CRITICAL INFRA
Loading critical CVEs…
ALL EXPLOITED
Loading…
SOC active monitoring · 24/7

Enterprise Infrastructure.
Uncompromising security.

Debian Server specialist. Only infrastructure. Linux, VMware vCenter, Hyper-V, FortiGate, Mikrotik, backup & monitoring 24/7. We don't waste time on PCs or printers. We build, secure and maintain the infrastructure that keeps your business running. 50+ servers · 1000+ VMs · 20+ firewalls in production.

Infrastructure & security for
Zipper Services Pehart Grup Elis Pavaje Montana Popa Valdo Invest Jidvei Nicolemn Art Prima Sementi Rekord CONTACO Audit Consult NecSys ITPREPARED AsistentaCont Instalatorul Agrosem Seed IAMU

Complete stack for server-side infrastructure

From firewall to Kubernetes, from daily backups to 24/7 SOC: the entire server-side tech stack under a single partner who speaks the same technical language as your team. Everything you need to keep your infrastructure alive 24/7.

EXPERT

Backup & Disaster Recovery

Backup that works at restore. 3-2-1-1-0 strategy: ransomware-proof immutable backups, monthly restore tests, RTO/RPO documented per application.

  • Veeam B&R Enterprise (VMware + Hyper-V)
  • Proxmox Backup Server with deduplication
  • Cross-site replication via IPsec/WireGuard
  • Bacula / BorgBackup / Restic on native Linux
  • Monthly automated restore tests
  • RTO/RPO documented per application
  • DR runbook + quarterly tabletop exercises
  • Immutable backups with hardened repository
  • S3/MinIO object storage as secondary tier
  • Database backups (PostgreSQL, MySQL, MSSQL, MongoDB)
EXPERT

Infrastructure monitoring & SOC

Complete infrastructure monitoring stack: Nagios, Check_MK, Zabbix, Grafana, Prometheus, Loki.

  • Nagios Core / XI for classic infrastructure
  • Check_MK Raw + Tribe29 enterprise
  • Zabbix 7.x with custom per-platform templates
  • Grafana dashboards + Prometheus exporters
  • Loki / Graylog / ELK for log aggregation
  • SNMP polling + traps on network devices
  • Synthetic checks (HTTP, TCP, DNS, latency)
  • Alerting Telegram, Slack, email, PagerDuty
  • On-call rotation with escalation matrix
  • 24/7 SOC, incident response < 15 min
📍 On-site coverage
HQ Alba Iulia · on-site visits across Transilvania and Bucharest · 24/7 remote SOC

Concrete results

A few real examples from recent projects. The numbers speak.

VM consolidation

200 VMs consolidated · Proxmox VE hyperconverged cluster

-72% cost

200 VMs consolidated on Proxmox VE 8.x cluster with Ceph hyperconverged. Staged migration over 6 nights, zero production downtime. Licensing: optional Enterprise Subscription (~€110-1000/CPU/year for stable repo + official support); otherwise free community edition.

Firewall

Legacy firewall replacement with FortiGate + SD-WAN

12 → 2 incidents/yr

Audit + network redesign for 20 branches. FortiGuard threat intelligence + GeoIP filtering. ROI achieved in 8 months via downtime reduction.

Backup & DR

Ransomware-proof 3-2-1-1-0 strategy

RTO 1h · RPO 15min

Veeam B&R + Immutable Hardened Repository + cross-site replication Cluj-Bucuresti. Monthly automated restore test. ISO 27001 audit passed first attempt.

P2V Migration

15 physical servers → 3-node Hyper-V cluster with real HA

-60% rack · -50% power

Aging hardware consolidation on Windows Failover Cluster with Storage Spaces Direct hyperconverged. Veeam B&R with automated monthly restore test. RTO 30 min vs hours for physical. Zero-downtime Live Migration for monthly patching.

Datacenter mgmt

Datacenter · VMware vCenter + Cloud Director + NetApp + Veeam

20+ hosts · multi-tenant

Datacenter administration with VMware vCenter cluster, 20+ ESXi hosts, VMware Cloud Director for multi-tenant self-service, NetApp storage with synchronous replication, Veeam B&R backup with offline tape archive.

Linux hardening

Hardened Linux server · GeoIP + Suricata IPS + CrowdSec + KVM on LVM

99.99% uptime · 0 breach

Debian Server CIS hardened + Lynis pass, KVM virtualization on LVM thin-provisioning, nftables firewall with GeoIP filtering (block CN/RU/KP), Suricata IPS inline with Emerging Threats, CrowdSec community blocklist auto-updated daily. Complete Wazuh SIEM monitoring.

Mail server

Microsoft 365 → Postfix + Dovecot self-hosted migration

-85% cost · 200 mailboxes

200 mailbox migration + 8 years archive. Postfix MTA + Dovecot IMAP with Rspamd anti-spam, validated DKIM/SPF/DMARC, Roundcube webmail. Costs cut from €18k/year to €2.5k/year. Data 100% in Romania, GDPR-compliant.

