The MarsBased team gathered together in the Barcelona office

A senior team, not a rotating bench

Enterprise engagements rarely fail on technology. They fail when the people change every quarter and the context leaves with them. Our average Martian has been here 5.2 years and our average client relationship runs beyond five, so the engineers who learn your domain, your constraints and your stakeholders are the ones who stay to deliver.

We are an approved vendor for HP, Moody's, FC Barcelona, NTT Data, BCG, Orange, Citadel Securities, Haufe and Ford, among others.

Some of our enterprise clients

Before the first commit

Vendor forms, contracts and access.

Procurement & security

We complete supplier registration and procurement due diligence, fill in your security questionnaires, and answer the follow-ups from your InfoSec team directly.

DPA and legal setup

We sign your Data Processing Agreement, or send ours on request within 24 hours. GDPR has governed how we handle client data since 2014, so this is routine rather than a negotiation.

Access and environments

Our engineers are provisioned into your SSO, VPN and internal tooling, so they work inside your environment and your controls rather than around them.

SLAs and incident response

Agreed per contract, run the same way every time.

Severity triage

Every incident is classified by its impact on your business, not by how hard it looks to fix. That classification decides who responds, how quickly, and what work stops in the meantime.

A named escalation path

Every account has a named delivery lead who is accountable for it, with a defined route up to partner level. You always know who to call, and you never have to explain your project from scratch.

Post-incident review

Anything significant gets a written post-mortem: what broke, why it broke, and what we changed so it does not happen again. We share it with you, and we are blunt when the cause was ours.

Security and compliance

The same posture we hold ourselves to.

ISO/IEC 27001

Certification is on track for completion in Q3 2026. Our security practices were already robust; the process formalises and validates them against the standard.

GDPR compliant

Privacy by design since 2014, not something we bolted on later. We can walk your legal and security teams through exactly how we handle client data.

EU-based team

The team is EU-based, with our HQ in Barcelona. Your project stays inside European jurisdiction, which keeps procurement and data-protection reviews straightforward.

More on how we work

What we have written about security, scale and inheriting other people's code.

Iso 27001

On the path to ISO 27001 certification

MarsBased is pursuing ISO 27001 certification. Our security practices were already robust — this formalises and validates our commitment to data protection.

Read full article
Martians

Small teams beat Goliaths

Team size matters as much as team composition. This post argues why small, focused development teams consistently outperform large, bloated teams in practice.

Read full article
Present

Audit the code you inherit

How many times have you - as an agency or freelancer - inherited code from a previous provider or another team? How many times have you been blamed for things that were not your fault? You can avoid it, if you follow our advice.

Read full article
Work with us

Let's talk about your enterprise project

Tell us about your organisation's needs and we'll get back to you.

Contact us