Skip to main content

Blog

Latest articles on information security, compliance and GRC

General6 min read

The 5 Best NIS2 Tools from Germany for 2026

NIS2 tools from Germany compared: fuentis, DataGuard, secjur, Proliance 360 and HiScout, assessed against the four BSIG obligations.

Srdan ManasijevicSrdan Manasijevic
General5 min read

The 5 Best TISAX® Tools from Germany for 2026

Five TISAX® tools from Germany compared: TISAX relevance according to the vendor, integration and selection criteria for preparing a TISAX assessment.

Srdan ManasijevicSrdan Manasijevic
General4 min read

The Top 5 BCM Tools from Germany for 2026

Discover the top 5 BCM tools from Germany for 2026, helping organisations with business continuity management and IT emergency management under BSI Standard 200-4 and ISO 22301.

Srdan ManasijevicSrdan Manasijevic
ISO2700110 min read

Who Needs ISO 27001 Certification? 2026 Guide

The NIS2 Implementation Act has been in force since 6 December 2025, but it does not require ISO 27001 certification. This guide shows where obligations actually exist and when certification is worth pursuing voluntarily.

Srdan ManasijevicSrdan Manasijevic
TISAX6 min read

ISO 27001 vs. TISAX®: The Ultimate Comparison for 2025

ISO 27001 or TISAX® - which standard is right for your company? Learn the crucial differences, commonalities, and when you need both standards.

Srdan ManasijevicSrdan Manasijevic
KRITIS6 min read

KRITIS in the Compliance Jungle: Successfully Leveraging Synergies Between Laws and Standards

Navigate the compliance jungle: Leverage legal and standard synergies to make KRITIS efficient and secure.

Srdan ManasijevicSrdan Manasijevic
NIS27 min read

NIS2 Reporting Obligations Since December 2025: What Companies Need to Know Now

Since 6 December 2025, a four-stage reporting procedure under Section 32 BSIG applies: 24 hours, 72 hours, interim report, final report. Deadlines, who is affected, and how to prepare.

Srdan ManasijevicSrdan Manasijevic
IT-Grundschutz4 min read

IT-Grundschutz++ 2025: The Revolutionary Path to Measurable Cybersecurity

Measurable CIA metrics instead of checklists, 5-tier system for all company sizes, and continuous GitHub-based development. Learn how the BSI introduces the paradigm shift from static to dynamic security with this framework.

fuentis Teamfuentis Team
ISO270015 min read

What is the PDCA Cycle? The Complete Guide for ISO 27001 & BSI IT-Grundschutz

The PDCA cycle forms the methodological foundation for continuous improvement in ISO 27001 and BSI IT-Grundschutz. Learn how this iterative four-step approach systematically optimizes your information security and creates a culture of continuous development.

Srdan ManasijevicSrdan Manasijevic
NIS25 min read

Are Your Service Providers Secure? The Value of Strong Third-Party Risk Management

Are your service providers secure? Third-party vendors are increasingly at the center of cyber incidents. Learn why strong third-party risk management is essential and how organisations can evaluate, document and control supplier risks effectively.

fuentis Teamfuentis Team
General9 min read

What is ISO 42001? The First International Standard for AI Management Systems

ISO 42001 is the world's first certifiable standard for AI management systems. Learn how it helps organizations use AI responsibly, manage risks, ensure transparency, and comply with regulations like the EU AI Act and GDPR.

Srdan ManasijevicSrdan Manasijevic
General4 min read

Does NIS2 Apply to You? Overview with Infographic

Does NIS2 apply to your organisation? With the new EU directive, cybersecurity becomes mandatory for more sectors than ever. This overview explains criteria, affected industries, exceptions and how to determine your NIS2 status.

Srdan ManasijevicSrdan Manasijevic
1 / 5Next