Iss - Information Security Services Gmbh & Co. Kg
ISS is a privately held German IT security consulting firm in Magdeburg that advises German Mittelstand and regulated industries on ISMS, GDPR, NIS-2, BAIT, VAIT, TISAX, PCI DSS, and incident response, delivered through quote-based professional services engagements.
- Company typePrivate
- Founded-
- HeadquartersMagdeburg, Germany
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Iss - Information Security Services Gmbh & Co. Kg does
ISS - Information Security Services GmbH & Co. KG is a privately held German IT security consulting firm headquartered in Magdeburg, Sachsen-Anhalt, and led by Managing Director Alexander Schulze. The firm operates as a GmbH & Co. KG with a disclosed headcount of 11–50 employees and no institutional investors, parent company, or external ownership disclosed in available sources.
The company's offering is built around six core service lines: ISMS Beratung (information security management system consulting aligned to ISO 27001 and BSI IT-Grundschutz), Datenschutz (GDPR/DSGVO compliance and external Data Protection Officer services), Business Resilience (crisis management and continuity), Offensive Security (penetration testing and threat hunting), Security Incident Response, and Digitale Forensik (digital forensics). Two proprietary methodologies are emphasized: a six-step ISMS consulting process (audit through certification support) and a DFIR approach combining forensic evidence preservation with rapid business recovery. The firm also publishes the ISS-Wiki, a content knowledge base covering NIS-2, GDPR, ISO 27001, BAIT, VAIT, TISAX, PCI DSS, and cloud security. ISS itself is ISO 27001 certified, used as a credibility signal when advising clients on the same standard.
ISS generates revenue through professional services engagements sold via a direct, consultative sales motion, with quote-based pricing on multi-year contracts. The go-to-market targets German Mittelstand firms and extends into vertical-specific compliance advisory for banking (BAIT), insurance (VAIT), automotive (TISAX), payments (PCI DSS), and critical infrastructure (KRITIS) operators. Distribution is single-country domestic, primarily through the iss-consulting.de website, LinkedIn, and inbound consultation bookings. TeleMedi GmbH is the sole named external reference customer, in connection with a publicly funded 5G medical technology project; the remainder of the customer base is not publicly disclosed.
Iss - Information Security Services Gmbh & Co. Kg firmographics
Firmographics- Name
- Iss - Information Security Services Gmbh & Co. Kg
- Legal name
- ISS GmbH & Co.KG
- Website
- https://iss-consulting.de
- Company type
- Private
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- ISS is a privately held German IT security consulting firm in Magdeburg that advises German Mittelstand and regulated industries on ISMS, GDPR, NIS-2, BAIT, VAIT, TISAX, PCI DSS, and incident response, delivered through quote-based professional services engagements.
- Ownership category
- akta.pro rank
Iss - Information Security Services Gmbh & Co. Kg industry classification
Industry- Product category
- Cybersecurity Consulting Services
- NAICS
- Computer Systems Design and Related Services (54151)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- IT Asset Disposition (ITAD) & Secure Data Erasure (BPAEAOAK)
Keywords
Where Iss - Information Security Services Gmbh & Co. Kg is headquartered
LocationHeadquarters
- HQ city
- Magdeburg
- HQ country
- Germany
- HQ region
- Europe
Offices1 record
Markets served
Iss - Information Security Services Gmbh & Co. Kg business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Operations, Technology or R&D, Marketing or Sales, Others
Revenue model
- IT Security Consulting Services: Professional consulting services for information security, including ISMS implementation, data protection compliance, security audits, penetration testing, incident response, and digital forensics. Services are offered as project-based engagements and ongoing advisory relationships with external DSB/ISB roles.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Other | Multi-year contract | Custom consulting engagements |
Go-to-market motion1 record
Distribution channels2 records
Marketing channels4 records
Iss - Information Security Services Gmbh & Co. Kg product offering
Product offeringCore offering
ISS is an IT security consulting company that advises German businesses on information security, data protection, and cybersecurity. Its core offerings are ISMS Beratung (ISO 27001 and BSI IT-Grundschutz implementation), Datenschutz (GDPR compliance and external Data Protection Officer services), Business Resilience (crisis management and continuity), Offensive Security (penetration testing and vulnerability assessments), Security Incident Response, and Digitale Forensik (digital forensics). Services are delivered as custom project engagements and ongoing advisory roles.
