New: Flexible service plans for Myra WAF. Learn more!

Key Visual Security as a Service Plattform

Resilient availability – made in Germany

Your European Cloudflare Alternative

Myra offers a highly secure, GDPR-compliant alternative to Cloudflare for organizations that require uncompromising control over their digital processes.
 

✔   Highly available and secure IT infrastructure from Germany/EU

✔   Personal expert support from Germany

✔   Protection against US data access in accordance with the CLOUD Act, FISA 702, and PATRIOT Act

Get started without legal headaches

1&1 Versatel LogoLogo BarmeniaMunich Security ConferenceFinance customer of Myra: DSV IT Servicellb1861 LogoFinance customers of Myra: flatexDEGIROCancomPartner of Myra: WitcomLogo cps coding powerful systems]init[NFONPartner of Myra: heinleinDSwissLogo UserlikeLogo calensoLogo Staatsministerium Baden-WürttembergStadt Regensburg LogoSecuritas1822direkt LogoAKDB Logo

Highest requirements as benchmark

Compliance “Made in Germany”

Myra develops and operates a legally compliant GDPR-compliant Security-as-a-Service platform in Germany. This means that Myra as a Cloudflare alternative is subject to German and European jurisdiction, which requires protection service providers to offer maximum security, availability, and data protection.
 
New regulations such as NIS-2, the Cyber Resilience Act (CRA) and DORA are continuously raising the level of protection in Europe – a clear advantage over less strictly regulated non-European providers.
 

  • Certifications according to ISO 27001 based on BSI IT-Grundschutz, BSI C5 Type 2, PCI-DSS, IDW PS 951 Type 2 (ISAE 3402) and quality management according to ISO 9001 prove Myra's high level of security.

  • Myra is itself a KRITIS operator in accordance with Section 8a (3) BSIG and designed for use in critical infrastructures – making it the ideal partner for organizations with the highest compliance requirements.

Data leaks, espionage, supply chain risks

These risks exist with US providers

When selecting a cloud service provider, in addition to the technology, the legal framework within which the provider operates is also of central importance. Companies that are subject to US legislation, for example, are particularly affected by surveillance and supply chain risks. This is particularly relevant in light of the ongoing geopolitical tensions, the rise of authoritarianism in the US administration, and legislation on data protection that is at odds with the EU's stance.

Laws with far-reaching consequences for your data

CLOUD Act

Regulates the disclosure of electronic data by US companies for law enforcement purposes, even if the data is stored outside the US.

FISA 702

Allows US intelligence agencies to monitor and collect electronic communications from non-US citizens outside the US for the purpose of obtaining “foreign intelligence information.”

PATRIOT Act

Originally enacted after 9/11 to combat terrorism, the PATRIOT Act allows US authorities to collect telephone and internet data on a massive scale and access business data.

TLS termination

Digital backpack checks as a compliance challenge

TLS encryption effectively protects data from prying eyes and manipulation – but at the same time makes it more difficult to detect threats. To ward off attacks in encrypted traffic, security solutions must therefore temporarily break the encryption (TLS termination) and analyze the data stream in a targeted manner – similar to a backpack check when visiting large events.

Since TLS termination also makes sensitive data visible, this process is particularly sensitive from a data protection and compliance perspective, as not every service provider has the necessary expertise and meets the required data protection standards to perform TLS termination in a legally compliant manner in accordance with the GDPR.

How it works

Myra Security

  • Incoming connections are decrypted exclusively in data centers in Germany – legally compliant with the GDPR.

  • The data remains entirely within the EU legal area – there is no transfer to other countries.

  • Outside the scope of US surveillance laws

US providers

  • Possibility of data transfers to the US (legal uncertainty)

  • Directly affected by US legislation (FISA 702, CLOUD Act, PATRIOT Act)

  • Potential access by US authorities even to encrypted data or data stored in the EU

Service from the SOC

Personal 24/7 support from IT experts

Unlike fully automated support solutions, Myra Security offers local 24/7 support from a team of IT experts at the Security Operations Center (SOC) as an alternative to Cloudflare.
 

  • A market-leading Net Promoter Score of 46 shows how much customers value our outstanding security and service quality.

