SOMI Systems
SOMI Systems a.s. is a Slovak cybersecurity and IT services firm founded in 1993, delivering NIS2, GDPR, and network security advisory and managed services to public administration, healthcare, and private-sector clients across Slovakia from its Banská Bystrica headquarters.
- Company typePrivate
- Founded1993
- HeadquartersBanská Bystrica
- Headcount11–50
- GTM typeB2B
- OfferingServices
What SOMI Systems does
SOMI Systems a.s. is a privately held Slovak cybersecurity and IT services company founded in 1993 and headquartered in Banská Bystrica. The firm delivers advisory, implementation, and managed services across three pillars: cybersecurity (NIS2 and Slovak Act No. 69/2018 Coll.), personal data protection (GDPR and Slovak Act No. 18/2018 Coll.), and IT protection (next-generation firewall, ICT operations monitoring on Zabbix, endpoint backup, Microsoft 365 security). Its portfolio includes proprietary products developed since 2005 — Kerber, Kerber Backup Server, Bezpečnostný projekt, Bezpečnostná politika, and Monitoring prevádzky IKT — complemented by third-party technology integrations with Fortinet, Zabbix, and Microsoft 365. The firm has prepared over 120 organizations for cybersecurity audits and implemented NIS2 controls in more than 100 organizations across Slovak public administration, healthcare, manufacturing, food production, and water utilities, with 50+ next-generation firewall deployments (70% public administration, 30% commercial).
The company operates a sales-led, consultative go-to-market with all engagements quote-based and no self-serve or e-commerce channel. Pricing is not publicly disclosed. Marketing relies on the company website and blog, LinkedIn, Facebook, industry conferences (including the 'Kybernetická bezpečnosť v praxi 5.0' event), and a referral network anchored by named reference customers such as Zeppelin SK, PPS Group, REMESLO, Trenčín municipality, Baliarne, Protetika, and ZPA. Revenue streams span professional services (cybersecurity and GDPR consulting, DPO and CSM outsourcing, training), managed services, and product licensing.
Recent strategic positioning includes the 2024 launch of Risk Management Manager and Business Continuity Management services and the 2026 introduction of an AI Act compliance advisory offering. SOMI Systems holds ISO 9001, ISO/IEC 27001:2022, ISO 14001, ISO 22301, and ISO/IEC 20000-1 certifications, and has been recognized by Fortinet as SMB Champion 2022 and SMB Partner of the Year 2025. The company remains a Slovakia-only operation with a single headquarters and an 11–50 employee headcount, and there is no disclosed external funding, M&A, or parent-company ownership.
SOMI Systems firmographics
Firmographics- Name
- SOMI Systems
- Legal name
- SOMI Systems a.s.
- Website
- https://somi.sk
- Company type
- Private
- Founded year
- 1993
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- SOMI Systems a.s. is a Slovak cybersecurity and IT services firm founded in 1993, delivering NIS2, GDPR, and network security advisory and managed services to public administration, healthcare, and private-sector clients across Slovakia from its Banská Bystrica headquarters.
- Ownership category
- akta.pro rank
SOMI Systems industry classification
Industry- Product category
- Cybersecurity Consulting Services
- NAICS
- Management, Scientific, and Technical Consulting Services (5416), Other Computer Related Services (541519), Security Systems Services (56162)
- SIC
- Services-Engineering, Accounting, Research, Management (8700)
- akta.pro primary industry
- IT Risk Management (ITRM) (HDADAIAD)
- akta.pro secondary industries
- Security Awareness, Training & Compliance Attestation (HDADAIAJ), Fault & Performance Monitoring (SNMP/Telemetry/APM for Networks) (HDAFAMAA), Systems Integration & Implementation Services (BPAEAAAB)
Keywords
Where SOMI Systems is headquartered
LocationHeadquarters
- HQ city
- Banská Bystrica
Offices1 record
Markets served
SOMI Systems business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales, Infrastructure
Revenue model
- Professional Cybersecurity Consulting Services: Core revenue stream encompassing gap analysis, risk analysis (IS RiA), security policy drafting, implementation of security measures, employee training, audit preparation, and assistance during cybersecurity audits. Also includes outsourcing of Cybersecurity Manager (CSM) and Risk Management Manager roles.