Product overview
ISS is an IT security consulting company offering a portfolio of specialized services rather than a unified software product. The core offerings include ISMS Beratung (information security management system consulting), Datenschutz (data protection/GDPR compliance), Business Resilience (crisis management and continuity), Offensive Security (penetration testing and vulnerability analysis), Security Incidence Response (incident management), and Digitale Forensik (digital forensics). These services are complemented by the ISS-Wiki knowledge resource. The company provides these services primarily to businesses in Germany, helping them achieve compliance with regulations such as NIS-2, GDPR, ISO 27001, and industry-specific standards like BAIT (banking), VAIT (insurance), TISAX (automotive), and PCI DSS (payment cards).
Differentiator
Problem solved
Functional benefit
Products and services
- ISMS Beratung (Information Security Management System Consulting) Consulting service that helps businesses establish, implement, and maintain an Information Security Management System aligned with ISO 27001 or BSI IT-Grundschutz standards, using a six-step methodology (Audit, Strategy, Implementation, Training, Maintenance, Certification).
- Datenschutz (Data Protection / GDPR Compliance) Data protection and GDPR compliance consulting, including DSMS implementation and provision of an external Data Protection Officer (Datenschutzbeauftragter) for client companies.
- Business Resilience (Crisis Management and Continuity) Crisis management and business continuity services focused on maintaining operational capability during security incidents, including disaster recovery planning.
- Offensive Security (Penetration Testing and Vulnerability Analysis) Proactive vulnerability analysis services including penetration testing, threat hunting, and social engineering assessments to identify security weaknesses before attackers.
- Security Incident Response Incident response planning and cyberattack management services, including emergency action plans, incident containment, and regulatory reporting compliance, combined with digital forensics under the DFIR methodology.
- Digitale Forensik (Digital Forensics) Digital forensics services for investigating and reconstructing cybersecurity incidents, collecting digital evidence, and maintaining chain of custody for legal proceedings, integrated with incident response as part of the DFIR methodology.
Quantifiable outcome
- Companies can achieve ISO 27001 or BSI IT-Grundschutz certification with comprehensive documentation
- +1 more outcomes
Companies that use Iss - Information Security Services Gmbh & Co. Kg
Customer profileNamed customers2 records
Segments7 records
Ideal customer profiles7 records
Iss - Information Security Services Gmbh & Co. Kg technology and API
TechnologyTechnology focussed No
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature2 records
Iss - Information Security Services Gmbh & Co. Kg partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- TeleMedi GmbHcoreCollaboration on the funded 'Mobiles EEG für Sachsen-Anhalt' project within the 5G Innovation Program. ISS provided data protection/GDPR compliance services for the medical technology application. TeleMedi GmbH is a reference customer for DSGVO implementation in medical technology.
Scale indicators2 records
Recent moves5 records
Expansion highlights5 records
Iss - Information Security Services Gmbh & Co. Kg competitors and assessment
Company assessmentDirect peers
- HiSolutions AG: HiSolutions AG is a German information security and risk management consulting firm covering ISMS, ISO 27001, BSI IT-Grundschutz, BAIT, and KRITIS — a near-twin of ISS in service scope and German regulatory depth.
- usd AG: usd AG is a German cybersecurity consultancy specializing in ISO 27001/27017, PCI DSS, KRITIS, and GRC advisory, with a similar Mittelstand and regulated-industry focus as ISS.
- SEC Consult: SEC Consult is a European cybersecurity consulting firm offering penetration testing, secure code review, incident response, and ISO 27001 advisory — closely matching ISS's service portfolio across offensive security, DFIR, and ISMS consulting.
- Cure53: Cure53 is a Berlin-based cybersecurity consultancy offering penetration testing, code review, and incident response research — overlapping with ISS's offensive security and DFIR practices in the German market.
