Protektis Gmbh
Protektis GmbH is a privately held German cybersecurity and data protection consultancy founded in 2017, delivering IT security audits, ISMS implementation, external DPO/ISB retainers, penetration testing, awareness training, and BSI/ISO 27001/TISAX/NIS2 compliance consulting to the German Mittelstand and public sector.
- Company typePrivate
- Founded2017
- HeadquartersAschaffenburg, Germany
- Headcount1–10
- GTM typeB2B
- OfferingServices
What Protektis Gmbh does
Protektis GmbH is a privately held German cybersecurity and data protection consulting firm founded in 2017 and headquartered in Aschaffenburg. The firm provides advisory, audit, and managed compliance services — including IT security audits, ISMS implementation, risk analysis, vulnerability scanning, penetration testing (delivered via a certified partner), external Information Security Officer and Data Protection Officer retainers, employee security awareness training and phishing simulation, and consulting for BSI IT-Grundschutz, ISO 27001, TISAX, OT-Security (IEC 62443), NIS2, and the EU Whistleblower Directive — and also operates a Germany-hosted Hinweisgeber whistleblower platform. Its core technology asset is a proprietary BSI IT-Grundschutz/ISO 27001 audit framework of 7 examination categories and over 400 questions that supports rapid on-site audit delivery, complemented by multi-vendor e-learning platform partnerships (Hornetsecurity, SoSafe, KnowBe4, Sophos, GDATA) for awareness training delivery.
The firm sells professional services and recurring managed compliance retainers on a quote-based, multi-year contractual basis, with a free initial consultation funnel. Go-to-market is consultative and sales-led, targeting the German Mittelstand (manufacturing, automotive suppliers, logistics, construction, professional services), German municipalities and public administration, automotive suppliers needing TISAX, and industrial organizations needing OT/ICS security. Marketing channels include the corporate website, LinkedIn/Facebook/Instagram, IT for Work Expo Congress events, Google Ads paid search, and Microsoft Clarity behavioral analytics. The customer base comprises 100+ organizations since 2017 across at least 10 verticals, with named logos including Horsch Maschinen, Eirich, Treffert, Cartonplast, NFON AG, YKK Deutschland, IDS Logistik, ProStep AG, Grünbeck Wasseraufbereitung, Stadt Aschaffenburg, Landkreis Aschaffenburg, and Wissenschaftsstadt Darmstadt. The firm is led by Frank Fengel (Geschäftsführer/CEO) and Dennis Jost (Geschäftsleiter/COO), operates from a 1–10 employee headcount band, and discloses no external funding, parent company, subsidiaries, or financial figures.
Protektis Gmbh firmographics
Firmographics- Name
- Protektis Gmbh
- Legal name
- Protektis GmbH
- Website
- https://protektis.de
- Company type
- Private
- Founded year
- 2017
- Operating status
- Operating
- Headcount range
- 1–10 employees
- Short description
- Protektis GmbH is a privately held German cybersecurity and data protection consultancy founded in 2017, delivering IT security audits, ISMS implementation, external DPO/ISB retainers, penetration testing, awareness training, and BSI/ISO 27001/TISAX/NIS2 compliance consulting to the German Mittelstand and public sector.
- Ownership category
- akta.pro rank
Protektis Gmbh industry classification
Industry- Product category
- Cybersecurity Consulting Services
- NAICS
- Management, Scientific, and Technical Consulting Services (5416), Other Scientific and Technical Consulting Services (54169)
- SIC
- Services-Engineering, Accounting, Research, Management (8700), Services-Management Services (8741)
- akta.pro primary industry
- Security Governance, Risk & Compliance (GRC) Advisory (BPAKADAG)
- akta.pro secondary industry
- Third-Party Risk, Vendor Due Diligence & Supply Chain Compliance (BPAEAPAG)
Keywords
Where Protektis Gmbh is headquartered
LocationHeadquarters
- HQ city
- Aschaffenburg
- HQ country
- Germany
- HQ region
- Europe
Offices1 record
Markets served
Protektis Gmbh business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Operations, Technology or R&D, Marketing or Sales, Others
Revenue model
- Professional Consulting Services: Fees for consulting engagements including IT security audits, risk analysis, vulnerability scanning, penetration testing, and information security officer services.
