Security

Processes

Cyber security

Introduction of an information security management process based on the value of the information assets of the company. The service focuses on analysing the information and data bases of the customer and the relation of the information to internal processes.
▾ Read more ▾

Risk, Process and Information Analysis

We provide consulting services in areas where we have extensive expertise and many years of experience. Our analytical services include, for example, risk and process analysis, as well as information security and ICT analysis.
▾ Read more ▾

CYBERSECURITY AUDIT

A cybersecurity audit performed by a certified auditor in compliance with the applicable cybersecurity legislation of the Czech Republic and the Slovak Republic.
▾ Read more ▾

CSIRT

AXENTA CSIRT provides services related to security incident response, mitigation of incident consequences, and the subsequent restoration of information systems and related information and communication technologies. An important role of AXENTA CSIRT is also cooperation and information sharing within both the domestic and international security community.
▾ Read more ▾

Training

A tailored training program focused on the correct and secure use of information systems, effective use of collaboration tools (email, calendar, meetings, tasks, directory structure and file systems), and essential cybersecurity principles within the customer’s IT environment.
▾ Read more ▾

Monitoring

SOC (Security Operations Center)

A comprehensive SOC solution ensures the detection and launching of security incident processes in the IT infrastructure.
▾ Read more ▾

LOG MANAGEMENT, SIEM

Implementation of operational and security oversight, including log management. In operational oversight and log management, our activities are laid out in several parts and can be provided not only as a solution, but as a service as well (SaaS)
▾ Read more ▾

Privileged access management (PIM/PAM)

Authorisation, authentication, and audit for administrator protocols. A transparent solution for the monitoring and access control of all activities of administrators, application administrators, users, outsourcing partners, external clients, etc.
▾ Read more ▾

Network behaviour anomaly (NBA)

Unique technology of network behaviour analysis which allows the identification of threats which overcame the security on the perimeter or were introduced into the network in a different way.
▾ Read more ▾

Endpoint Detection and Response (EDR)

A service focused on continuous endpoint monitoring and protection. It enables early detection of suspicious behavior and cyber threats, analysis of security events, and rapid response – including the isolation of compromised endpoints to contain attacks and prevent further spread.
▾ Read more ▾

Vulnerability Management (VM)

Focused on the continuous identification, assessment, and management of vulnerabilities across the IT environment, the service helps organizations prioritize remediation based on severity and actual security risk, reducing opportunities for attackers to exploit vulnerabilities over time.
▾ Read more ▾

Emergency cyber incident assistance

Signs of a cyberattack? Contact us now.

We will contain the threat, reduce operational impact, and support a controlled recovery of your systems.

Step-by-step guide during a cyberattack

  1. Isolate affected systems from the network (do not shut them down to preserve forensic evidence).
  2. Change passwords for critical accounts and enable Multi-factor authentication (MFA).
  3. Secure and retain logs, data and relevant evidence (SIEM, firewall, EDR, email communications).
  4. Contact our team immediately.

Request immediate assistance

Fill out the form, our team will contact you soon.

By sending I agree with Principles of personal data processing

Send

X

About our DFIR team

Our specialists are ready to respond immediately to cyber incidents, perform in-depth forensic analysis, and design a structured recovery plan to restore operations securely and efficiently.

We deliver full-spectrum support — from early detection and containment to complete remediation, strategic advisory, and long-term resilience building to strengthen your security enviroment.

Under cyberattack?

If your organization is experiencing a cyberattack, our DFIR (Digital Forensics & Incident Response) team stands ready to act without delay and deliver specialized incident response support.

We handle diverse threat scenarios — including ransomware, phishing campaigns, DDoS attacks, data breaches, and advanced intrusion attempts — with structured forensic analysis and controlled containment.

Our priority is to determine the root cause, limit operational and financial impact, and restore systems and data in a secure, validated manner to ensure business continuity.

Beyond technical response, we also provide strategic guidance on security controls and future prevention measures to strengthen your resilience and reduce the likelihood of recurrence.

What is our on-site response time?

Our team is ready to respond 24/7 and can be on-site within a few hours of receiving the incident report.

Response time depends on the severity of the attack and the location; however, our established processes enable us to act immediately in the case of critical incidents.

For urgent deployments, intervention can begin within minutes of notification.

How we support you on-site?

Rapid Analysis and Threat Identification: We leverage advanced tools to detect and analyze cyber threats in real time.

Damage Containment: Once the attack is identified, we immediately isolate affected systems and implement temporary controls to prevent further spread.

System and Data Recovery: Once the threat is contained, we coordinate the secure restoration of systems, infrastructure, and data to ensure controlled and validated return to operations.

Digital Forensic Examination: We conduct a structured forensic investigation, preserve evidentiary integrity, and provide a comprehensive report to support legal, regulatory, and internal decision-making needs.

Resilience Enhancement: Post-incident, we identify control gaps, recommend targeted security improvements, and support awareness initiatives to strengthen long-term organizational resilience.

 

References

Finacial

ERSTE Group IT

ERSTE Group IT

  • Implementation of Log Management Syslog-NG PE system
  • Upgrade to a full Log Management – SSB system
  • Service and development of an SIEM security oversight system
ERSTE Group IT
Všeobecná úverová banka
DanubePay
Českomoravská stavební spořitelna
Moneta Money bank
Komerční banka
Allianz pojišťovna
PPF Banka
Česká průmyslová zdravotní pojišťovna
Disig

Utility

Orange

Orange

  • Audit system for privileged users – Shell Control Box
  • Implementation of HP ArcSight Logger
  • Installation of SIEM security oversight system (ArcSight)
Orange
O2 Czech Republic
Čepro
ČEZ ICT Services
Čeps
Řízení letového provozu
T-mobile Czech republic
T-systems Slovakia
Teplárny Brno

Public

Ministerstvo Obrany ČR

Ministerstvo Obrany ČR

  • Service and development of an SIEM security oversight system
Ministerstvo Obrany ČR
Ministerstvo pro místní rozvoj
Jihomoravský kraj
Armáda SR
Ministerstvo dopravy
Gooddata
Novartis
Tescalabs LTD