- SySS GmbH: SySS is a German penetration testing and IT security consulting firm headquartered in Tübingen, focused on offensive security and security advisories — directly comparable to ISS's Offensive Security service line.
Broad incumbents
- TÜV Rheinland: TÜV Rheinland provides ISO 27001, TISAX, and cybersecurity audits and advisory across many industries — a broad incumbent whose certification and consulting portfolio competes with ISS in regulated German verticals.
- TÜV SÜD: TÜV SÜD is a large global certification body that issues ISO 27001 and TISAX certificates and offers adjacent information security advisory — a broad incumbent whose certification authority overlaps with ISS's implementation work.
- PwC Germany (Cyber & Privacy): PwC Germany's cyber and privacy practice provides ISO 27001, NIS-2, GDPR, BAIT, and VAIT advisory — a broad incumbent with similar regulatory frameworks and a comparable DACH client base.
- Deloitte Germany (Cyber & Strategic Risk): Deloitte's German Cyber practice delivers NIS-2, ISO 27001, GDPR, BAIT, and incident response advisory — a broad incumbent competing with ISS for the same enterprise and regulated-entity compliance budgets.
- KPMG Germany (Cyber Security): KPMG Germany's cyber security practice offers ISO 27001, NIS-2, GDPR, and BaFin-aligned GRC advisory — a broad incumbent with comparable German regulatory coverage to ISS.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat3 records
Key risks6 records
Key highlights7 records
Customer concentration
Iss - Information Security Services Gmbh & Co. Kg social profiles
Digital presenceIss - Information Security Services Gmbh & Co. Kg compliance and trust
Trust signalCompliance7 records
Iss - Information Security Services Gmbh & Co. Kg financial estimates
Financial estimateRevenue estimate
Valuation estimate
Iss - Information Security Services Gmbh & Co. Kg leadership team
Management profileNumber of profiles
Profiles1 record
Iss - Information Security Services Gmbh & Co. Kg funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Iss - Information Security Services Gmbh & Co. Kg M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Iss - Information Security Services Gmbh & Co. Kg
What does Iss - Information Security Services Gmbh & Co. Kg do?
ISS is an IT security consulting company that advises German businesses on information security, data protection, and cybersecurity. Its core offerings are ISMS Beratung (ISO 27001 and BSI IT-Grundschutz implementation), Datenschutz (GDPR compliance and external Data Protection Officer services), Business Resilience (crisis management and continuity), Offensive Security (penetration testing and vulnerability assessments), Security Incident Response, and Digitale Forensik (digital forensics). Services are delivered as custom project engagements and ongoing advisory roles.
Is Iss - Information Security Services Gmbh & Co. Kg a public or private company?
Iss - Information Security Services Gmbh & Co. Kg is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Iss - Information Security Services Gmbh & Co. Kg founded?
Iss - Information Security Services Gmbh & Co. Kg was founded in -1. It employs 11 to 50 people.
Where is Iss - Information Security Services Gmbh & Co. Kg based?
Iss - Information Security Services Gmbh & Co. Kg is headquartered in Magdeburg, Germany, in the Europe region.
How does Iss - Information Security Services Gmbh & Co. Kg make money?
One revenue line is on record: IT Security Consulting Services.
Who are Iss - Information Security Services Gmbh & Co. Kg's main competitors?
Direct peers on record are HiSolutions AG, usd AG, SEC Consult, Cure53 and SySS GmbH. Broad incumbents are TÜV Rheinland, TÜV SÜD, PwC Germany (Cyber & Privacy), Deloitte Germany (Cyber & Strategic Risk) and KPMG Germany (Cyber Security).
Does Iss - Information Security Services Gmbh & Co. Kg have an API?
No public API is recorded for Iss - Information Security Services Gmbh & Co. Kg.
What industry is Iss - Information Security Services Gmbh & Co. Kg in?
Iss - Information Security Services Gmbh & Co. Kg's product category is Cybersecurity Consulting Services. Its primary akta.pro industry code is BPAEAOAK, IT Asset Disposition (ITAD) & Secure Data Erasure. Its NAICS code is 54151 and its SIC code is 7370.