Skip to content
Marketing Factory Digital GmbH
Contact
Logo Marketing Factory Digital GmbH
  • Agency
    • About us
    • History
  • Services
    • Consulting, Analysis and Strategy
    • Programming and Development
      • Interface Development
      • PIM/ERP Links
      • Custom Development
      • Seamless CMS Integration
    • Hosting and Support
      • Cloud Strategies
      • Hosting Partners of Marketing Factory
    • Services with Third Parties
  • Technology
    • TYPO3
      • Current TYPO3 Versions
    • Shopware
    • IT Security
      • DDoS Protection
      • Continuous Upgrading
      • Privacy First
    • Tech Stack
      • Commitment to Open Source
      • Technology Selection
      • PHP Ecosystem
      • Containerisation & Clustering
      • Content Delivery Networks
      • Search Technologies
  • References
    • Projects
    • Clients
      • Client List
    • Screenshot of the homepage of the new Maxion Wheels websiteNEW: Relaunch of the corporate website of Maxion Wheels
  • Community
    • Community Initiatives
  • Blog
  • Contact
  • Deutsch
  • English

You are here:

  1. Blog
  2. Part 1: The new German IT Security Act
Code screenshot
  • Legal issues
  • Security
28.11.2017

Part 1: The new German IT Security Act


  • Part 1: The new German IT Security Act
  • Part 2: IT Compliance in cooperation with the agency
  • Part 3: How to implement the measures correctly

The new German IT Security Act

The IT Security Act came into force in July 2015, which is intended to help increase the security of information technology systems. The law came about as a result of the cyber security strategy for Germany adopted in June 2011. Website operators now had 2 years to adapt their applications to the new regulations.

 

The NIS Directive for EU Member States

In June of this year, the European Network and Information Security Directive (NIS Directive) was also passed at European level. This defines the measures to ensure a high common level of security for network and information systems in the European Union. The EU member states now have until the end of May 2018 to convert the directive into national law.

The IT Security Act, which came into force in June 2015, already covers most of the measures to be taken in Germany.

Who is affected by the new law?

The IT Security Act basically affects all website operators.

 

But what exactly is behind the law and what do website operators have to pay attention to?

As part of the law, the requirements for websites have been tightened in the first place. In principle, the law obliges all those affected to comply with a minimum of defined safety aspects. Various technical and organizational measures must be taken for this.

 

The IT Security Act introduces the legal obligation to carry out software updates.

Website operators are obliged to keep their systems up to date with the latest technology and to regularly monitor possible problems and security gaps. Prompt software updates and the rapid import of security and maintenance patches are therefore future requirements.

Companies are obliged to protect their systems against cyber attacks.

When the new regulations come into force, operators of websites, web shops and other web applications have to take various measures to prevent unauthorized access to IT systems and data and prevent disruptions.

Companies that fail to comply with the new regulations face high fines.

A new reporting obligation has also been introduced, which obliges operators of digital services to report any security incidents to the Federal Ministry for Information Security (BSI). The BSI, on the other hand, undertakes to inform all operators about the reported incidents in an annual status report.


In the next part we will tell you everything about the topic of IT compliance: what is behind the term and what benefits can you derive from mature IT compliance in your company?

Luisa Sofie Faßbender
Get blog posts as RSS feed

All parts of this blog series

  1. Code screenshotPart 1: The new German IT Security Act
  2. Code screenshotPart 2: IT compliance in cooperation with the agency
  3. Code screenshotPart 3: How to implement the measures specifically in your company

Please feel free to share this article.


Comments

No comments yet.

Write a comment.

I have been informed that the processing of my data is on a voluntary basis and that I can refuse my consent without detrimental consequences for me or withdraw my consent at any time to Marketing Factory Digital GmbH by mail (Marienstraße 14, D-40212 Düsseldorf) or e-mail (info@marketing-factory.de).

I understand that the above data will be stored for as long as I wish to be contacted by Marketing Factory. After my revocation my data will be deleted. Further storage may take place in individual cases if this is required by law.

  • Data privacy policy
  • Legal notice

© Marketing Factory Digital GmbH

Picture Credits
  1. "Code screenshot": lmonk72 / License: Pixabay License (CC0 1.0)