Trust by verify

Your AI
seat belt. Signed and sealed.

We test your AI systems with the methods of real attackers and agents, monitor them continuously and certify them with a state-recognized certificate – and we assume liability. In effect, you outsource the risk of cyber attacks to us.

STATE-RECOGNIZED CYBER-SEC-CERTIFICATE

A certificate with public faith

Cyber security certificates issued are public deeds – admissible in court and recognized by authorities like officially issued documents.

ZTG §4 (3) · ZPO §292 (Austrian law)
since 1998independent IT testing and monitoring authority
10,000+reviews of online systems across Central and Eastern Europe
Liability CoverageProfessional obligation
per damage event

Services

Security, clearly structured.

From an attacker's first glance to court-admissible evidence preservation: our chartered IT engineers and specialists cover the entire life cycle of cyber security testing.

E-Espionage

A business card is all it takes: like a real attacker, we gather every piece of publicly available information about your company and show you how to obscure it and reduce your attack surface.

Enquire →

Penetration Testing

Simulated cyber attacks on your systems – black-box, with no prior knowledge. Every vulnerability we discover is analyzed, verified and documented in a test report so you can set the right priorities.

Enquire →

IT Security Audit

The complete picture: we assess and evaluate the security level of your systems, consolidating penetration tests, code reviews and red-team results into a chartered IT engineer's expert report.

Enquire →

Social Hacking & Red Team

Our red team exploits the human vulnerability – with targeted attacks following a script agreed between management and the works council. You receive a vulnerability report including a catalogue of countermeasures.

Enquire →

Code Analysis / Review

Static white-box analysis of your entire source code with market-leading tools. Findings and vulnerabilities are documented – including written remediation recommendations as an IT expert report.

Enquire →

Forensics

After an incident, every trace counts: our forensic experts analyze attacks on AI systems and preserve evidence in a court-admissible manner – as the basis for insurers, authorities and legal proceedings.

Enquire →

Emergency Response Team

Immediate help in the event of a cyber attack: our independent emergency and forensics team plans, responds and preserves evidence following our 6-phase model – based on a clear service level agreement (SLA).

Go to emergency package →

Certification

After testing and hardening, we certify your systems by virtue of our state-granted authority. The certificate serves as proof of compliance – including as a technical annex to your annual financial audit.

Learn more →

The CYBERBELT© Security Formula

Gather. Test. Monitor.

A purpose-built testing procedure for business-critical AI systems – state of the art, based on recognized standards and using the very same methods real attackers or bots employ.

STAGE I

Gather.

Starting from a business card, an e-mail address or a company name, we collect all publicly accessible data that hands attackers sensitive information – and show you how to obscure it.

E-espionage & footprinting, just like a real attack

STAGE II

Test.

From the outside: find open internet connections, analyze vulnerabilities, attempt intrusion. From the inside: test sensitive apps and server systems on your intranet for exploitable weaknesses.

Vulnerabilities are verified using current hacking methods

STAGE III

Monitor.

Regular reports with remediation guidance – weekly or monthly, depending on the risk class. The result: a test report including a state-recognized certificate.

Continuously for 12, 24 or 36 months

The CYBERBELT© Principle

Testing. Certificate. Liability.
A combination you will only find here.

01 / TECHNOLOGY

Technical testing

Engineers, our emergency response team and forensic experts test your infrastructures, web and mobile systems – using e-espionage, state-of-the-art vulnerability scanning covering more than 50,000 known vulnerabilities, and manually driven attacks.

02 / CERTIFICATE

State certification

As a state-authorized chartered IT engineering company we issue public deeds (Austrian Chartered Engineers Act, ZTG §4 (3)). Your certificate is admissible in court and carries evidentiary weight under §292 of the Austrian Code of Civil Procedure – essential in liability litigation.

03 / LIABILITY

Assumption of liability

Should a data breach nevertheless occur on systems we have tested, caused by a testing error on our part, we are liable per damage event as standard – much like an insurance policy.

“The combined package of technical testing, cyber security certification and assumption of liability provides legal relief for those responsible for IT – in effect, they outsource the risk of cyber attacks to us. We call this unique combination CyberBELT© – your AI seat belt.”
Dr. tech. Wolfgang Prentner · CEO · chartered IT engineer · state-sworn

Your direct benefits

Why the seat belt pays off.

  • Enhanced protection of sensitive company data against unauthorized access
  • Assessment of all vulnerabilities by high, medium and low risk
  • Concrete guidance for building your defence strategy
  • Reduced liability risk in the event of damage caused by attackers
  • Objectivity and professional expertise of an independent testing authority
  • Technical test report as an annex to your annual financial audit
  • State-recognized security certificate with public faith
  • Seamless integration of scan results into your ERP system (XML, CSV, PDF)

Your path to certification

Eight clear steps.

From the first conversation to re-certification: a transparent process with no surprises.

Preliminary consultation

In person, by phone or online: we clarify the process and framework – with an on-site project meeting on request.

Testing with findings & expert report

Technical on-site and online testing, analysis and documentation of the results with a catalogue of countermeasures.

Certification

Monitoring of your online systems, on-site certification audit and optional follow-up audit of corrective measures.

Reporting

Regular reports describing vulnerabilities and recommending fixes – weekly, fortnightly or monthly.

Subscription

Proof of successful IT certification with a term of 1 to 3 years.

First surveillance audit

On-site audit of practical implementation – while online monitoring continues without interruption.

Second surveillance audit

Repeated on-site audit of practical implementation with ongoing online monitoring.

Re-certification

Steps 2 to 7 are repeated – and your certificate is extended for another three years.

Covered norms & standards

ÖNORM A 7700BSIOWASP Top 10OWASP ASVSISO 27001ISAE 3402PCI DSSNISTCIS BenchmarksHIPAASOXMITRE CWE

About us

Cyberbelt from ZTP.digital – the testing authority for digital security.

Since 1998 we have been the leading independent IT testing and monitoring authority in the field of information and communication technology. Our team of hand-picked IT specialists brings many years of experience from the most diverse areas of information technology – experience you can put to work for your success.

The authority granted to us by the state enables state-recognized security certifications: these public deeds are regarded by authorities and courts as equivalent to officially issued documents.

As a trusted authority – in deliberate contrast to commercial providers – we are not permitted to perform operational activities such as software development, hardware and software sales or data centre operation. Our consulting and testing are therefore guaranteed to be independent.

We create security, trust and transparency – in short: better health for your IT.

Emergency Response Team · Incident Response

Cyber attack? We are there immediately.

Our independent emergency and forensics team specializes in response and court-admissible evidence preservation for IT incidents – from cyber attacks and system outages to data breaches.

  1. 01Identification – rapid detection of attack traces
  2. 02Analysis & evidence preservation – forensic and court-admissible
  3. 03Containment – supporting the isolation of the attackers and their malware
  4. 04Eradication – supporting the coordinated removal from your network
  5. 05Recovery – supporting the rapid restart of your IT systems
  6. 06Lessons learned – findings, countermeasure catalogue, management summary
Emergency package · On-site inspection

€ 4,800 fixed price

Initial findings within 24 hours of order acceptance – including an on-site inspection by our emergency response team.

Request emergency package

Or call us directly:
+43 1 532 46 86-0

Your enquiry

Fasten your seat belt.

Request more information now, with no obligation – we will get back to you promptly.

Professional obligation Liability Coverage per damage event

or write directly to office@cyberbelt.ai
Call us Get in touch