Reverse proxy

HAProxy + Nginx HA with WAF + GeoIP + rate limit

12M req/day · 0 downtime

Reverse proxy cluster with HAProxy keepalived + Nginx + ModSecurity WAF. L7 anti-DDoS, GeoIP filtering, IP reputation lists (CrowdSec). Automatic Let''s Encrypt SSL for 47 domains. 99.99% uptime in the last 18 months.

NIS2 Compliance

NIS2 + ISO 27001 controls implementation for B2B SaaS

Audit passed · first attempt

Complete infrastructure hardening (CIS Benchmarks), Wazuh SIEM + Suricata IDS/IPS, 2-year log retention, incident response procedures, team training, complete auditor documentation. NIS2 + ISO 27001 compliant.

Disaster recovery

RAID10 with 6 offline disks + crashed Oracle

<24h · zero loss

Higher education institution · failed RAID10 array + crashed Oracle DB. Rebuilt array without disk replacement, recovered DB from redo logs. Extra cost: €0 new hardware. Read full case study →

See how we work, in detail

Full case studies and a technical guide with real commands — not marketing, exactly what we deploy in production.

Ransomware · accounting

An accounting firm, back on its feet after ransomware

attacks blocked 60 min

MikroTik router with GeoIP and dynamic lists that block any attack for 60 min, Hyper-V with SAGA + a Linux monitoring server and OpenVPN with 2FA, backup and replication on the old server, all monitored 24/7. Read the full case study →

VMware vSAN

2-node vSAN cluster, hyperconverged

real HA · FTT=1

Two Dell R7615 servers (AMD, 384 GB) in a VMware vSAN cluster, witness on a third ESXi, 25G VLT network and jumbo frames. If a node fails, everything stays up. Read the full case study →

SIEM · XDR

Detection and compliance with Wazuh

FIM + audit + auto-response

Agents on endpoints and servers, file integrity, log collection for audit, vulnerability detection and automatic response to brute-force — the open-source XDR/SIEM platform. Read the full case study →

See all case studies →

From the technical guide

Monitoring with CheckmkWazuh SIEM/XDROPNsense + Suricata + CrowdSecProxmox + Ceph clusterWireGuard site-to-sitenftables firewall
Browse the full technical guide →

Technologies we use daily

We are not tied to any vendor, so we choose together what fits your infrastructure. We know all these technologies and use them daily in production. You pay for results, not for unnecessary licenses.

Debian Server
MAIN EXPERTISE
Ubuntu Server
LTS · cloud
RHEL · Rocky
AlmaLinux · CentOS
Windows Server
2022 · 2025 · AD/DNS
VMware vCenter
vSphere · vSAN
VMware ESXi
Standalone · cluster
Hyper-V
Failover Cluster · S2D
Proxmox VE
PBS · Ceph
Fortinet
FortiGate · Analyzer
Mikrotik
RouterOS · CHR
Ubiquiti UniFi
WiFi 6/6E · controller
Veeam B&R
VMware · Hyper-V
Docker
Compose · Swarm
Ansible
Playbooks · AWX
OpenVPN
Server · client · LDAP
IPsec
strongSwan · libreswan
WireGuard
Mesh · site-to-site
Nagios
Core · XI · NRPE
Check_MK
Raw · Tribe29
Zabbix
7.x · templates
Grafana
Dashboards · alerting
Prometheus
Exporters · alerting
Suricata
IDS/IPS · NSM
Snort
IDS/IPS · Talos
CrowdSec
Reputation · WAF
Wazuh
SIEM · XDR
Fail2ban
IP blocker · jail
iptables
netfilter · legacy
nftables
modern filter
Kubernetes
K8s · k3s · RKE2
GeoIP
MaxMind · DB-IP
Nginx
Web · Reverse proxy
HAProxy
L4/L7 LB · keepalived
Apache
HTTPD · mod_php
Postfix
MTA · virtual
VMware vSAN
HCI · all-flash
Storage Spaces Direct
S2D · ReFS · HCI
50+
servers in production
1000+
virtual machines
20+
firewalls live
5 years
no breach
24/7
SOC monitoring

Engineering. Not copy-paste recipes.

→ See our full experience and portfolio (FortiGate, SIEM, backup, 24/7 SOC)

Cyber Immunity does not sell generic solutions. Each project is individual engineering: we analyze the context, choose the right technology, write the documentation, implement and hand everything over to the client in detail.

We work directly with your CTOs, internal sysadmins and DevOps teams. We integrate, we don't replace. We speak the same technical language, without unnecessary abstractions and without vendor PowerPoints.

Hands-on, not just PowerPoint
We get our hands on the terminal, write code, configure routers. We document everything, hand over everything.
Living documentation
Self-hosted wiki, runbooks, network diagrams — continuously updated, handed over to the client.
Continuous maintenance
Contracts with strict SLA, proactive monitoring, planned patching, clear escalation.
Direct communication
Telegram/Signal with the project team. Fast response, zero tickets lost in systems.

Let's discuss your project

We respond within 4 business hours max. For SOC emergencies, call directly — available 24/7.

Email
office@cymmunity.ro
Phone
+40 742 170 290
Hours
Mon–Fri 9:00–18:00 · SOC 24/7
Location
Simion Barnutiu St. no. 3
510111 Alba Iulia, Romania
On-site Romania + EU