- Data Protection Officer Services: Recurring fees for assuming the role of external data protection officer (DSB) including ongoing compliance support and regular auditing.
- Training and Awareness Programs: Fees for employee security awareness training, live training sessions, and e-learning platform partnerships including Hornetsecurity, SoSafe, KnowBe4, Sophos, and GDATA platforms.
- NIS2 Compliance Consulting: Advisory services for NIS2 directive compliance including impact assessments, cybersecurity strategy development, and regulatory implementation support.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Other | Multi-year contract | Consulting Services - Quote-based |
Go-to-market motion1 record
Distribution channels3 records
Marketing channels6 records
Protektis Gmbh product offering
Product offeringCore offering
Protektis GmbH is a German cybersecurity and data protection consulting firm that delivers IT security audits, information security officer (ISB) services, external data protection officer (DPO/DSB) services, risk analysis, vulnerability scanning, penetration testing, security awareness training, and compliance consulting (ISO 27001, BSI IT-Grundschutz, NIS2, TISAX, GDPR). It combines advisory engagements with technical assessments for organizations seeking certification and ongoing security management.
Product overview
Protektis GmbH is a German cybersecurity consulting firm founded in 2017, offering a portfolio of advisory and technical services rather than a unified software product. The core offering combines the role of external Information Security Officer (ISB) and Data Protection Officer (DPO) with a suite of technical assessment services: IT-Sicherheitsaudit (IT Security Audit) based on BSI IT-Grundschutz and ISO 27001, IT-Risikoanalyse (Risk Analysis) using ISO 27005, Schwachstellenscan (Vulnerability Scan), and Penetrationstest (Penetration Testing) via a certified partner. Supporting services include Schulung / Security Awareness Training (live and e-learning via partners HornetSecurity, SoSafe, KnowBe4, Sophos, GDATA), Awareness Simulation / Phishing-Simulation, Notfallpläne (Emergency Planning), IT-Richtlinien (IT Policies), Hinweisgeber-System (Whistleblower System), and BSI IT-Grundschutz consulting. Compliance-focused offerings encompass TISAX Zertifizierung for automotive, ISO 27001 Zertifizierung, NIS2 Beratung, and Datenschutzaudit (GDPR/DPO services). OT-Security services round out the portfolio for industrial environments.
Differentiator
Problem solved
Functional benefit
Products and services
- IT-Sicherheitsaudit (IT Security Audit) Analysis of IT structures and identification of security gaps using BSI IT-Grundschutz and ISO 27001 standards, delivered via an audit questionnaire with interviews and a detailed deficiency report with recommendations. Targets organizations seeking IT security assessments.
- Informationssicherheitsbeauftragter (Information Security Officer) Protektis serves as external Information Security Officer (ISB) or IT Security Officer (ITSB), covering IT infrastructure auditing, business process analysis, security training, policy creation, and incident response aligned with ISO 27001 and BSI IT-Grundschutz.
- IT-Risikoanalyse (Risk Analysis) Determines protection requirements for business processes regarding availability, confidentiality, and integrity, and evaluates assets against BSI threat catalogs to identify and prioritize risks based on probability and potential damage.
- Schwachstellenscan (Vulnerability Scan) Non-invasive external vulnerability scanning of network-accessible IT systems, identifying misconfigurations, open ports, outdated software versions, and known security gaps across servers, cloud services, and applications.
- Penetrationstest (Penetration Testing) Professional authorized simulated hacking attack conducted through a certified partner to uncover security gaps and vulnerabilities in internal/external systems, networks, web applications, and mobile apps using OWASP Top 10 methodology.
