Cyber Conflict Simulator (CCS) is an operational cyber wargaming platform that models your infrastructure, your people, and your business - so your entire organization can practice managing real incidents under pressure, in hours not weeks.
*Recognized by the European Defence Agency (EDA) as an innovative dual-use project
Hours
Not days, full realistic incident exercise
All Levels
Tactical, Operational & Strategic
DORA, NIS2
Compliance through genuine readiness
Civil & Military
Proven dual-sector platform
- The Challenge
You've invested in prevention. Are you prepared for what happens next?
In today's threat environment, breaches are not a question of if - only when. The difference between a contained incident and a catastrophe is one thing: how prepared your team is to respond under pressure.
A Crisis Unlike Any Other
A cyber incident involves an active, adaptive adversary who adjusts in real time. At the outset, scope is unknown. Your organization faces this alone - under intense media, regulatory, and board scrutiny.
Compliance as Capability, Not a Checkbox
EU NIS2 and DORA mandate regular incident response exercises. CCS helps you meet those requirements - but more importantly, it builds the genuine readiness behind them.
Technology Alone Is Not the Answer
Every major incident reveals the same truth: the outcome depends on the people who detect, coordinate, decide, and communicate. Technical defences fail when the human response fails.
Every Incident Is Different
Ransomware requires rapid containment. A supply chain attack demands forensic investigation. A data breach triggers legal obligations. Experience in one scenario doesn't prepare you for another.
*$2.66M average reduction in breach costs for organizations with regular incident response training and tested plans - IBM Cost of a Data Breach Report
- The Platform
Cyber Conflict Simulator
CCS creates a digital twin of your organization - IT/OT systems, security controls, business processes, and people - and runs realistic attack scenarios against it. Your teams respond. Every action, decision, and message is recorded for structured after-action review.
Practice real incidents without real consequences.
Not a cyber range
Not a tabletop exercise
CCS trains your whole organization on what to do when an attack is unfolding - under real time pressure, with real decisions.
How CCS works: four stages
1.Cyber landscape twin
2.Attack scenario design
3.Team in action
4.After-action review
The cyber defence link you are missing
CCS is not a technical cyber range. It is not a tabletop exercise. It occupies the critical gap between them - the layer that no other platform addresses.
Are You Ready for the Cyber Attack?
- Testimonials
What Clients Say
Military / Defence
CCS fills the gap that exists in developing cyber capabilities between the technical and management levels. Its features enable a unique approach to simultaneously training a wide spectrum of personnel at all levels. We look forward to further collaboration.
Brigadier General Ante Tolić
Chief, Directorate for C4 Systems
Croatian Armed Forces General Staff
Financial Services
Exceptionally useful, innovative, and a good training for handling cyber incidents. I was particularly impressed by CCS's capabilities for identifying the cause, preventing the spread, and eliminating the source. We are absolutely interested in additional exercises.
Dejan Knežević
Director, IT Sector
Imex Banka d.d.
Financial Services
Like a flight simulator. With repeated exercises we achieve efficient and optimal response for specific types of cyber events. CCS gives the experience of managing the response to a cyber incident that no other tool provides.
Srećko Bartol
Head of Information Systems Security
Kentbank d.d.
Financial Services
Through the exercise we improved the incident response team's capabilities that were subsequently confirmed in operational work. CCS delivers excellent training for reacting to unforeseen situations - its greatest value.
Franjo Prgić
Director, IT Sector
Kentbank d.d.
Cybersecurity Consulting
CCS confirmed the "lessons learned" concept - giving full meaning to updating IR procedures and DR guides that otherwise remain lifeless documents. After the exercise: improved communication and a clear recognition of management's critical role in resolving incidents.
Dalibor Uremović
Information Security Consultant
Alterinfo d.o.o.
Cybersecurity Consulting
A top-tier simulation product with the potential for global success. Each side has a set of actions and technical personnel with defined expertise, achieving a high level of realism. The post-exercise analysis is directly applicable to real situations.
Mario Krbot
Information Security Consultant
Diverto d.o.o.
1 / 6
- Partners
Partner Program
To make CCS accessible to everyone, we are building a network of carefully selected partners who will play a key role in its expansion and implementation.
Would you rather have a team with experience - or a team facing it for the first time?
Utilis Ltd and the project partner, Faculty of Electrical Engineering and Computing (FER), signed a Grant Agreement with MINGO and HAMAG BICRO for projects financed from the European Structural and Investment Funds in the financial period 2014-2020 (ESIF). The contract was signed for the Cyber Conflict Simulator project within the instrument "Increasing the development of new products and services arising from research and development activities"
Cookie Policy
What are cookies? Cookies are small text files placed on your device (computer, tablet, or mobile) when you visit a website. They allow the website to recognise your device and remember certain information about your visit — for example, your language preference or whether you have already accepted our cookie notice. Cookies are set either by us (first-party cookies) or by third parties whose services we use on this website (third-party cookies). Some cookies are deleted when you close your browser (session cookies); others remain on your device for a set period (persistent cookies).
