01
Grundschutz and TISAX are not in the catalogue
ISMS.online carries eleven standards, and neither BSI IT-Grundschutz nor TISAX is among them. For a supplier to the German public sector or to the automotive industry, that is not a gap in breadth but a missing obligation, and it has to be met somewhere outside the platform.
02
DSGVO the way German authorities read it
A GDPR module built for a general European audience and German enforcement practice are not the same thing. KaitoSec is designed against what German supervisory authorities ask for, from the RoPA structure through the TOMs to the deletion concept, and NIS2 follows the German implementation law rather than the directive alone.
03
German-speaking advisory next to the method
ISMS.online guides implementation with its Assured Results Method and a virtual coach. KaitoSec offers German-speaking advisers who have been through Grundschutz audits and ISO 27001 certifications with DACH organisations, booked as a named mandate rather than bundled into the subscription.
04
Four management systems on one data model
ISMS.online supports many frameworks side by side. KaitoSec runs BCMS, ISMS, DSMS and AIMS as one system on one data model: a control implemented once feeds every active framework, the same asset register feeds the BIA and the RoPA, and one management review covers all four.