Who is attacking us right now?
Not who could attack us. Who is trying, now, on real systems.
Depuis 2024, NIS2 attribue une responsabilité personnelle aux dirigeants pour une posture cyber inadéquate. Les polices d'assurance exigent des preuves techniques pour payer. La question n'est plus si on s'en occupera — c'est comment et quand.
If the CISO has no concrete answers to these questions, the problem isn't the CISO: it's the information exposure of the Board. We support companies in building a technical-strategic dialogue in risk language.
Not who could attack us. Who is trying, now, on real systems.
In production hours, in revenue, in lost customers. Numbers, not feelings.
NIS2 attributes personal liability to directors. Do you know where you fall?
When was the last full restore tested? Not simulated — executed.
Policies signed before 2024 often exclude ransomware or require minimum posture not guaranteed today.
Phone number, person, language, time zone. Specific.
Sector median: 2-4% of IT budget for banking/finance, 1-2% for manufacturing. You?
Supply chain is the leading modern attack surface. NIS2 mandates supervising it.
Threat landscape, regulation, internal posture. If the answer is 'nothing', monitoring is inactive.
Crisis communication prepared before, not improvised during the incident.
Want a printable worksheet? We'll send it via email →
Qualitative comparison on a mid-market company (200-500 endpoints, 1-2 sites). An in-house SOC requires personnel, technology stack, intel, detection engineering, continuity, training. The Fortgale MDR model aggregates everything in a managed service, with a significantly lower relative investment.
| Component | In-house SOC | Fortgale MDR |
|---|---|---|
| Senior SOC personnel · 24/7 | Full-time dedicated resources | Included · No HR |
| EDR · SIEM · TIP stack | To buy and run | Included · multi-vendor |
| Threat intel feeds / subscriptions | Additional subscriptions | Included · proprietary CTI |
| Detection engineering | Internal team or consultancy | Included · peer-reviewed rules |
| Tabletops, training, certifications | Separate budget | Included (Silver+) |
| Continuity · holidays · turnover | 30% unforeseen | Mitigated · rotating team |
| Time-to-value | 12-18 months | 30 days |
| Relative investment | €€€€€ | €€ |
The €€€€€ : €€ ratio represents the average relative investment observed on the European mid-market. Want a comparison on your specific case? Talk to our analysts.
NIS2 transposition across EU member states introduces significant sanctions for the company and for directors at individual level. The difference with GDPR: here there's also suspension of duties.
| Subject / violation | Amount | Note |
|---|---|---|
| Essential entities | up to €10M or 2% of global turnover | The greater of the two values applies |
| Important entities | up to €7M or 1.4% of global turnover | The greater of the two values applies |
| Directors | personal liability | Suspension of duties in case of serious repeated violations |
| Missed CSIRT notification | additional sanctions | Up to €1M extra for omission/delay in notification |
Cyber policies in 2025-2026 have technical posture conditions for underwriting and claim payment. If the posture is inadequate, the risk is double: suffering the attack and not being indemnified.
Without MFA on privileged access, most underwriters won't sign. Baseline 2026 posture.
Off-line/immutable backups tested within the year. Without them, ransomware exclusion in new policies.
Endpoints with modern detection · 24/7 monitoring. Vendors not whitelisted: the value is the coverage, not the logo.
Top-tier policies discount 5-15% if a documented annual IR exercise with report exists.
Structured process for evaluating critical suppliers (NIS2 art. 23). Reduces the premium.
We work with your company's brokers to certify the posture and reduce the premium. Tell us about your policy.
Risk language, not technology. Risk register, posture, sanctions, coverage. Ready to present.
Aucune séquence de nurturing, aucune réponse automatique. Un de nos analystes vous rappelle sous un jour ouvré.
Le Report complet (executive summary · IoC opérationnels · runbook technique) est confidentiel. Envoyez-nous deux informations et un de nos analystes vous recontacte avec l'accès et un bref briefing technique.
Réponse en 30 minutes, confinement en 1 à 4 heures. Même si vous n'êtes pas client Fortgale.