northsignalworks
Home Services Pricing About Contacts Request an audit
Cybersecurity, based in Germany

Find the real signal
in the noise.

northsignalworks runs penetration tests, threat detection, and GDPR / NIS2 compliance work for businesses that need to know exactly where they're exposed, not just a 40-page scan output nobody reads.

signal_monitor.live Monitoring
Endpoints scanned: 412
Anomalies flagged: 3 Status: Nominal
// Trusted by security-conscious teams at —
Vogelsang Maschinenbau Steige Versicherung Fils Energie Alb Datentechnik Filstal Klinikum Rheinlandwerke
What we do

Six ways we cut through the noise

Every engagement is scoped to your actual infrastructure, reported in plain language, and ranked by what's genuinely exploitable.

Attack Surface Mapping

A full inventory of everything an attacker can see from the outside, domains, exposed ports, forgotten subdomains, before they find it first.

Learn more

Penetration Testing

Hands-on testing by a human tester who thinks like an attacker, not an automated scanner that just checks boxes and moves on.

Learn more

Managed Threat Detection

Continuous monitoring and alerting from a real analyst team, so an unusual signal at 3am gets caught, not buried in a log file.

Learn more

Cloud & Infrastructure Hardening

Locking down AWS, Azure, or GCP configurations against the misconfigurations that actually cause breaches, not theoretical ones.

Learn more

Compliance Readiness

GDPR, ISO 27001, and NIS2 gap assessments that translate regulatory text into a checklist your team can actually complete.

Learn more

Incident Response & Forensics

If something's already gone wrong, we contain it, trace what actually happened, and help you report it correctly and on time.

Learn more
Pricing & packages

Three scoped packages, flat rate

Every package is fixed-price and defined before we start. Need something smaller or one-off? Check the à la carte list below.

Signal Check

For teams who need a clear, current picture of their exposure.

€150 / Package
  • External vulnerability scan (up to 25 assets)
  • Automated findings report with severity ratings
  • 1 remediation consultation call (30 min)
  • Delivered in 3 business days
  • Email support during engagement
  • One included re-scan after fixes
Choose Signal Check

Signal Lock

Full offensive engagement for businesses handling sensitive data.

€400 / Package
  • Full-scope penetration test (network + web app)
  • Social engineering simulation (phishing test)
  • Manual exploitation of critical vulnerabilities
  • GDPR / ISO 27001 / NIS2 compliance mapping
  • Priority delivery in 5 business days
  • 60-minute remediation walkthrough call
Choose Signal Lock
À la carte

Just need one thing checked? Order it individually.

Smaller, single-scope security deliverables, priced and scoped on their own.

01 Password policy & MFA configuration review €10 Order now
02 DNS & email security check (SPF / DKIM / DMARC) €20 Order now
03 Phishing email sample analysis (1 email) €30 Order now
04 Firewall rule review (single device) €40 Order now
05 Domain dark-web exposure check €50 Order now
06 Employee phishing simulation (up to 25 staff) €75 Order now
07 External attack surface scan (single IP range) €100 Order now
08 Cloud configuration review (1 environment) €150 Order now
09 Web application vulnerability scan (1 app) €200 Order now
10 Incident response readiness assessment €300 Order now
11 GDPR / NIS2 compliance gap assessment €400 Order now
About us

Started near the Fils valley, still reading the raw logs ourselves

northsignalworks was founded on a simple frustration: most security reports are noise. Hundreds of low-priority findings, no clear ranking, and a client left guessing what to fix first. We built the firm we wished existed, one that separates the signal from the noise before it ever reaches your inbox.

We're based in Geislingen an der Steige, working with manufacturers, healthcare providers, and mid-sized businesses across Germany who hold data that genuinely matters, and who now have to answer to GDPR and, increasingly, NIS2.

Every engagement is hands-on. A human tester probes your systems the way a real attacker would, not just an automated scanner producing a checklist nobody reads end to end.

Our approach is simple: rank findings by real risk, report in plain German or English, and stay involved until the fix is verified, not just filed away.

380+
Vulnerabilities resolved
60
Security audits completed
24/7
Signal monitoring
4.9/5
Average client rating
Client reviews

What clients say after the report lands

Our last vendor sent us 200 findings with no priority order. northsignalworks gave us 12 that actually mattered, and helped us close all of them within a month.

AR
Anja Reithmeier
IT Director, Vogelsang Maschinenbau
Verified

We needed NIS2 readiness documentation fast ahead of a regulator conversation. Roman's team turned the gap assessment around in under two weeks.

BK
Bastian Kellner
COO, Fils Energie
Verified

The phishing simulation was a genuine wake-up call. Click rates dropped from 27% to 5% after the follow-up training. Measurable, not just a nice report.

CS
Carolin Straub
CISO, Filstal Klinikum
Verified

As a smaller IT team we assumed we weren't a target. The Signal Sweep proved otherwise, two critical findings on our client portal, fixed before anything happened.

MD
Markus Deininger
Head of IT, Alb Datentechnik
Verified
Get in touch

Tell us what needs testing

Reach out directly, or send a written brief and we'll reply within one business day.

Contact

Roman Krüger

Address

Rheinlandstraße 81
73312 Geislingen an der Steige, Germany

Prefer a written brief?

Send over your systems, current concerns, and timeline. We'll reply with a scoped quote, usually the same business day.

Email the brief