<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security &#8211; IT Kombinat</title>
	<atom:link href="https://itkombinat.com/category/security/feed/" rel="self" type="application/rss+xml" />
	<link>https://itkombinat.com</link>
	<description>The slightly different consulting company</description>
	<lastBuildDate>Fri, 14 Nov 2025 13:41:14 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://itkombinat.com/wp-content/uploads/cropped-logo-32x32.png</url>
	<title>Security &#8211; IT Kombinat</title>
	<link>https://itkombinat.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>German Bundestag passes NIS2 Implementation Act – Take the NIS2 Readiness Check now!</title>
		<link>https://itkombinat.com/german-bundestag-passes-nis2-implementation-act-take-the-nis2-readiness-check-now/</link>
		
		<dc:creator><![CDATA[Thomas Benz]]></dc:creator>
		<pubDate>Fri, 14 Nov 2025 12:43:23 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[NIS 2.0]]></category>
		<guid isPermaLink="false">https://itkombinat.com/?p=3153</guid>

					<description><![CDATA[On 13 November 2025, the German Bundestag passed the final ‘NIS 2 Implementation and Cybersecurity Strengthening Act’ (NIS2UmsuCG). This ends the uncertainty: the EU&#8217;s NIS 2 Directive is now binding German law. The 3 most important game changers in today&#8217;s decision: 1. Expanded scope of applicability: The focus is no longer solely on the traditional [&#8230;]]]></description>
										<content:encoded><![CDATA[
<figure class="wp-block-image size-full"><img fetchpriority="high" decoding="async" width="605" height="605" src="https://itkombinat.com/wp-content/uploads/NIS2-Frontmann-4.png" alt="" class="wp-image-3160" srcset="https://itkombinat.com/wp-content/uploads/NIS2-Frontmann-4.png 605w, https://itkombinat.com/wp-content/uploads/NIS2-Frontmann-4-560x560.png 560w, https://itkombinat.com/wp-content/uploads/NIS2-Frontmann-4-333x333.png 333w" sizes="(max-width: 605px) 100vw, 605px" /></figure>



<p>On 13 November 2025, the German Bundestag passed the final ‘NIS 2 Implementation and Cybersecurity Strengthening Act’ (NIS2UmsuCG). This ends the uncertainty: the EU&#8217;s NIS 2 Directive is now binding German law.</p>



<h3 class="wp-block-heading">The 3 most important game changers in today&#8217;s decision:</h3>



<h4 class="wp-block-heading">1. Expanded scope of applicability:</h4>



<h4 class="wp-block-heading">The focus is no longer solely on the traditional 2,000 or so ‘KRITIS’ operators. The categories ‘important’ (e.g. mechanical engineering, food production, chemicals) and ‘particularly important’ (e.g. energy, banking, health) facilities mean that the probability of <mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">your company</mark> (as one of a total of around 40,000) <mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">now being affected </mark>has increased massively.</h4>



<h4 class="wp-block-heading">2. Personal liability of management:</h4>



<h4 class="wp-block-heading"><mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">The management boards</mark> (managing directors, board members)<mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color"> are now personally responsible</mark> for the implementation (and non-compliance!) of cybersecurity measures. They must accept the measures and monitor their implementation. Violations are subject to heavy fines that can no longer simply be passed on to the company.</h4>



<h4 class="wp-block-heading">3. Stricter requirements &amp; deadlines:</h4>



<h4 class="wp-block-heading">It is no longer just a matter of having a firewall. <mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">NIS2 requires comprehensive risk management</mark> that covers the entire supply chain. In addition, the <mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">reporting requirements for security incidents are drastically reduced</mark> (often to 24 hours for an initial report).</h4>



<h3 class="wp-block-heading">What you should do <mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">now</mark>:</h3>



<h4 class="wp-block-heading">Those who have only been analysing the situation so far must <mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">now take action</mark>. <mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">NIS2 </mark>is not purely an IT issue; it <mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">is a strategic management issue</mark> that determines the resilience and future viability of companies.</h4>



<h4 class="wp-block-heading"><mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">Clarify whether you are affected:</mark> Does your company fall under the new regulations? If so, you will also have to meet the requirements of your customers/supply chains.</h4>



<h4 class="wp-block-heading"><mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">Perform a gap analysis</mark>: Where do you stand? Which of the required measures are missing?</h4>



<h4 class="wp-block-heading"><mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">Involve management: </mark>Top management must understand the new personal liability risks and release the necessary resources.</h4>



<h4 class="wp-block-heading"><mark style="background-color:rgba(0, 0, 0, 0)" class="has-inline-color has-primary-color">Create a roadmap:</mark> Develop a clear, prioritised plan to close security gaps and implement management processes.</h4>



<h3 class="wp-block-heading">Still not quite sure what exactly to do? Then we recommend our NIS2 Readiness Check:</h3>



<div class="wp-block-file"><a id="wp-block-file--media-5e63f928-9b25-4ef3-b7c1-950eeeaee610" href="https://itkombinat.com/wp-content/uploads/NIS2_Readiness_Check_Onepager_IT_Kombinat-2.pdf">NIS2_Readiness_Check_Onepager_IT_Kombinat</a><a href="https://itkombinat.com/wp-content/uploads/NIS2_Readiness_Check_Onepager_IT_Kombinat-2.pdf" class="wp-block-file__button wp-element-button" download aria-describedby="wp-block-file--media-5e63f928-9b25-4ef3-b7c1-950eeeaee610">Download</a></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Information Security Directive NIS2 and its impact on SMEs – a seminar for members of the BVMW Wirtschaftssenat</title>
		<link>https://itkombinat.com/information-security-directive-nis2-and-its-impact-on-smes-a-seminar-for-members-of-the-bvmw-wirtschaftssenat/</link>
		
		<dc:creator><![CDATA[Thomas Benz]]></dc:creator>
		<pubDate>Thu, 01 Feb 2024 12:28:03 +0000</pubDate>
				<category><![CDATA[Cyber security]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Operation Technology (OT) Security]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[ITLeadership]]></category>
		<category><![CDATA[ITSecurity]]></category>
		<category><![CDATA[NIS2]]></category>
		<category><![CDATA[OTSecurity]]></category>
		<guid isPermaLink="false">https://itkombinat.com/?p=1456</guid>

					<description><![CDATA[The offices of IT Kombinat were the location for an engaging seminar on the topic of the Network &#38; Information Security Directive2 (NIS2) yesterday. Many thanks to Mr Herbert Schulte, Director of the Wirtschaftssenat for organising the event in partnership with IT Kombinat! Expanding on the scope of NIS1, NIS2 aims to further strengthen critical [&#8230;]]]></description>
										<content:encoded><![CDATA[
<p>  </p>



<p></p>



<figure class="wp-block-image size-full"><img decoding="async" width="1148" height="846" src="https://itkombinat.com/wp-content/uploads/BVMW-NIS2-Main.png" alt="" class="wp-image-1457" srcset="https://itkombinat.com/wp-content/uploads//BVMW-NIS2-Main.png 1148w, https://itkombinat.com/wp-content/uploads//BVMW-NIS2-Main-560x413.png 560w, https://itkombinat.com/wp-content/uploads//BVMW-NIS2-Main-768x566.png 768w, https://itkombinat.com/wp-content/uploads//BVMW-NIS2-Main-1120x825.png 1120w" sizes="(max-width: 1148px) 100vw, 1148px" /></figure>



<p></p>



<p>The offices of IT Kombinat were the location for an engaging seminar on the topic of the Network &amp; Information Security Directive2 (<a href="https://nis2directive.eu/what-is-nis2/">NIS2</a>) yesterday. Many thanks to Mr Herbert Schulte, Director of the Wirtschaftssenat for organising the event in partnership with <a href="http://itkombinat.com">IT Kombinat</a>!<br><br>Expanding on the scope of NIS1, NIS2 aims to further strengthen critical infrastructure and essential services within the EU. This should be achieved by requiring companies providing these services to implement appropriate security measures and to rapidly reportany incidents to the appropriate authorities (in Germany the <a href="https://www.bsi.bund.de/DE/Home/home_node.html">BSI</a>).<br></p>



<figure class="wp-block-image size-full"><img decoding="async" width="703" height="425" src="https://itkombinat.com/wp-content/uploads/BVMW-NIS2-1.jpg" alt="" class="wp-image-1458" srcset="https://itkombinat.com/wp-content/uploads//BVMW-NIS2-1.jpg 703w, https://itkombinat.com/wp-content/uploads//BVMW-NIS2-1-560x339.jpg 560w" sizes="(max-width: 703px) 100vw, 703px" /></figure>



<p>Bernhard Borsch, our Information Security specialist and co-founder presented a high-level perspective of NIS2, its scope, and enforcement guidelines. He also outlined the benefits of a business-centric approach to information security and the utility of a general Information Security Management System (<a href="https://en.wikipedia.org/wiki/Information_security_management">ISMS</a>) which encompasses many of the NIS2 requirements<em>.</em></p>



<p>An active and informative Q&amp;A session followed, with the attendees sharing their experiences of navigating security regulations and discussing the difficulties of recruiting and retaining good information security professionals. SMEs rarely have the resources to launch large security initiatives as some larger companies do, and the challenge of monitoring systems, diagnosing issues, analysing logs, fixing issues and informing authorities can seem daunting. Through his years of IT and OT security experience, Bernhard Borsch  was able to provide pragmatic and right-sized guidance</p>



<p>One significant area of discussion was Operation Technology security (OT security), which is a focus of NIS2. OT has traditionally not been within the remit of Information Security teams as these systems (e.g. production lines) operated only within their own networks. With the growth of Industry4.0 and other applications for operative system data, OT systems are increasingly connected to other networks and are thus vulnerable to attack. </p>



<p></p>



<figure class="wp-block-image size-full"><img decoding="async" width="697" height="469" src="https://itkombinat.com/wp-content/uploads/BVMW-NIS2-2.jpg" alt="" class="wp-image-1459" srcset="https://itkombinat.com/wp-content/uploads//BVMW-NIS2-2.jpg 697w, https://itkombinat.com/wp-content/uploads//BVMW-NIS2-2-560x377.jpg 560w" sizes="(max-width: 697px) 100vw, 697px" /></figure>



<p>We hope all attendees left the event well refreshed and well informed<em>. </em>We look forward to the next even with our Partner <a href="https://www.bvmw.de/">BVMW</a> and thank all involved for their time and attention.<br><br><br>Check the teaser slide set below or <a href="https://itkombinat.com/contact/">contact us</a> for additional information!</p>



<div class="wp-block-file"><a id="wp-block-file--media-27ba330c-e9f4-45c3-9a1b-2919ae6e7d40" href="https://itkombinat.com/wp-content/uploads/2024-01-31-BVMW-NIS2-Teaser-1.pdf">2024-01-31-BVMW-NIS2-Teaser-1</a><a href="https://itkombinat.com/wp-content/uploads/2024-01-31-BVMW-NIS2-Teaser-1.pdf" class="wp-block-file__button wp-element-button" download aria-describedby="wp-block-file--media-27ba330c-e9f4-45c3-9a1b-2919ae6e7d40">Download</a></div>



<p></p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
