their portfolio to include Zscaler as a technology partner.
- MicrosoftcoreMicrosoft security solutions including Entra ID, Active Directory security, and Microsoft 365 security. r-tec offers comprehensive Microsoft Security services including workshops, Entra ID security, and Windows security hardening.
- Check PointcoreCheck Point provides network security, cloud security, and endpoint security solutions. r-tec offers Check Point Partner Services.
- macmoncoremacmon provides network access control (NAC) solutions. r-tec offers macmon Partner Services.
- ExabeamcoreExabeam provides security information and event management (SIEM) and behavioral analytics. r-tec uses Exabeam Fusion SIEM as the technology foundation for their Managed Detection and Response service.
- ClarotycoreClaroty provides OT/ICS security solutions for industrial environments. Recommended by r-tec for KRITIS customers needing SzA (attack detection) compliance. Closes the gap in industrial cybersecurity between IT and OT environments.
- TenablecoreTenable provides vulnerability management and exposure analysis solutions. r-tec offers Tenable Partner Services.
- CrowdstrikecoreCrowdStrike provides endpoint protection and threat intelligence. r-tec offers CrowdStrike Partner Services and uses CrowdStrike SIEM for Managed SOC services.
Scale indicators5 records
Recent moves6 records
Expansion highlights5 records
R-tec IT Security competitors and assessment
Company assessmentBroad incumbents
- Trustwave: Global cybersecurity firm offering MDR, managed security services, incident response and offensive testing at scale. Broader portfolio than R-tec but overlapping managed detection and IR capabilities.
- WithSecure (formerly F-Secure): Finnish/Nordic cybersecurity vendor with managed detection, incident response and consulting services across Europe. Comparable managed services portfolio and European regulated-customer base.
- Orange Cyberdefense: European MSSP arm of Orange offering SOC, MDR, threat intel and consulting at scale. Direct competitor in DACH accounts and broader European enterprise segment.
- NCC Group: Global cybersecurity services firm with extensive DACH presence offering managed detection, incident response and offensive security. Overlaps with R-tec on incident response and OT/ICS engagements.
Direct peers
- SECUINFRA: Berlin-based German MSSP offering managed detection, incident response, penetration testing and SOC services to mid-market and enterprise customers. Closely comparable to R-tec in service portfolio and DACH mid-market focus.
- SEC Consult: Austrian/DACH cybersecurity firm offering managed security services, penetration testing, red teaming and incident response. Overlapping customer segments and similar offensive+defensive portfolio make it a direct comparable.
- SySS GmbH: German penetration testing and IT security services firm with strong incident response and red team capabilities. Comparable in offensive security expertise and DACH enterprise customer base.
- Arctic Wolf: US-headquartered MDR provider with expanding DACH operations offering 24/7 managed detection and response across IT environments. Comparable subscription-MDR model and target mid-market segments.
- eSentire: Global pure-play MDR and XDR provider delivering 24/7 SOC, threat hunting and rapid incident response. Similar managed-services-first positioning for mid-market customers.
- Kudelski Security: Swiss-headquartered cybersecurity services provider with managed detection, response and ICS/OT security practices. Strong DACH/EMEA overlap and similar KRITIS-style regulated customer focus.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
R-tec IT Security social profiles
Digital presenceR-tec IT Security compliance and trust
Trust signalCompliance2 records
R-tec IT Security financial estimates
Financial estimateRevenue estimate
Valuation estimate
R-tec IT Security leadership team
Management profileNumber of profiles
Profiles3 records
R-tec IT Security funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
R-tec IT Security M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about R-tec IT Security
What does R-tec IT Security do?
R-tec IT Security is a managed security service provider delivering 24/7 Managed Detection and Response (MDR) for IT and OT environments, Incident Response retainers with guaranteed response times, and offensive security services including penetration testing, red teaming, purple teaming, and social engineering. Their Cyber Defense Center combines behavioral-based anomaly detection using Machine Learning (via Exabeam Fusion SIEM) and OT-specific passive network monitoring (via Claroty) with expert human analysts. The portfolio also includes digital forensics, vulnerability management, dark web monitoring, BSI-SzA readiness assessments for KRITIS operators, and Microsoft security consulting.
Is R-tec IT Security a public or private company?
R-tec IT Security is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was R-tec IT Security founded?
R-tec IT Security was founded in 2000. It employs 11 to 50 people.
Where is R-tec IT Security based?
R-tec IT Security is headquartered in Wuppertal, Germany, in the Europe region.
How does R-tec IT Security make money?
Three revenue lines are on record. Managed Security Services are the primary driver. The others are incident Response Retainer and professional Security Services.
Who are R-tec IT Security's main competitors?
Broad incumbents on record are Trustwave, WithSecure (formerly F-Secure), Orange Cyberdefense and NCC Group. Direct peers are SECUINFRA, SEC Consult, SySS GmbH, Arctic Wolf, eSentire and Kudelski Security.
Does R-tec IT Security have an API?
No public API is recorded for R-tec IT Security.
What industry is R-tec IT Security in?
R-tec IT Security's product category is Managed Security Services. Its primary akta.pro industry code is EDAOAIAI, Security Operations (SOC), Incident Response & Threat Hunting, with a secondary code of BPAEADAG, Network Security Managed Services (Firewall/IDS/IPS/SASE). Its NAICS code is 54151 and its SIC code is 7373.