- GDPR and Data Protection Officer (DPO) Services: DPO outsourcing and GDPR compliance services, including data protection officer role, personal data protection policies, and compliance audits under the GDPR framework.
- IT Protection Products and Services: Network security (firewall), endpoint backup, Microsoft 365 services, and ICT operations monitoring — sold as managed services or licensed products.
- Training and Workshops: Cybersecurity and GDPR training sessions and workshops for client employees, teaching prevention of data breaches.
Go-to-market motion1 record
Distribution channels1 record
Marketing channels5 records
SOMI Systems product offering
Product offeringCore offering
SOMI Systems a.s. is a Slovak IT consulting firm that delivers cybersecurity, GDPR and data protection services to organizations in Slovakia. Its core offering covers gap analysis, risk analysis, security policy drafting, implementation of security measures, Cybersecurity Manager (CSM) and Data Protection Officer (DPO) outsourcing, IT protection solutions (next-generation firewall, endpoint backup, ICT monitoring, Microsoft 365), AI Act advisory and employee training. The firm combines proprietary products (Kerber, Bezpečnostný projekt, Bezpečnostná politika) with third-party technology integrations (Fortinet, Zabbix) and certified advisory methodology under Act No. 69/2018 Coll. and the NIS2 Directive.
Product overview
SOMI Systems a.s. is a Slovak cybersecurity and IT services company founded in 1993, offering a portfolio of advisory and implementation services structured around three core pillars: (1) Cybersecurity under NIS2 and Act No. 69/2018 Coll., including GAP analysis, risk analysis (IS RiA), security documentation, Cybersecurity Manager outsourcing, and audit preparation; (2) Personal Data Protection (GDPR), including Data Protection Officer outsourcing; and (3) IT Protection, encompassing next-generation firewall/network security (Ochrana siete), ICT operations monitoring via Zabbix, endpoint backup, and Microsoft 365 security. The company also offers AI Act compliance services (including AI Coordinator) and training/workshops. The proprietary product line includes the Kerber family (Kerber, Kerber Backup Server), the Bezpečnostný projekt (Security Project) methodology, and Bezpečnostná politika (Security Policy) templates, all developed in-house and brought to market since the mid-2000s. Services are delivered by a team of certified experts from the company's Banská Bystrica headquarters, serving clients across public administration, healthcare, education, and the private sector.
Differentiator
Problem solved
Functional benefit
Products and services
- Kybernetická bezpečnosť (Cybersecurity / NIS2) Comprehensive cybersecurity compliance and implementation services aligned with Act No. 69/2018 Coll. and the NIS2 Directive, covering GAP analysis, risk analysis, security documentation, policy implementation, employee training and audit preparation. Deployed in over 100 organizations in Slovakia including private sector, public administration, hospitals and water companies.
- Manažér kybernetickej bezpečnosti (Cybersecurity Manager / CSM outsourcing) Outsourced Cybersecurity Manager service fulfilling the legal requirement under NIS2 for essential service operators to appoint a qualified Cybersecurity Manager without conflicts of interest, meeting knowledge standards per Decree No. 492/2022 Coll.
- GAP Analýza (GAP Analysis) Standalone compliance gap assessment comparing an organization's current state against requirements of Act No. 69/2018 Coll., NIS2 and required security measures, producing an overview of threats, risks, priorities and a recommended remediation plan.
- Analýza rizík IS RiA (Risk Analysis) Standalone cybersecurity risk analysis required under the Cybersecurity Act to determine the likelihood of harmful events and establish a basis for adopting security measures; recommended to be reviewed annually.
- Ochrana osobných údajov (GDPR / Personal Data Protection) Personal data protection services ensuring compliance with GDPR and Slovak data protection law (Act No. 18/2018 Coll.), including Data Protection Officer (DPO) outsourcing, GDPR gap analysis, policy development and employee training to prevent data breaches.
