Implement IT-Grundschutz in a structured way, from start to full protection
From structure analysis through the modules to the Grundschutz check: isidaten runs BSI IT-Grundschutz in one place and is itself listed as an IT-Grundschutz tool.
What BSI IT-Grundschutz requires
The BSI IT-Grundschutz is a module-based path to appropriate information security, widespread in the public sector and among critical infrastructure. Structure analysis, protection-needs assessment, modeling with modules, the Grundschutz check and, for high protection needs, the risk analysis interlock. The entry point is the path to basic protection. The effort lies in keeping the IT network, requirements and evidence consistent over time.
How isidaten maps BSI IT-Grundschutz
Each requirement meets a module that runs on the same object base as the risk register, so the evidence stays connected instead of copied across tools.
IT network and structure analysis
Capture objects, applications and owners, the basis of every modeling step.
View module: IT Asset ManagementProtection needs and risk
Determine protection needs and, where high, follow up with the risk analysis.
View module: Risk RegisterModules and Grundschutz check
Check the module requirements as target versus actual and track the implementation status.
View module: ChecklistsSecurity concept and policies
Maintain and approve the security concept and its policies centrally.
View module: Policy ManagementReview and evidence
Run the Grundschutz check and internal reviews with findings and evidence.
View module: Audit ManagementEmergency management
Cover the emergency-management module, from plans through recovery to exercises.
View module: Emergency Management (BCM)Frequently asked questions
What is WiBA?
The path to basic protection is the BSI low-threshold entry into IT-Grundschutz, with checklist questions instead of full module modeling. isidaten supports this entry and the later expansion.
Is isidaten listed as an IT-Grundschutz tool?
Yes. isidaten is listed as an IT-Grundschutz tool. See our news for details.
Is the tool enough for an attestation or certificate?
The tool runs IT-Grundschutz and provides the evidence. An attestation or an ISO 27001 certificate based on IT-Grundschutz is granted by a recognized body.
How do basic, standard and core protection differ?
Basic protection covers broadly and quickly, standard protection comprehensively, core protection focuses on the most valuable objects. isidaten supports whichever path fits.
Ready to simplify your compliance?
Schedule a no-obligation demo and experience isidaten with your own use cases – personally and without commitment.