BSI IT-Grundschutz
What is BSI IT-Grundschutz?
German Federal Office for Information Security baseline protection. It comprises 55 controls organised across 15 domains, and applies in Germany.
How BSI IT-Grundschutz maps to other frameworks
All 55 controls, each one mapped to the equivalent requirement in other standards, with the evidence that carries across and the mappings that were judged and rejected shown alongside. No account needed to look.
See the control mappings →The 15 domains BSI IT-Grundschutz groups its controls into
Where BSI IT-Grundschutz overlaps with the standards you already hold
What BSI IT-Grundschutz means in your sector
What BSI IT-Grundschutz means for your job
Questions people ask about BSI IT-Grundschutz
What is BSI IT-Grundschutz?
How many controls does BSI IT-Grundschutz have?
Where does BSI IT-Grundschutz apply?
What frameworks does BSI IT-Grundschutz map to?
How do I get started with BSI IT-Grundschutz compliance?
Query BSI IT-Grundschutz programmatically
BSI IT-Grundschutz, its 55 controls and every mapping into other standards are available over a REST endpoint and an MCP server, so an agent can read them directly. The free tier is 10 calls a day and needs no signup.
BSI IT-Grundschutz API reference and MCP config →What BSI IT-Grundschutz requires, control by control
Each page carries the requirement text for one BSI IT-Grundschutz control and what an assessor expects to see as evidence.
- BSI-01 Account management and provisioning
- BSI-02 Access enforcement and least privilege
- BSI-03 Multi-factor authentication requirements
- BSI-04 Remote access controls
- BSI-05 Wireless access restrictions
- BSI-08 Cryptographic protection of data
- BSI-13 Risk assessment procedures
- BSI-14 Vulnerability scanning and management
- BSI-15 Security categorization
- BSI-16 Threat intelligence integration
How ready are you for BSI IT-Grundschutz?
Answer 25 questions and get a professional readiness report with gap analysis, maturity scores, and prioritised action items. Results in 5 minutes.