Cybersecurity

In the field of cybersecurity, we provide comprehensive consulting on tailored solutions that make your company's digital infrastructure future-proof and resilient. We support you with your information security strategy, the implementation of management systems (ISMS) and security technologies, as well as all data protection compliance matters. These actions are essential to minimize risks, secure your competitiveness, and strengthen the trust of customers and investors.
Falk Hofmann
Partner
ISO/IEC27001/KRITIS -Auditor

​our Approach

We take a holistic view of your company and its security requirements. Our experienced cybersecurity experts work closely with you to understand your individual needs and develop customized solutions. We support companies in protecting their IT infrastructure and minimizing cybersecurity risks. We are your reliable partner on the path to secure and efficient IT governance – and ultimately on the path to a secure and resilient company of the future.

What Sets Us apart?

Our in-depth industry knowledge – including the respective regulatory requirements. We understand cybersecurity services in their complete bandwidth, integrated into professional fields, such as data protection and compliance. For this, we use national and international resources of our Rödl experts. We help you with your concerns quickly and competently.

Our services

Skip Section

Information SecurityT – ISMS

How is the cybersecurity in your company ordered? Do you have an effective Managementsystem for information security implemented? Around the topic of ISMS (Information Security Management System) we offer you custom-fit solutions for the protection of your digital infrastructure .. In doing so, we refer to relevant standards and norms, such as ISO/IEC27001 and the IT baseline protection of the BSI (Federal Office for Information Security). and the IT-Grundschutz of the BSI (Federal Office for Information Security).

Our focus areas

  • Development of an information strategy
  • Implementation of an ISMS
  • KRITIS consulting, NIS-2-Ready-Check and consulting
  • Provision of an external ISB
  • ISMS Services as a Service (from the Cloud Germany)​

Learn More​

Falk Hofmann
Partner
ISO/IEC27001/KRITIS -Auditor
Jonas Dikau
Manager
B.Sc. Information Management

Business Continuity Management

We advise you on the introduction and implementation of emergency management strategies, including the implementation of business impact analyses (BIA), the development of emergency prevention and emergency management strategies, as well as the development of emergency plans for relevant hazards, such as cyber attacks. We help you build a Business Continuity Management (BCM) that gets you back on track as quickly as possible after a crisis.​

Our focus areas

  • Determination of current degree of implementation BCM
  • Development and structure of your BCM governance and strategy
  • Implementation and optimization of the BCM
  • Integrated crisis management
  • Awareness and training in the areas of (IT) emergency, crisis and BCM

Learn More

Falk Hofmann
Partner
ISO/IEC27001/KRITIS -Auditor
Jonas Dikau
Manager
B.Sc. Information Management

Data Protection and GDPR Consulting

In the context of the General Data Protection Regulation (GDPR), we support you and your customers in the implementation of data protection management systems. We are happy to provide the external data protection officer (DPO) if required. We ensure the security of your company data and personal data and work with you to develop a structure for integrated data protection and IT security.​

Our focus areas

  • Determination and improvement of degree of implementation DSMS
  • Optimization of your DS organization or your DSMS
  • Provision of an external DPO
  • Execution of data protection impact assessments (DPIA)
  • Data protection training

Learn More

Falk Hofmann
Partner
ISO/IEC27001/KRITIS -Auditor
Werner Merl
Associate Partner
Authorised Signatory, Industrial Engineer

NIS-2-Consulting

The NIS-2 topic is particularly in focus due to the current legislative process (NIS2UmsuCG). The expansion of the already known KRITIS legislation to large parts of the European economy affects approximately 30,000 companies in Germany alone. Will you be affected by the upcoming “NIS-2 Implementation and Cybersecurity Strengthening Act” (NIS2UmsuCG)? What actions must you take? We are happy to advise you in this context.

Our Focus

  • NIS-2 Impact Analysis
  • NIS-2-Readiness-Check / GAP analysis
  • Risk Analysis and Action Definition
  • Support and advice on the implementation of NIS-2 requirements

Learn More

KRITIS Auditing and Consulting

We support you in the practical planning and implementation of KRITIS requirements. Together, we develop your individual security concept that fits your organization and infrastructure. From the implementation of the risk analysis, to the determination of risk treatment, the development of the necessary documentation up to the audit preparation – we advise you comprehensively on the topic of KRITIS.

As an auditing body, we are your partner if you, as a KRITIS operator, require a verification audit in accordance with § 8a paragraph 3 BSIG. Our auditors evaluate your information security management system and its maturity level as proof to the BSI.