- TISAX Zertifizierung (TISAX Certification) Consulting support for Trusted Information Security Assessment Exchange (TISAX) certification for automotive industry suppliers, covering ISMS implementation, VDA ISA requirements, registration, self-assessment, and audit preparation.
- ISO 27001 Zertifizierung (ISO 27001 Certification) End-to-end consulting for ISO 27001 certification, including gap analysis, ISMS implementation, audit preparation, and ongoing surveillance audits to maintain certification over the 3-year validity period.
- Notfallpläne / IT-Notfallmanagement (Emergency Planning) IT emergency management including scenario planning for power outages, malware attacks, data loss, and IT failures; disaster recovery planning; and creation of personalized IT emergency handbooks for organizations.
- Datenschutzaudit / Datenschutzbeauftragter (Data Protection Audit / DPO) Protektis acts as external Data Protection Officer (DSB) under EU GDPR and BDSG-neu, handling regular audit of business processes, semi-annual staff awareness, documentation maintenance, regulatory updates, and liaison with data protection authorities.
- Schulung / Security Awareness Training Employee security awareness training combining live sessions with an e-learning platform. The 12-module program covers data privacy, browser security, hotspots, and social engineering, with options for web-based awareness campaigns through partner platforms.
- Awareness Simulation / Phishing-Simulation Phishing simulation service sending realistic simulated email attacks (mass phishing and spear-phishing/CEO fraud) to employees to test recognition of dangerous content, with individual follow-up training for those who fall for the simulation.
- Hinweisgeber-System (Whistleblower System) Web-based whistleblower/whistleblowing platform (EU Whistleblower Directive 2019/1937) enabling anonymous reporting of compliance violations, IT security breaches, data leaks, fraud, and ethical misconduct. Data is stored in Germany with encryption and access controls.
- BSI IT-Grundschutz BSI IT-Grundschutz consulting covering ISMS implementation based on BSI Standards 200-1, 200-2, 200-3, and 200-4, including gap analysis, vulnerability remediation, and optional BSI certification for organizations seeking to meet German federal cybersecurity standards.
- OT-Security (Operational Technology Security) Security consulting for Operational Technology (OT) environments in industrial settings, including security audits, ISMS implementation (ISO 27001 or BSI IT-Grundschutz), policies, and IEC 62443-based security programs to protect industrial control systems and OT networks from cyber threats.
- NIS2 Beratung (NIS2 Directive Consulting) NIS2 (Network and Information Security Directive 2) compliance consulting including affected-entity assessment, development of cybersecurity strategy, risk management, supply chain security, incident response planning, and staff training to meet the EU directive requirements.
Quantifiable outcome
- Over 100 companies and municipalities served since 2017
- +1 more outcomes
Companies that use Protektis Gmbh
Customer profileNamed customers31 records
Segments4 records
Ideal customer profiles4 records
Protektis Gmbh technology and API
TechnologyTechnology focussed No
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration7 records
Feature2 records
Protektis Gmbh partnerships and signals
Strategic signalPartnerships
Three partnerships are on record, tiered minor and core.
- GDD (Gesellschaft für Datenschutz)minorProfessional membership in the German Data Protection Society, demonstrating commitment to data protection expertise and professional standards.
- IT for Work Expo CongressminorPartnership and participation in IT for Work Expo Congress IT Security events for industry visibility and lead generation.
- Penetration Testing PartnercoreCertified IT security consultants and ethical hackers who conduct penetration tests as part of Protektis's security testing services. Tests include external and internal penetration testing, web application testing, and follow OWASP Top 10 standards.
Scale indicators3 records
Recent moves6 records
Expansion highlights4 records
Protektis Gmbh competitors and assessment
Company assessmentDirect peers
- usd AG: German security consultancy focused on ISMS, PCI DSS, and compliance advisory for mid-sized organizations; overlaps directly with Protektis's ISO 27001, BSI IT-Grundschutz, and audit portfolio.
- cirosec GmbH: German IT security specialist focused on penetration testing, vulnerability assessment, and security consulting — directly comparable to Protektis's security testing and audit offerings for mid-market clients.