  • A Customer Satisfaction Score of 4.47/5 underscores the excellent performance of our customer success and operations teams.

Network

Debate on data protection and compliance

Legal certainty of US data transfers under scrutiny

The legal basis for data transfers between Europe and the US is very uncertain. The existing adequacy decision between the EU and the US is based solely on an executive order by Joe Biden, which can be revoked at any time by his successor. As part of his Agenda 47, the US presidential agenda, Donald Trump has announced his intention to reverse all of Biden's measures.
 
This process has already begun with the dismissal of the Democratic members of the Privacy Oversight Board, a central component of the EU-US Data Privacy Framework that serves as the basis for the current adequacy decision. Companies that rely on US service providers are therefore facing a significant compliance and liability risk.

Get started without legal headaches


Myra vs. typical US competitors

  • BSI ISO 27001 based on IT-Grundschutz certified

    KRITIS operator in accordance with Section 8a (3) BSI Act

    BSI C5 Type 2 audited (Cloud Computing Compliance Criteria Catalogue)

    Full score (37/37) in the BSI comparison for DDoS mitigation providers

    Legally GDPR compliant (not subject to US CLOUD Act and FISA Section 702)

    IDW PS 951 Type 2 (ISAE 3402)

    ISO 9001 quality management

    Option to exclusively process data in German data centers

    Technology development in EU / Germany

    Company management based in EU / Germany

    EU / German law applies

    Enhanced business continuity through default direct connect to the protection infrastructure

    User-defined escalation paths

    Regular, spontaneous testing by reputable third-party providers

    Real-time support for Splunk/Vector/SIEM

    BSI ISO 27001 based on IT-Grundschutz certified

    KRITIS operator in accordance with Section 8a (3) BSI Act

    BSI C5 Type 2 audited (Cloud Computing Compliance Criteria Catalogue)

    Full score (37/37) in the BSI comparison for DDoS mitigation providers

    Legally GDPR compliant (not subject to US CLOUD Act and FISA Section 702)

    IDW PS 951 Type 2 (ISAE 3402)

    ISO 9001 quality management

    Option to exclusively process data in German data centers

    Technology development in EU / Germany

    Company management based in EU / Germany

    EU / German law applies

    Enhanced business continuity through default direct connect to the protection infrastructure

    User-defined escalation paths

    Regular, spontaneous testing by reputable third-party providers

    Real-time support for Splunk/Vector/SIEM

    MYRA SECURITY
    TYPICAL US COMPETITOR

    BSI ISO 27001 based on IT-Grundschutz certified

    KRITIS operator in accordance with Section 8a (3) BSI Act

    BSI C5 Type 2 audited (Cloud Computing Compliance Criteria Catalogue)

    Full score (37/37) in the BSI comparison for DDoS mitigation providers

    Legally GDPR compliant (not subject to US CLOUD Act and FISA Section 702)

    IDW PS 951 Type 2 (ISAE 3402)

    ISO 9001 quality management

    Option to exclusively process data in German data centers

    Technology development in EU / Germany

    Company management based in EU / Germany

    EU / German law applies

    Enhanced business continuity through default direct connect to the protection infrastructure

    User-defined escalation paths

    Regular, spontaneous testing by reputable third-party providers

    Real-time support for Splunk/Vector/SIEM

    This is what other say about us

    SUCCESS STORY

    Federal Ministry of Health

    Industry: Public Sector

    Employees: > 500
     

    The collaboration between Myra and coding.powerful.systems enables the Federal Ministry of Health to keep its TYPO3 website constantly highly available and performant. Even with high visitor numbers, the ministry's website is quickly and stably accessible.

    Read MoreCheck out All Case Studies

     

    Protect Your Digital Assets – Book a Free Demo

     
    See Myra's cybersecurity solutions in action, get tailored advice from specialists and answers to all of your questions.
     

    Book a demo

    Certificate ISO 27001 BSI certified on the basis of IT-GrundschutzCertificate PCI DSSBSIG KRITIS qualified logoBSI C5 Testat Typ2Zertifikat Trusted CloudIDW WPS 951 Type 2 CertificateKRITIS LogoISO 9001