Cyberattacks and viruses are a risk every company has to deal with nowadays. Therefore, reliable information security and advanced risk management are an essential aspect. Since small- and medium-sized firms still have to learn how to implement and maintain defence solutions, secopan (Security Competence Partner Network) GmbH has made it its business to provide expert advice to these companies. Damage to IT infrastructure, for example caused by hackers or a fire, can have severe consequences for a company, leading to seizing up entire business processes. Therefore, it is absolutely necessary to have a proper information security management system (ISMS) that systematically and continually checks all information security risks. Particularly small- and medium-sized firms still have to learn to understand the problems of computer security.