- HiSolutions AG: German IT security and risk management consultancy serving mid-market and enterprise clients with ISMS, GRC, and security advisory services — a closely comparable niche peer to Protektis in both offering and target segment.
- Datenschutzkanzlei: German law-firm-adjacent consultancy offering external data protection officer services and DSGVO advisory; a directly comparable recurring-DPO peer in the same Mittelstand segment.
- Datenschutz Nord GmbH: Provider of external Data Protection Officer (DSB) services and DSGVO/GDPR compliance consulting in Germany — directly comparable to Protektis's recurring external DPO offering.
Broad incumbents
- msg systems AG: German IT consulting group with a cybersecurity, ISMS, and compliance practice serving insurance, banking, and industrial clients; a broader mid-to-large incumbent with comparable GRC capabilities.
- KPMG AG Wirtschaftsprüfungsgesellschaft: Big 4 firm in Germany with a sizeable cybersecurity advisory and ISO 27001 practice; competes with Protektis at the upper end of the Mittelstand and enterprise market as part of a much broader consulting portfolio.
- TÜV Rheinland Cert GmbH: Major certification and testing body offering ISO 27001 audits and broad cybersecurity services; competes with Protektis on certification advisory but as part of a much larger multi-disciplinary portfolio.
- TÜV SÜD Management Service GmbH: Global certification body that issues ISO 27001 and related certifications and offers broader GRC advisory; overlaps with Protektis's certification-support services as a much larger incumbent across industries.
- DEKRA Certification GmbH: International testing, inspection, and certification organization with cybersecurity and ISO 27001 certification services; a broad incumbent with overlapping GRC/certification capabilities.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks6 records
Key highlights7 records
Customer concentration
Protektis Gmbh social profiles
Digital presenceProtektis Gmbh compliance and trust
Trust signalCompliance7 records
Protektis Gmbh financial estimates
Financial estimateRevenue estimate
Valuation estimate
Protektis Gmbh leadership team
Management profileNumber of profiles
Profiles2 records
Protektis Gmbh funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Protektis Gmbh M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Protektis Gmbh
What does Protektis Gmbh do?
Protektis GmbH is a German cybersecurity and data protection consulting firm that delivers IT security audits, information security officer (ISB) services, external data protection officer (DPO/DSB) services, risk analysis, vulnerability scanning, penetration testing, security awareness training, and compliance consulting (ISO 27001, BSI IT-Grundschutz, NIS2, TISAX, GDPR). It combines advisory engagements with technical assessments for organizations seeking certification and ongoing security management.
Is Protektis Gmbh a public or private company?
Protektis Gmbh is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Protektis Gmbh founded?
Protektis Gmbh was founded in 2017. It employs 1 to 10 people.
Where is Protektis Gmbh based?
Protektis Gmbh is headquartered in Aschaffenburg, Germany, in the Europe region.
How does Protektis Gmbh make money?
Four revenue lines are on record. Professional Consulting Services are the primary driver. The others are data Protection Officer Services, training and Awareness Programs and NIS2 Compliance Consulting.
Who are Protektis Gmbh's main competitors?
Direct peers on record are usd AG, cirosec GmbH, HiSolutions AG, Datenschutzkanzlei and Datenschutz Nord GmbH. Broad incumbents are msg systems AG, KPMG AG Wirtschaftsprüfungsgesellschaft, TÜV Rheinland Cert GmbH, TÜV SÜD Management Service GmbH and DEKRA Certification GmbH.
Does Protektis Gmbh have an API?
No public API is recorded for Protektis Gmbh.
What industry is Protektis Gmbh in?
Protektis Gmbh's product category is Cybersecurity Consulting Services. Its primary akta.pro industry code is BPAKADAG, Security Governance, Risk & Compliance (GRC) Advisory, with a secondary code of BPAEAPAG, Third-Party Risk, Vendor Due Diligence & Supply Chain Compliance. Its NAICS code is 5416 and its SIC code is 8700.