What cookies do we use? Category 1: Strictly necessary cookies These cookies are essential for the website to function correctly. They do not collect personal information for marketing purposes and cannot be disabled. Without them, services such as page navigation and form submission would not work. – Session cookie — maintains your session as you navigate the website. Expires when you close your browser. – Cookie consent cookie — stores your cookie preference so you are not asked again on every visit. Expires after 12 months. Legal basis: Strictly necessary cookies do not require consent under the ePrivacy Directive. Category 2: Analytical / performance cookies These cookies help us understand how visitors use our website — for example, which pages are visited most often and whether users encounter errors. We use this information to improve the website. All data is aggregated and anonymised where possible. – Analytics tool (e.g. Matomo or Google Analytics) — collects anonymised data on page views, session duration, traffic source, and device type. Expires after 13 months. Legal basis: These cookies are set only with your consent (Article 6(1)(a) GDPR). You may withdraw consent at any time via our cookie preferences panel. Category 3: Functional cookies These cookies enable enhanced functionality and personalisation, such as remembering your language preference (HR/EN). They may be set by us or by third-party providers whose services appear on our pages. – Language preference cookie — stores your selected language (HR or EN). Expires after 12 months. Legal basis: Legitimate interests (Article 6(1)(f)) for language preference, or consent where the cookie is set by a third party. Category 4: Marketing / tracking cookies We do not currently use marketing or advertising tracking cookies on this website. If this changes, this policy will be updated and your consent will be requested before any such cookies are set.
Third-party cookies If we embed content from third-party services (such as LinkedIn “Follow” widgets, YouTube videos, or map embeds), those providers may set their own cookies subject to their own privacy policies. We have no control over third-party cookies. We will inform you where third-party content that may set cookies is present on a page.
How to manage cookies You can control and manage cookies in the following ways: Cookie consent banner When you first visit utilis.biz, a cookie banner will appear allowing you to accept or decline non-essential cookies. You can change your preferences at any time by clicking the “Cookie settings” link in the website footer. Browser settings Most browsers allow you to refuse or delete cookies through their settings. The following links explain how to do this in common browsers: – Google Chrome: Settings → Privacy and security → Cookies and other site data – Mozilla Firefox: Settings → Privacy & Security → Cookies and Site Data – Microsoft Edge: Settings → Cookies and site permissions – Safari: Preferences → Privacy Please note that disabling strictly necessary cookies may affect the functionality of this website. Opt-out tools For analytics cookies, you may also use the opt-out mechanism provided by your analytics provider. If we use Google Analytics, the Google Analytics Opt-out Browser Add-on is available at: tools.google.com/dlpage/gaoptout
Cookie retention periods Cookie retention periods are set out in Section 2 above alongside the description of each cookie. We review our cookie usage annually and will update this policy if we add, change, or remove any cookies.
Changes to this Cookie Policy We may update this Cookie Policy to reflect changes in technology, legislation, or the cookies we use. The “Last updated” date at the top of this page will be revised accordingly. Significant changes will be brought to your attention via an updated cookie consent notice.
Contact If you have any questions about our use of cookies, please contact us: Utilis d.o.o. Fallerovo šetalište 22, 10000 Zagreb, Croatia Email: info@utilis.biz Tel: +385 1 36 35 666
Terms of Use
About this website This website (utilis.biz) is operated by Utilis d.o.o., a company registered in the Republic of Croatia, with registered office at Fallerovo šetalište 22, 10000 Zagreb (OIB: 37078172394). References to “Utilis”, “we”, “us” or “our” in these Terms refer to Utilis d.o.o. By accessing or using this website, you agree to be bound by these Terms of Use. If you do not agree, please do not use this website.
Purpose of the website This website provides information about Utilis d.o.o. and its services, including cybersecurity audit, information systems security management, software development, information systems audit, business continuity services, and our software products (CCS, Secutools, Hefesto). It is intended for informational purposes only and does not constitute a binding offer of services unless confirmed in a separate written agreement.
Intellectual property All content on this website — including text, graphics, logos, product names, and software — is the property of Utilis d.o.o. or its licensors and is protected under applicable Croatian and EU intellectual property laws. You may view and print content from this website for personal, non-commercial reference only. You may not reproduce, redistribute, publish, or use any content for commercial purposes without our prior written consent.
Accuracy of information We make reasonable efforts to keep the information on this website accurate and current. However, we do not warrant that all content is complete, accurate, or up to date at all times. Information about our services, products, and regulatory guidance is provided for general informational purposes and does not replace professional advice tailored to your specific situation.
No professional advice Content on this website — including any references to cybersecurity standards, regulations (such as NIS2, GDPR, ISO 27001, or the EU Cyber Resilience Act), or industry practices — is provided for informational purposes only. It does not constitute legal, regulatory, or professional advice. For advice specific to your organisation’s circumstances, please contact us directly or consult a qualified professional.
Limitation of liability To the fullest extent permitted by applicable Croatian and EU law, Utilis d.o.o. shall not be liable for any direct, indirect, incidental, or consequential loss or damage arising from:
your use of, or inability to use, this website;
reliance on any information contained on this website;
any interruption, suspension, or termination of the website or its content;
any unauthorised access to or alteration of your data or transmissions.
This limitation does not exclude liability that cannot be excluded by law, including liability for fraudulent misrepresentation or for death or personal injury caused by negligence.
Third-party links This website may contain links to third-party websites. These links are provided for convenience only. Utilis d.o.o. has no control over the content of those websites and accepts no responsibility for them or for any loss or damage that may arise from your use of them.
Privacy and cookies Your use of this website is also governed by our Privacy Policy and Cookie Policy, which are incorporated into these Terms by reference. We process personal data in accordance with Regulation (EU) 2016/679 (GDPR) and applicable Croatian data protection legislation.
Changes to these Terms We may update these Terms of Use from time to time to reflect changes in law, our services, or our website. The “Last updated” date at the top of this page indicates when the Terms were last revised. Your continued use of the website after any changes constitutes acceptance of the revised Terms.
Governing law and jurisdiction These Terms of Use are governed by the laws of the Republic of Croatia. Any dispute arising from or in connection with these Terms shall be subject to the exclusive jurisdiction of the competent courts in Zagreb, Croatia.
Contact If you have any questions about these Terms or our website, please contact us: