The IT Security Act 2.0 obliges KRITIS operators to use appropriate systems for attack detection (SzA). We advise you on the requirements of the BSI guidance and support you in implementing legally compliant systems.
The SzA Readiness Assessment evaluates your preparation for the requirements of the BSI guidance on the use of systems for attack detection (SzA). According to the IT Security Act, operators of critical infrastructures are obliged to take suitable organisational and technical precautions for the (early) detection of cyber attacks and to provide evidence of these to supervisory and testing authorities. The guidance describes specific criteria for logging, detection and response and provides a maturity model for assessing the level of implementation. As part of the assessment, a structured workshop is held to jointly analyse the extent to which your existing systems, processes and technical controls already meet the requirements of the guidance. Potential critical weaknesses, missing processes, documentation and technological gaps are identified and evaluated. On this basis, you work with the experts to develop a customised action plan (rollout plan) that contains prioritised action steps to fulfil the mandatory requirements and achieve the desired level of implementation. The assessment provides you with a reliable basis for decision-making: you recognise your level of maturity with regard to the SSA requirements, know which measures are required and can further develop your cyber detection expertise in a structured manner.
Benefits

Arrange an initial consultation