The BSI C5 certified cloud of the Schwarz Group. We take over the operation of your STACKIT infrastructure — VMs, Kubernetes, databases and more.
BSI C5 Type 2
GDPR-compliant
24/7 Monitoring
Sovereign
The following are trademarks of their respective owners: STACKIT (STACKIT GmbH & Co. KG (Schwarz Gruppe)). WZ-IT is an independent service provider and has no business, partnership, or contractual relationship with these companies. We offer independent migration, installation, hosting, and operations services.
STACKIT is the cloud provider of the Schwarz Group — the company behind Lidl and Kaufland. As a German company with data centers exclusively in Germany and Austria, STACKIT offers a sovereign alternative to US hyperscalers. No US CLOUD Act, no FISA 702 — full data sovereignty.
With BSI C5 Type 2 certification, ISO 27001, ISO 27017, ISO 27018 and SOC 2, STACKIT meets the strictest compliance requirements — including for the public sector and regulated industries such as healthcare and financial services.
We take over the professional operation of your STACKIT infrastructure: Linux VMs, SKE Kubernetes clusters, managed databases, object storage — with 24/7 monitoring, patch management and defined service levels.
STACKIT belongs to the Schwarz Group (Lidl/Kaufland). Data centers exclusively in Germany and Austria. No US CLOUD Act, no FISA 702.
Certified according to BSI C5 Type 2, ISO 27001, ISO 27017, ISO 27018 and SOC 2. Highest security standards for regulated industries.
The infrastructure stays in your STACKIT account. We manage your VMs, SKE clusters and databases — you retain full control.
Security updates for Linux VMs (Debian, Ubuntu, AlmaLinux, Rocky Linux). Planned updates in coordinated maintenance windows.
Operation and maintenance of your STACKIT Kubernetes Engine clusters. Upgrades, node pool management, ingress configuration and monitoring.
Securing your STACKIT infrastructure: security groups, network segmentation, SSH hardening and access control.
24/7 monitoring with proactive response to outages, performance issues or security events. Escalation according to your service level.
Management of your STACKIT managed databases: PostgreSQL, MySQL, Redis, MongoDB and RabbitMQ. Performance tuning and backup verification.
Implementation of backup strategies with STACKIT Object Storage. Encrypted offsite backups with regular restore tests.
Linux VMs (Compute Engine)
STACKIT Kubernetes Engine (SKE)
Managed Databases (PostgreSQL, MySQL, Redis, MongoDB)
Object Storage
Block Storage
Cloud Foundry
Confidential Computing
RabbitMQ / Messaging
BSI C5 Type 2 required for government and public sector.
Law firms, healthcare, finance with strict compliance requirements.
Companies looking for a European alternative to AWS, Azure and GCP.
Assessment of your STACKIT environment (VMs, Kubernetes, databases, network)
Security hardening, monitoring setup and documentation
Installation of our monitoring agents and handover
Ongoing managed operations with SLA
Let's discuss your STACKIT infrastructure. First consultation free and non-binding.
Monitor your infrastructure in real-time, schedule maintenance and get direct support – all in one central portal.

Everything about STACKIT, BSI C5, migration and operations
STACKIT is the cloud provider of the Schwarz Group (Lidl/Kaufland). As a German company with data centers exclusively in Germany and Austria, STACKIT is not subject to the US CLOUD Act or FISA 702. The cloud is BSI C5 Type 2 certified, making it one of the few German clouds approved for the public sector and regulated industries.
We manage Linux VMs (Compute Engine), STACKIT Kubernetes Engine (SKE), Managed Databases (PostgreSQL, MySQL, Redis, MongoDB), Object Storage, Block Storage and RabbitMQ. In short: everything that runs on Linux. We don't manage Windows workloads.
Yes. STACKIT is BSI C5 Type 2 certified — that's the prerequisite for use in the public sector. We take over the operation of your infrastructure on STACKIT and support documentation and evidence management for your own compliance requirements.
Hetzner is price-attractive but doesn't have BSI C5 certification. AWS has BSI C5 but is subject to the US CLOUD Act. STACKIT combines both: BSI C5 Type 2 certification and full data sovereignty as a German company. However, the product portfolio is smaller than AWS.
Yes. We plan and execute migrations from AWS, Azure and GCP to STACKIT. Container-based applications (Docker/Kubernetes) can often be migrated relatively easily, as SKE offers CNCF-compliant Kubernetes. VM-based workloads require more planning. Contact us for an individual assessment.
Like all our managed operations: first audit (assessment of your VMs, clusters, databases and network), then hardening (security, SSH hardening, security groups), then onboarding (installation of our monitoring agents) and finally ongoing operations with SLA. The entire process typically takes 1-2 weeks.
SKE is STACKIT's fully managed Kubernetes service. It delivers CNCF-compliant Kubernetes clusters, making it compatible with standard Kubernetes tools and workflows. We handle cluster management: upgrades, node pool scaling, ingress configuration, monitoring and etcd database backup.
STACKIT offers managed databases for PostgreSQL, MySQL, Redis, MongoDB and RabbitMQ. We handle performance tuning, backup management, monitoring and coordination of updates with STACKIT managed services. For self-managed databases on VMs, we also take over operations.
We install our monitoring agents on your STACKIT VMs and Kubernetes nodes. This allows us to monitor CPU, RAM, disk, network, application metrics and security events. Data flows into our Grafana/Prometheus stack. We react proactively to anomalies according to your service level.
Yes. The infrastructure stays in your STACKIT account. We only need a technical service account with the necessary permissions. You retain full commercial control and transparency over your resources.
Costs depend on the scope and complexity of your environment — number of VMs, Kubernetes clusters, databases and chosen service level. Contact us for an individual offer based on your specific requirements.
Yes. STACKIT offers Confidential VMs and Confidential Kubernetes that run on specialized hardware and keep data encrypted even during processing. This is particularly relevant for defense applications, health data and highly sensitive financial applications. We can operate these environments for you as well.
More questions? We are happy to help!
Whether a specific IT challenge or just an idea – we look forward to the exchange. In a brief conversation, we'll evaluate together if and how your project fits with WZ-IT.
Timo Wevelsiep & Robin Zins
Managing Directors of WZ-IT

