<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>PROTISEC — AI-Powered Enterprise Cybersecurity</title><link>https://protisec.com/</link><description>Recent content on PROTISEC — AI-Powered Enterprise Cybersecurity</description><generator>Hugo</generator><language>en</language><lastBuildDate>Tue, 10 Mar 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://protisec.com/index.xml" rel="self" type="application/rss+xml"/><item><title>NIS2 in Spain: What SMEs Need to Do Before August 2026</title><link>https://protisec.com/blog/nis2-spanish-smes-2026/</link><pubDate>Tue, 10 Mar 2026 00:00:00 +0000</pubDate><guid>https://protisec.com/blog/nis2-spanish-smes-2026/</guid><description>&lt;p&gt;The EU Network and Information Security Directive (NIS2) entered into force across EU member states in October 2024. Spain transposed it via the &lt;strong&gt;Ley de Seguridad de las Redes y Sistemas de Información&lt;/strong&gt; (LSSI-NIS2). For Spanish SMBs in affected sectors, the clock is running.&lt;/p&gt;
&lt;h2 id="who-is-actually-affected"&gt;Who Is Actually Affected&lt;/h2&gt;
&lt;p&gt;NIS2 expanded the scope dramatically compared to its predecessor. In Spain, the following sectors are now covered:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Energy (electricity, oil &amp;amp; gas, district heating)&lt;/li&gt;
&lt;li&gt;Transport (road, rail, air, maritime)&lt;/li&gt;
&lt;li&gt;Banking and financial market infrastructure&lt;/li&gt;
&lt;li&gt;Health (hospitals, pharma manufacturing, R&amp;amp;D)&lt;/li&gt;
&lt;li&gt;Drinking water and wastewater&lt;/li&gt;
&lt;li&gt;Digital infrastructure (DNS, cloud, data centres, CDN providers)&lt;/li&gt;
&lt;li&gt;ICT service management (MSPs, MSSPs)&lt;/li&gt;
&lt;li&gt;Public administration&lt;/li&gt;
&lt;li&gt;Space&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;The &lt;strong&gt;size threshold matters&lt;/strong&gt;: medium enterprises (50+ employees or €10M+ revenue) in essential sectors fall under NIS2. Some critical entities regardless of size are also in scope. If you are an MSP or MSSP, you are almost certainly in scope.&lt;/p&gt;</description></item><item><title>How LockBit Penetrates ICS/OT Networks: An Anatomy</title><link>https://protisec.com/blog/lockbit-icsot-anatomy/</link><pubDate>Thu, 05 Mar 2026 00:00:00 +0000</pubDate><guid>https://protisec.com/blog/lockbit-icsot-anatomy/</guid><description>&lt;p&gt;The Colonial Pipeline attack in 2021 cost $4.4M in ransom and shut down fuel supply to the US East Coast for six days. The compromise vector: a legacy VPN account with no MFA. The attackers never touched OT systems — they did not need to. The company shut down operations proactively out of fear.&lt;/p&gt;
&lt;p&gt;This is the new reality of industrial ransomware. The attack does not need to compromise your PLC to be devastating.&lt;/p&gt;</description></item><item><title>Private LLMs vs OpenAI API: The Enterprise Security Case</title><link>https://protisec.com/blog/private-llms-vs-openai-enterprise/</link><pubDate>Sat, 28 Feb 2026 00:00:00 +0000</pubDate><guid>https://protisec.com/blog/private-llms-vs-openai-enterprise/</guid><description>&lt;p&gt;In 2023, Samsung employees leaked proprietary source code by pasting it into ChatGPT. The incident is now a standard case study in enterprise AI risk. Two years later, most large European companies have an AI usage policy. Very few have an AI architecture that actually enforces it.&lt;/p&gt;
&lt;p&gt;The fundamental problem: cloud LLM APIs process your data on infrastructure you do not control, governed by terms of service that change, subject to regulatory jurisdictions that may not align with your compliance obligations.&lt;/p&gt;</description></item><item><title>AI-Augmented Red/Blue Team</title><link>https://protisec.com/services/red-blue-team/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://protisec.com/services/red-blue-team/</guid><description/></item><item><title>AI-Powered Automated Compliance</title><link>https://protisec.com/services/compliance/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://protisec.com/services/compliance/</guid><description/></item><item><title>CISO as a Service / Senior Architect</title><link>https://protisec.com/services/ciso-as-a-service/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://protisec.com/services/ciso-as-a-service/</guid><description/></item><item><title>Cookie Policy</title><link>https://protisec.com/legal/cookies/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://protisec.com/legal/cookies/</guid><description>&lt;p&gt;Cookies are small pieces of information sent to and stored on the user&amp;rsquo;s hard drive by their browser when they connect to a website.&lt;/p&gt;
&lt;h2 id="types-of-cookies-used"&gt;Types of Cookies Used&lt;/h2&gt;
