01
WIBA: the road into Basis-Absicherung
The complete BSI WIBA questionnaire lives in the tool. Every answer is mapped to the matching requirements of the Grundschutz compendium and creates the data base for everything that follows.
Municipalities, cities and districts
KaitoSec brings the WIBA questionnaire, the municipal IT-Grundschutz profile and the Grundschutz compendium together in one data model. What you answer for WIBA feeds Basis-Absicherung; what you implement there carries through to Grundschutz++.
The municipal offer
The starting point
Attacks on local government have become routine, cyber insurers ask for evidence, and NIS2 plus sector-specific standards are closing in on municipal utilities. The information security officer role usually remains a side duty next to day-to-day work.
The BSI has built graded entry points: WIBA for the first steps, the municipal IT-Grundschutz profile as a proven scope, Basis- and Standard-Absicherung above it. What has been missing is a tool that connects these stages instead of opening a new project for each one.
The path
Each stage continues on the data of the previous one. No answer is entered twice, no result ends up in a binder.
01
The complete BSI WIBA questionnaire lives in the tool. Every answer is mapped to the matching requirements of the Grundschutz compendium and creates the data base for everything that follows.
02
The Grundschutz profile for municipal administrations serves as the template for your information domain: adopt the module scope, adapt it to your own specialised procedures, derive the audit plan.
03
Modelling, the IT-Grundschutz check, risk analysis under BSI standard 200-3, treatment planning and reports run in the same tool, without a consulting project alongside.
04
Catalogues and evidence are OSCAL-based and machine-readable. When the machine-readable Grundschutz arrives, you carry your data forward instead of re-entering it.
Catalogues
The catalogues are linked: one implemented requirement proves itself in every standard that contains it.
WIBA
The complete questionnaire, every question mapped to Grundschutz requirements.
PROFILE
The proven module scope for municipal administrations as the starting point for modelling.
BSI GS
Compendium, modelling, Grundschutz check and risk analysis under BSI standards 200-1 to 200-3.
G++
OSCAL-native catalogues and exports, prepared for the coming machine-readable Grundschutz.
B3S
The sector-specific security standard for municipal waste utilities, in the same set of controls.
NIS2
Operator duties of municipal companies, mapped onto the same controls instead of maintained separately.
Our contribution to Germany as a cyber nation
Security across the country rarely fails for lack of will. It fails on procurement procedures, operating costs and missing exchange. The municipal offer addresses these three points.
01
Every tier stays below the value limits for a direct award. You procure without a tender procedure and receive the full product, not a reduced municipal edition.
02
Running KaitoSec in your own or a municipal data centre is standard, not a surcharge. The installation is deliberately kept simple, because we know from experience that operations otherwise break the budget.
03
Once a month, a cyber security consultant from the pool works with you on the state of your implementation. In the same circle, municipalities connect with each other, so knowledge spreads across the country.
Before, after
The same standard, a different operating model.
Questions from municipalities
Next step
Bring your current state: WIBA started, profile planned, or right at the beginning. We show you on your concrete case what the entry looks like, what it costs and how direct-award procurement runs.