Skip to main content
FORTISEU
Back to Partner Directory

CyberTrust GmbH

Elite PartnerVerified

EU-sovereign cybersecurity services for regulated financial institutions. Specialized in DORA, NIS2, and ISO 27001 programmes.

πŸ‡©πŸ‡ͺ GermanyWebsite5.0(2 reviews)2 engagements
Request Services

Sign up to request services

About

CyberTrust GmbH is a Frankfurt-based cybersecurity consultancy founded in 2018 by former BaFin examiners and Deutsche Bank red-teamers. We deliver end-to-end compliance services β€” from gap assessments to CREST-certified penetration tests and DORA Threat-Led Penetration Testing (TLPT). Our 24-person team operates exclusively from EU facilities with EU-resident data, making us a natural fit for financial services and critical infrastructure customers subject to DORA, NIS2, and BaFin BAIT/KAIT requirements.

Services Offered

NIS2 Gap Assessment & Remediation

Gap Remediation
€15,000
Project-Based

Comprehensive NIS2 readiness assessment with detailed remediation roadmap and implementation support.

NIS2ISO 27001
Hybrid~30 daysAvailable Now

ISO 27001 Certification Support

Audit Preparation
€35,000
Project-Based

Full support for ISO 27001 certification including ISMS implementation, documentation, and audit preparation.

ISO 27001ISO 27002
Hybrid~120 daysAvailable Now

DORA Implementation Program

Managed Compliance
€45,000
Project-Based

End-to-end DORA compliance implementation for financial entities including ICT risk management and third-party oversight.

DORAISO 27001ISO 22301
Hybrid~90 daysAvailable Now

ISO 27001:2022 Certification Support

Audit Preparation
€55,000
Project-Based

End-to-end ISO 27001:2022 certification path β€” ISMS build-out, internal audit, auditor liaison.

ISO 27001ISO 27002
Hybrid~120 daysAvailable Now

NIS2 Gap Assessment & Remediation Programme

Gap Remediation
€85,000
Project-Based

Structured NIS2 gap assessment against 10 security measures from Art. 21, with remediation roadmap.

NIS2ISO 27001
Hybrid~60 daysAvailable Now

DORA ICT Risk Management Framework

Risk Assessment
€75,000
Project-Based

Complete ICT Risk Management Framework per DORA Art. 6-16 β€” policies, processes, and governance.

DORABaFin BAITISO 22301
Hybrid~75 daysAvailable Now

Incident Response Retainer

Incident Response
€48,000/mo
Monthly Retainer

24/7 incident response retainer with 1-hour response SLA, aligned to NIS2 and DORA reporting windows.

NIS2DORAISO 27035
Remote~365 daysAvailable Now

Threat-Led Penetration Testing (DORA TLPT)

Penetration Testing
€180,000
Project-Based

CREST-certified TLPT per DORA Art. 26-27 RTS, red-team exercise against critical functions.

DORATIBER-EUISO 27001
Hybrid~90 daysAvailable Now

Customer Reviews

DORA expertise that saved our BaFin audit

CyberTrust delivered a risk register and ICRMF policy pack that was audit-ready on day one. Their team understood BaFin expectations better than our own second line. Strongly recommended for any German-regulated financial entity.

Chief Information Security Officer β€’ Apr 2026

Findings quality beyond expectations

The offensive security team found two critical business logic flaws that our SAST/DAST pipeline had missed for a year. Fast retest cycle, clean reporting, and the attack narratives were understandable for our developers. Will rebook annually.

Chief Information Security Officer β€’ Apr 2026

Partner Details

Headquarters
πŸ‡©πŸ‡ͺ Germany
Operating In
9 EU countries
Partner Tier
Elite
EU Cloud
Certified
Verified Since
Feb 2026

Certifications

CREST CPSACREST CRTISO 27001:2022TISAX Level 3BSI C5

FortisEU Verified

  • EU-based organization
  • Credentials verified
  • Insurance coverage confirmed
  • Platform-integrated