Identity & Access
Digital Identity & Access Management
We design and optimise identity and access management architectures tailored to your organisation's needs, without lock-in to any single vendor. Our approach ensures identity management is secure, scalable, and aligned with European regulation.
- Platform-agnostic IAM/IDAM architecture design
- Identity governance and account lifecycle management
- Zero Trust and least-privilege access strategies
- Integration with existing directories, applications, and APIs
- Alignment with GDPR, eIDAS, and European access regulation
Cybersecurity
Cybersecurity
We protect your organisation with a practical, comprehensive approach to security. We assess real risks, design effective controls, and guide you towards compliance without unnecessary bureaucracy.
- Risk assessment and vulnerability analysis
- Threat modelling and secure architecture review
- GDPR, NIS2, and national security framework compliance
- Incident response planning
- Security awareness training for technical and management teams
Private AI
Machine Spirit — Private Self-Hosted AI
Machine Spirit is our private artificial intelligence solution, deployed entirely on your own infrastructure. Your data never leaves your servers: no third party accesses your information, and GDPR compliance is guaranteed by design — not bolted on afterwards.
- Language models running entirely on your own infrastructure
- Zero data transmission to external AI providers
- Full data sovereignty: your servers, your jurisdiction, your control
- Integration with existing workflows and information systems
- Built on privacy-by-default principles (GDPR Art. 25)
IT for SMBs
IT Management & Infrastructure for Small and Medium Businesses
We manage your company's technology infrastructure with the same rigour applied by large organisations, scaled to the size and budget of small and medium businesses. Technology that works for you, with a systematic preference for European infrastructure.
- Server and cloud service administration (with preference for European providers)
- Backup management and business continuity planning
- Network, VPN, and secure remote access management
- IT support and strategic technology consultancy
- IT security posture audit and improvement
Compliance
Regulatory Compliance and Certification Solutions
Our consultancy ensures your SME or startup meets the technical requirements of GDPR, ISO 27001, and other cybersecurity and data protection regulations. We focus on the practical implementation of technical controls, documentation drafting, and compliance evidence management.
- Assessment of current regulatory compliance status
- Identification of gaps between the current situation and applicable legal requirements and international standards
- Risk analysis of information security and personal data processing, identifying threats and vulnerabilities
- Design of mitigation plans and implementation of technical measures to reduce identified risks
- Definition and review of information security policies, incident management, and business continuity
- Audit to verify the level of compliance and prepare for potential certifications (ISO 27001, Spanish National Security Framework, PCI DSS)
- Assistance during official certification processes