EN DE

Systems that hold
when it matters.

planA Technologies designs, builds and operates IT systems for small and medium-sized companies — with the discipline, controls and operational thinking typically found in large international environments.

International, local and on-premises deployments

Register
HRB 98934
Seat
Darmstadt
Office
Munich
Founded
2019

01 Services

Four areas that belong together

We don't separate building from running. Whoever builds a system is also answerable for it in daily use — and that changes how it gets built.

Software development

Enterprise software, backend systems, and the integrations that connect complicated organisations. We work especially with Java, high-load application logic, API design, and system integration — with the focus on maintainable, reliable software that still works years later.

  • Enterprise Java and backend applications
  • API and system integration design
  • Replacing and modernising legacy systems
  • CI/CD pipelines and deployment automation

Infrastructure and cloud

Designing, building and securing the environment your applications run in. We connect application delivery with platform operations, including automation, deployment pipelines, and resilient infrastructure that scales with the business.

  • Infrastructure as code
  • Containers and orchestration
  • CI/CD and deployment automation
  • Backup and recovery

Operations and maintenance

Monitoring, patching and fault handling within an agreed scope. Fixed response times, a named contact, no ticket queue to disappear into.

  • Monitoring and alerting
  • Patch and update cycles
  • Fault intake with response times
  • Capacity and cost control

IT Security & Resilience

Practical assessments to identify vulnerabilities, technical risks and gaps in your IT environment — from infrastructure and access controls to backup, recovery, monitoring and system hardening. We provide the technical assessment and implementation. Legal interpretation remains with your legal or data-protection adviser.

  • Access management and privileged account controls
  • Encryption, logging and auditability
  • Backup, recovery and resilience testing
  • Monitoring and operational hardening

02 Security

Built to survive an audit

We come from environments where infrastructure is audited: large financial institutions, regulated systems, estates of several thousand servers. We know what auditors look for, where they find gaps, and what “good enough” actually means when someone is checking.

The same standard, without the price tag

We bring that standard to smaller companies. We look at the solution you already run and tell you where it is fragile, where it will not hold up, and what to do about it. Whether you then buy software or build it yourself is your decision.

Large institutions buy commercial products with vendor support. Smaller companies will not pay for that and generally run free or self-written tools instead. That is a legitimate choice, and it is not what we sell against. What transfers is not the tooling — it is knowing the requirements those tools exist to satisfy, and being able to measure any solution against them. Procurement decisions stay with you.

Entry product

A fixed-price assessment of your existing environment against the security requirements applied to regulated organisations. Delivered as a findings report with prioritised remediation steps: what is critical, what matters, what can wait. Defined scope, defined price, no open-ended engagement.

Where we look

  • Privileged and administrative access: how access to critical systems is granted, proven and revoked — including certificate-based SSH trust rather than static keys distributed across the estate
  • Backup and recovery: whether what you back up can actually be restored, and whether coverage matches what the business assumes it is
  • Infrastructure as code, where it serves reliability and reproducibility rather than its own sake
  • Kubernetes platforms: cluster architecture with private addressing throughout and controlled outbound access
  • Training and knowledge transfer, so your team can run what we design without permanent dependency on us

03 Track record

Where this comes from

planA Technologies was founded in 2019. The experience behind it is older: a career in software engineering, IT consulting and DevOps across enterprise environments, system integration and CI/CD automation. We bring that same discipline to smaller teams that still need reliable, scalable and maintainable systems.

Privileged access

The thread that runs the length of that career. First administering it, then replacing an in-house system for administrative account access with CyberArk as deputy project manager, then leading operations for the platform. Today, architecting certificate-based SSH trust to replace static key distribution entirely.

  • CyberArk PAM programme, delivery and 18-month operations lead
  • SSH certificate authority signed by HashiCorp Vault KMS
  • ~150 source accounts, several thousand connection paths
  • Completion closed a major audit finding

Estate-scale rollout

Changing one thing on several thousand machines without breaking any of them. Preparation, testing and automated deployment — plus the identity and permission groundwork that has to exist before any of it can run.

  • Rubrik backup agent across Linux, Solaris and Windows estates
  • Storage migration off legacy SAN, largely without interruption
  • File transfer gateway rollout to ~1,500 clients, three environments
  • Service accounts, sudo rules and directory groups

Platform and automation

Infrastructure described as code and delivered through a pipeline rather than assembled by hand. Designed once and delivered to more than one client — a portable architecture, not a one-off build.

  • Certified Kubernetes Administrator (CKA)
  • Cluster architecture with private addressing throughout
  • Terraform and Ansible, one codebase across four environments
  • Secrets resolved from HashiCorp Vault at run time

Regulated operations

Years inside the operations function of a major financial services client: several thousand Red Hat servers and several hundred Solaris systems, clustered systems included. Hardware faults, upgrades, file system growth and estate-wide change programmes.

  • ITIL practice and structured change delivery
  • Estate-wide re-addressing of server IP addresses
  • Round-the-clock user support, team of three
  • Kubernetes and Docker training for three organisations

04 Approach

Four steps, with overlap

We work in short, visible increments. Some activities happen in parallel, because smaller teams need speed and because a lot of the real requirements only become clear while the system is being built.

01 · Assessment

Understand what runs today

An inventory of systems, processes and dependencies, measured against the requirements regulated organisations have to meet. The result is a written finding: what is critical, what matters, what can wait. Fixed scope, fixed price, commissioned on its own and committing you to nothing further.

02 · Design

Shape the direction before it scales

Architecture, interfaces, data handling and the operating concept are defined early, but they are not treated as frozen forever. We keep the design open to change where the real-world use shows a better option, and we make that change visible in the plan rather than hiding it in the code.

03 · Delivery

Build in reviewable increments

Delivery in two-week increments, each ending in something that runs. Source code, configuration and documentation live in your repository from day one, not ours. This is where many requirements become visible for the first time, and we respond to that without pretending the plan was fixed from the start.

04 · Improve

Keep refining as the system learns

Improvement continues after the first version is live, and in practice it can start earlier than that. We review behaviour, adjust boundaries, tighten controls, and improve the operation as the system settles into real use. The right answer is not a one-time launch, but a system that keeps getting better as its purpose becomes clearer.

05 Technology

Proven before new

We choose tools by whether they will still be maintained in five years and whether you can hire for them.

Languages
Go · Python · TypeScript · Java
Data
PostgreSQL · Redis · S3-compatible
Runtime
Linux · Docker · Kubernetes
Automation
Terraform · Ansible · GitLab CI
Secrets and access
HashiCorp Vault · SSH certificates
Where it runs
International data centres · German data centres · on-premises

06 Location

German company,
German contract law

For many clients the deciding question is not how a system is built, but where the data sits and who has jurisdiction if something goes wrong. There is a short answer to that here.

  • GmbH under German law, registered at the local court of Darmstadt
  • Contracts under German law, place of jurisdiction in Germany
  • Operated in international data centres and in data centres inside the European Union
  • Processing agreements under Art. 28 GDPR, agreed in writing
  • No transfer to third countries without prior agreement
Company
planA Technologies GmbH
Register
Local court Darmstadt, HRB 98934
Registered seat
Darmstadt
Business address
Landsberger Str. 155 – Haus 1
80687 Munich, Germany
Managing Director
Mikhail Smirnov
Object
IT services

07 Contact

Tell us what you're working on

Write a few lines about the situation. You get an answer within one working day, from a person rather than an autoresponder. A first 30-minute conversation costs nothing.

info@plana.technology
Address
Landsberger Str. 155 – Haus 1
80687 München