Our Focus Areas:

  • Full-scope advice on fulfilling the requirements of § 8a BSIG
  • Implementation of an Information Security Management System (ISMS)
  • Efficient mapping of your management system in an ISMS tool
  • Conductor of internal audits
  • Execution of verification audit according to § 8a paragraph 3 BSIG as an auditing body

Learn More

Reporting Trends & Solutions

Your update from auditing: Relevant insights on Audit, Reporting, ESG, GRC, Deals, Digital Transformation, Cybersecurity & Co. – compact, solution-oriented, and from a single source.

To the newsletter
12.05.2026

12:00 – 12:45 CET

Online

I-Lab, Mind the Trap – Don’t Get Fooled by Italian Labour Law | First Session

The webinar series “I-Lab, Mind the Trap – Don’t Get Fooled by Italian Labour Law” is addressed to the HR functions of international business organizations operating in Italy that are required to manage employment relationships...
Details & Signup
13.05.2026

09:00 a.m. - 11:00 a.m. (CST)

Beijing/China
Online

German Companies in the Midst of Geopolitical Tensions: Iran War, Triangle Relations and China’s Newest Anti-Sanctions Toolkits

With geopolitical tensions on the rise, German companies' China business becomes ever more complex. Especially the new regulations on security in supply chains and the recent ramp-up of the trade defense toolbox from China are...
Details & Signup
19.05.2026

12:00 – 12:45 CET

Online

I-Lab, Mind the Trap – Don’t Get Fooled by Italian Labour Law | Second Session

The webinar series “I-Lab, Mind the Trap – Don’t Get Fooled by Italian Labour Law” is addressed to the HR functions of international business organizations operating in Italy that are required to manage employment relationships...
Details & Signup
21.05.2026

08:00 a.m. - 10:30 a.m. (CET)

Shanghai/China

ABC Breakfast: China 2026 Trends in Legal Tax and HR

Join us for the ABC Breakfast, a new format within the Austrian Business Circle event series. Over breakfast, experts from RÖDL and DirectHR will explore the localization of China operations from legal, tax, and talent...
Details & Signup
22.05.2026

02:00 p.m. - 04:00 p.m. (CET)

Taicang/China

Training: Legal and Tax Essentials in Mergers Acquisitions and Restructuring (in Chinese)

This seminar provides a practical overview of the legal and tax aspects of merger, acquisition and restructuring. Covering legal frameworks, due diligence, transaction structuring, regulatory approvals, tax planning, risk control and post-merger integration, it combines...
Details & Signup
26.05.2026

12:00 – 12:45 CET

Online

I-Lab, Mind the Trap – Don’t Get Fooled by Italian Labour Law | Third Session

The webinar series “I-Lab, Mind the Trap – Don’t Get Fooled by Italian Labour Law” is addressed to the HR functions of international business organizations operating in Italy that are required to manage employment relationships...
Details & Signup
03.06.2026

08:30 a.m. - 10:30 a.m. (CET)

Qingdao

Breakfast Seminar: Are your supply chains still compliant – or already a risk?

China has changed the rules - and for many international companies, compliance is no longer clear-cut. With the introduction of Decrees No. 834 & 835 and the first-ever MOFCOM Prohibition Order (May 2, 2026), the...
Details & Signup
03.06.2026

08:45 AM - 11:00 AM VNT

Hanoi

Business Breakfast @ RÖDL Hanoi

Join us for an exclusive seminar where our in-house experts will break down the latest Transfer Pricing, tax and legal changes impacting enterprises in Vietnam. Stay informed, stay compliant, and gain a strategic edge as...
Details & Signup
04.06.2026

02:00 p.m. - 06:00 p.m. (CET)

Guangzhou/China

German Market Entry Day (in Chinese)

As Chinese enterprises expand into Europe, Germany, an economic powerhouse and innovation hub, has become a strategic destination for investment and growth. Leveraging strong industrial complementarity, Sino-German cooperation is entering a new phase. Against this...
Details & Signup
04.06.2026

03.00 PM - 09.00 PM ID Time

jakarta

RÖDL Forum Indonesia

Details & Signup
09.06.2026

12:00 – 12:45 CET

Online

I-Lab, Mind the Trap – Don’t Get Fooled by Italian Labour Law | Fourth Session

The webinar series “I-Lab, Mind the Trap – Don’t Get Fooled by Italian Labour Law” is addressed to the HR functions of international business organizations operating in Italy that are required to manage employment relationships...
Details & Signup
16.06.2026

2:00 p.m. - 5:00 p.m. (CET)

Shenzhen/China

German Chamber Finance Day (in Chinese)

Amid frequent policy updates and tightening regulations, the German Chamber of Commerce in China · South & Southwest will organize a Finance Day on June 16 in Shenzhen, focusing on the core pain points and...
Details & Signup