- Zodpovedná osoba (Data Protection Officer / DPO outsourcing) Outsourced Data Protection Officer service for organizations required under GDPR to appoint a DPO, handling data subject rights, regulatory compliance and data protection impact assessments.
- Ochrana siete (Network Security / Next-Generation Firewall) Next-generation firewall solution (Fortinet-based) for managing Internet access and creating a secure, manageable corporate IT network. Features include protection against unauthorized network access and data breaches, encrypted remote access, centralized management console and Internet access control. Deployed in more than 50 organizations in Slovakia.
- AI Act compliance advisory AI Act compliance advisory service helping organizations implement the EU AI Act practically, securely and comprehensively — enabling controlled, trustworthy AI usage with clear accountability structures.
- AI koordinátor (AI Coordinator) Standalone AI Act coordination service assisting organizations in managing their obligations and implementing AI governance frameworks under the EU AI Act.
- Monitorovanie prevádzky IKT (ICT Operations Monitoring) Zabbix-based ICT infrastructure monitoring service ensuring continuity of information systems for public administration operators per Act No. 95/2019 Z.z., including proactive incident detection and infrastructure oversight.
- Zálohovanie koncových staníc (Endpoint Backup) Endpoint backup solution for securing data on workstations and end devices, protecting against data loss and supporting business continuity and disaster recovery requirements.
- Microsoft 365 security and protection services Microsoft 365 security and protection services including configuration, monitoring and compliance management for organizations using the Microsoft 365 platform.
- Školenia a workshopy (Training and Workshops) Employee training programs in cybersecurity and GDPR awareness, teaching staff how to prevent data breaches and respond to cyber incidents, including infographics and educational materials.
- Riadenie kontinuity BCM (Business Continuity Management) Business continuity management services including continuity planning, backup strategies, disaster recovery and crisis management aligned with ISO 22301 requirements.
- Analýza dopadov BIA (Business Impact Analysis) Business impact analysis to assess the consequences of disruption to critical business functions and support continuity planning and risk management.
- Bezpečnostný projekt (Security Project methodology) Proprietary security project methodology and template introduced in 2005 for structuring and documenting information security implementations for clients.
- Kerber Proprietary product introduced to market in 2007, serving as a comprehensive system for connecting and managing Internet access and securing local IT infrastructure — referenced as the company's own branded firewall / network protection solution.
- Kerber Backup Server Proprietary backup server product introduced in 2011 for endpoint data backup and recovery, complementing the Kerber product family.
- Bezpečnostná politika (Security Policy framework) Proprietary security policy product introduced in 2010 for structuring and implementing organizational security policies in accordance with legal requirements.
Quantifiable outcome
- Prepared over 120 organizations for cybersecurity audits
- +3 more outcomes
Companies that use SOMI Systems
Customer profileNamed customers7 records
Segments5 records
Ideal customer profiles4 records
SOMI Systems technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature7 records
SOMI Systems partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- FortinetcoreSOMI Systems is a Fortinet partner awarded SMB Partner of the Year 2025 and SMB Champion 2022. They deploy Fortinet next-generation firewall solutions for their clients, integrating Fortinet technology into their managed cybersecurity services offering.
Scale indicators6 records
Recent moves8 records
Expansion highlights5 records
SOMI Systems competitors and assessment
Company assessmentBroad incumbents
- Trustwave: Global managed security services and consulting provider with MDR, advisory, and compliance offerings for mid-market and enterprise customers. Comparable as a broad incumbent in cybersecurity consulting and managed services with overlapping compliance capabilities.
- KPMG Cyber Practice: Big 4 professional services network with a global cybersecurity advisory practice covering NIS2, GDPR, risk management, and managed security. Comparable as a broad incumbent competing for the same enterprise regulatory compliance mandates SOMI targets.
- T-Systems: Deutsche Telekom subsidiary providing large-scale IT services and cybersecurity consulting across Europe, including compliance, managed security, and integration services for enterprise and public-sector clients. Comparable as a broad incumbent in the same cybersecurity and IT services space.