&lt;h3 id="technical-cookies-strictly-necessary"&gt;Technical cookies (strictly necessary)&lt;/h3&gt;
&lt;p&gt;Enable navigation and the use of the various options or services offered by the website, such as session management and security. &lt;strong&gt;No consent required.&lt;/strong&gt;&lt;/p&gt;
&lt;h3 id="analytics-cookies-google-analytics-4"&gt;Analytics cookies (Google Analytics 4)&lt;/h3&gt;
&lt;p&gt;Allow anonymous analysis of user behaviour on the website, enabling measurement of activity and improvement of the site. &lt;strong&gt;Only activated after explicit consent.&lt;/strong&gt; IP addresses are anonymised.&lt;/p&gt;</description></item><item><title>ICS/OT Industrial Security</title><link>https://protisec.com/services/ics-ot/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://protisec.com/services/ics-ot/</guid><description/></item><item><title>Legal Notice</title><link>https://protisec.com/legal/legal-notice/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://protisec.com/legal/legal-notice/</guid><description>&lt;p&gt;This website is owned by &lt;strong&gt;PROTISEC&lt;/strong&gt; (hereinafter PROTISEC), operated by Angel Georgiev Sulev, NIE X4157410-E, with registered address at C/Ciutat de Fraga 17, 25003 Lleida, Spain.&lt;/p&gt;
&lt;p&gt;For any enquiry or proposal, contact us at &lt;strong&gt;(+34) 624 676 696&lt;/strong&gt; or &lt;strong&gt;&lt;a href="mailto:info@protisec.com"&gt;info@protisec.com&lt;/a&gt;&lt;/strong&gt;.&lt;/p&gt;
&lt;p&gt;This website is governed exclusively by Spanish law, which applies to all users — national and international — who access it.&lt;/p&gt;
&lt;p&gt;Access to this website is free of charge and is conditional upon prior reading and full, express acceptance of these General Terms of Use in force at the time of access. By using this portal, its content or services, the USER expressly accepts and submits to these General Terms of Use.&lt;/p&gt;</description></item><item><title>MLSecOps &amp; Adversarial Defense</title><link>https://protisec.com/services/mlsecops/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://protisec.com/services/mlsecops/</guid><description/></item><item><title>Privacy Policy</title><link>https://protisec.com/legal/privacy/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://protisec.com/legal/privacy/</guid><description>&lt;p&gt;Confidentiality and security are core values of PROTISEC. We are committed to protecting your privacy at all times and to collecting only the information strictly necessary.&lt;/p&gt;
&lt;h2 id="1-data-controller"&gt;1. Data Controller&lt;/h2&gt;
&lt;p&gt;&lt;strong&gt;Controller:&lt;/strong&gt; Angel Georgiev Sulev (NIE X4157410-E)&lt;br&gt;
&lt;strong&gt;Trading as:&lt;/strong&gt; PROTISEC&lt;br&gt;
&lt;strong&gt;Address:&lt;/strong&gt; C/ Ciutat de Fraga 17, 25003 Lleida, Spain&lt;br&gt;
&lt;strong&gt;Email:&lt;/strong&gt; &lt;a href="mailto:info@protisec.com"&gt;info@protisec.com&lt;/a&gt;&lt;br&gt;
&lt;strong&gt;Phone:&lt;/strong&gt; +34 624 676 696&lt;/p&gt;
&lt;h2 id="2-purposes-legal-basis-and-retention"&gt;2. Purposes, Legal Basis and Retention&lt;/h2&gt;
&lt;h3 id="contact--information-request-form"&gt;Contact / information request form&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Purpose:&lt;/strong&gt; To respond to your enquiries and, if you have given consent, to keep you informed about our services and activities.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Legal basis:&lt;/strong&gt; The user&amp;rsquo;s consent when submitting the form.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Retention:&lt;/strong&gt; Until your request has been resolved and, if subscribed to communications, until removal is requested.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="email-communications"&gt;Email communications&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Purpose:&lt;/strong&gt; To answer information requests, attend to queries and respond to questions.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Legal basis:&lt;/strong&gt; The user&amp;rsquo;s consent when contacting us via email.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Retention:&lt;/strong&gt; Until your request has been answered, unless a new processing relationship is generated.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="obligation-to-provide-personal-data"&gt;Obligation to provide personal data&lt;/h3&gt;
&lt;p&gt;The personal data requested is necessary to manage your requests and/or provide the services you may contract. If you do not provide it, we will not be able to attend to you correctly.&lt;/p&gt;</description></item><item><title>Private LLMs &amp; B2B AI Agents</title><link>https://protisec.com/services/private-llms/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://protisec.com/services/private-llms/</guid><description/></item></channel></rss>