SOC - Security Operations Centre
Continuous 24/7/365 monitoring, incident detection and threat hunting. 100% of data in a Polish data centre at the Science and Technology Park in Opole. No transfer outside the EU.
Security Operations Center (4crypto is the direct operator and owner of the SOC 24/7 infrastructure), IT audits, penetration testing, KSC, NIS2, KRI, GDPR, hardening and ISMS - for local government bodies, medical facilities, R&D sector and industry. No box-ticking bureaucracy. Just practical security.
We combine hands-on hardening, penetration testing and vulnerability analysis with pragmatic policies and ISMS frameworks that will genuinely be used within your organisation.
Continuous security monitoring of your infrastructure - 24 hours a day, 7 days a week, 365 days a year. Incident detection, event correlation, threat hunting and response carried out by a Polish team of analysts.
All data is processed exclusively within the territory of the Republic of Poland - at the PNT Data Centre located in the Science and Technology Park in Opole. No transfer outside the EU, no transfer outside Poland, no subcontractors from the USA or Asia. Full digital sovereignty, zero compliance concerns.
Comprehensive assessment of infrastructure, policies and compliance with KSC / NIS2 / KRI / GDPR. Report with risk levels and a concrete remediation plan - not a list of buzzwords.
Manual penetration tests based on OWASP, PTES and NIST SP 800-115 + automated vulnerability scanning (CVE/CVSS). We simulate real attack chains, not just run a scanner.
Hardening of Linux RHEL/Debian servers, Active Directory, firewalls: FortiGate, Cisco Systems, Palo Alto Networks, Stormshield. SSH, IPsec, TLS 1.3, MFA - defence-in-depth compliant with NIS2.
Full compliance pathway: incident handling, reporting to CSIRT, documentation meeting statutory requirements. Preparation for the stringent demands of the AI Act and DORA.
SPF, DKIM, DMARC, BIMI, TLS, MFA, anti-spam filters.
Information Security Management System compliant with ISO/IEC 27001 and Information Security Policy per KRI § 19. No operational paralysis, no 300-page documents destined for a drawer - real procedures embedded in the daily functioning of your office or organisation.
Practical training for management, staff and IT teams. Phishing, ransomware, social engineering, incident management. Fulfilment of KSC, NIS2, KRI § 19, GDPR Art. 24 obligations - with attendance documentation.
Estimate your monthly monitoring cost. Market-rate pricing for local authorities and SMEs. All data processed exclusively in the Polish data centre at the Science and Technology Park in Opole. Indicative calculator - final offer following a brief infrastructure audit.
Adjust the sliders and select additional options - the price updates in real time.
This calculator is for informational purposes only and does not constitute an offer within the meaning of contract law. The figures are indicative - the final price depends on the results of a complimentary infrastructure audit. 4crypto Sp. z o.o. reserves the right to amend pricing without notice.
* 9,900 PLN - standard price for a KSC/KRI audit carried out outside the SOC subscription.
No week-long onboarding or 40-page proposals. Just specifics, a schedule, and a report.
We gather information about the infrastructure, map processes, verify compliance and conduct technical tests. Everything in accordance with industry standards.
You receive a report with risk categorisation, vulnerability descriptions and a concrete, prioritised remediation plan - comprehensible for the board and technical for the IT team.
We help implement the recommendations: Linux/Windows hardening, policies, training, retest after remediation. We provide ongoing support and security maturity monitoring.
The hard part starts after the rollout: somebody has to watch the alerts every night. You hand that to a team that does it every day - we take over detection, alert triage and first response, 24/7/365, in a Polish data centre. What is left for you is the report and the quiet.
From Polish regulations to international standards and EU directives.
Each service comes with a defined scope, schedule and final report. Choose exactly what you need.
Continuous 24/7/365 monitoring, incident detection and threat hunting. 100% of data in a Polish data centre at the Science and Technology Park in Opole. No transfer outside the EU.
Comprehensive assessment of infrastructure, policies and compliance with KSC, NIS2, KRI, GDPR, ISO 27001. Report with risk categorisation and a remediation plan.
Identification of known vulnerabilities in systems, applications and networks. CVE/CVSS compliant.
Manual penetration tests in accordance with OWASP, PTES, NIST SP 800-115. Demonstration of the real impact of vulnerabilities.
Hardening of Linux/Windows server configurations, AD, firewalls, L2/L3 switches, NAS, IoT. Defence-in-depth per ISO 27001, KRI, KSC, NIS2.
SPF, DKIM, DMARC, BIMI, TLS, MFA, anti-spam. Protection of Exchange/Postfix/M365 against phishing and spoofing.
Verification of local authority IT systems against the KRI Regulation.
Assessment of compliance with KSC Act and NIS2 Directive obligations. Policies, incidents, reporting to CSIRT.
Full compliance analysis with Regulation 2016/679. Art. 5, 24, 30, 32, 33-34. Privacy Impact Assessment.
ISP compliant with KRI § 19, GDPR Art. 24/32 and ISO 27001. Practical documentation, not bureaucracy.
ISMS tailored to the realities of local authorities and businesses whilst remaining compliant with ISO/IEC 27001. No operational paralysis, with real impact.
Practical applied cybersecurity training for management, staff and IT teams. Certificates confirming fulfilment of KSC / NIS2 / KRI / GDPR obligations.
4crypto is the personal brand of Dr Adam Czubak - a Doctor of Engineering with over 25 years of experience in IT Security - supported by a team of experts: SOC analysts, penetration testers, auditors, network engineers, Linux/Windows systems engineers, hardening specialists, data protection officers and "legal hacker" lawyers. The name itself is short for 4cryptography and stems from his passion for cryptography. Adam oversees strategy and project supervision; the team handles daily 24/7 operations.
We work for local government bodies (JST), medical facilities, R&D initiatives, knowledge-intensive environments and manufacturing plants. We combine a strategic approach with hands-on technical expertise - from firewall configuration, through cryptography and hardening, to full compliance documentation for KSC, NIS2, KRI, GDPR, DORA, eIDAS and the AI Act.
More on competences, academic record and projects: expert profile of Adam Czubak, PhD.

Personal certifications held by 4crypto team members - security, networks, systems and project management. Earned in the field over more than 25 years.
CISSP
CEH - Certified Ethical Hacker
8570.01-M
4011 Recognition
4013 Recognition
27001
22301
LPIC-1
MCT - Certified Trainer
MCITP Server Administrator
MCTS Active Directory 2008
MCTS Network Infrastructure 2008
MTA Database Administration
MTA Software Development (C#)
PRINCE2 Foundation
AgilePM Foundation
A free 30-60 minute consultation. No obligations. We discuss needs, scale and a high-level timeline.