- NCC Group: Global cybersecurity consulting and managed security services firm headquartered in the UK. Comparable as a larger broad incumbent offering cybersecurity advisory, risk management, compliance, and managed security services overlapping with SOMI's portfolio.
- Orange Cyberdefense: European managed security services provider and consultancy operating across multiple countries with cybersecurity advisory, compliance support, and SOC services. Comparable as a broad incumbent offering similar compliance-adjacent and managed security services.
Direct peers
- Soitron: Slovakia-headquartered IT services and consulting firm with a cybersecurity and managed services practice serving Central European enterprises and public sector. Closely comparable by geography, customer mix, and service portfolio including managed security, consulting, and integration work.
- Datalan: Slovak IT services and managed services provider with security offerings, serving enterprise and public-sector clients in Slovakia and the broader Central European region. Directly comparable on geography, target customers, and the mix of consulting plus managed IT/security services.
Regional players
- Asseco Central Europe: Large Central European IT services group delivering enterprise software, systems integration, and cybersecurity-related services across Slovakia, Poland, and neighboring markets. Comparable as a broader regional incumbent offering cybersecurity and IT consulting overlapping with SOMI's service lines.
- WithSecure: Nordic-headquartered cybersecurity firm (formerly F-Secure corporate) offering managed security, consulting, and compliance-focused services across Europe. Comparable as a regional player with overlapping cybersecurity consulting and managed services portfolio.
Others
- ESET: Slovakia-headquartered global cybersecurity vendor best known for endpoint security products. Relevant as a technology partner and ecosystem participant within the Slovak market, rather than as a direct consulting competitor to SOMI.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks5 records
Key highlights7 records
Customer concentration
SOMI Systems social profiles
Digital presenceSOMI Systems compliance and trust
Trust signalCompliance4 records
SOMI Systems financial estimates
Financial estimateRevenue estimate
Valuation estimate
SOMI Systems leadership team
Management profileNumber of profiles
Profiles2 records
SOMI Systems funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
SOMI Systems M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about SOMI Systems
What does SOMI Systems do?
SOMI Systems a.s. is a Slovak IT consulting firm that delivers cybersecurity, GDPR and data protection services to organizations in Slovakia. Its core offering covers gap analysis, risk analysis, security policy drafting, implementation of security measures, Cybersecurity Manager (CSM) and Data Protection Officer (DPO) outsourcing, IT protection solutions (next-generation firewall, endpoint backup, ICT monitoring, Microsoft 365), AI Act advisory and employee training. The firm combines proprietary products (Kerber, Bezpečnostný projekt, Bezpečnostná politika) with third-party technology integrations (Fortinet, Zabbix) and certified advisory methodology under Act No. 69/2018 Coll. and the NIS2 Directive.
Is SOMI Systems a public or private company?
SOMI Systems is a private company. It is classified as unknown and is currently operating.
When was SOMI Systems founded?
SOMI Systems was founded in 1993. It employs 11 to 50 people.
Where is SOMI Systems based?
SOMI Systems is headquartered in Banská Bystrica.
How does SOMI Systems make money?
Four revenue lines are on record. Professional Cybersecurity Consulting Services are the primary driver. The others are GDPR and Data Protection Officer (DPO) Services, IT Protection Products and Services and training and Workshops.
Who are SOMI Systems's main competitors?
Broad incumbents on record are Trustwave, KPMG Cyber Practice, T-Systems, NCC Group and Orange Cyberdefense. Direct peers are Soitron and Datalan. Regional players are Asseco Central Europe and WithSecure. ESET is listed as an others.
Does SOMI Systems have an API?
No public API is recorded for SOMI Systems.
What industry is SOMI Systems in?
SOMI Systems's product category is Cybersecurity Consulting Services. Its primary akta.pro industry code is HDADAIAD, IT Risk Management (ITRM), with a secondary code of HDADAIAJ, Security Awareness, Training & Compliance Attestation. Its NAICS code is 5416 and its SIC code is 8700.