KRITIS

KRITIS: The Critical Infrastructure Growth Spiral

8. August 2023

  

Critical infrastructures form the foundation of our modern society. They ensure the smooth functioning of a wide range of sectors and are essential for daily life. But how do these key facilities evolve over the years? To answer this question, our expert for IT security of critical infrastructures and KRITIS auditor Vinzent Ratermann sent a request to the German Federal Office for Information Technology (BSI) in June this year asking for information on the number of registered installations of critical infrastructure operators.

Vinzent Ratermann, KRITIS-Auditor, usd AG
Vinzent Ratermann

Significant increase in KRITIS facilities

If we compare this data from 2020 with that from 2022, we quickly see that more and more companies are qualifying as critical infrastructure operators and that the topic of critical infrastructure is thus becoming increasingly important:

Registered facilities of critical infrastructure operators by sector

In each sector, more critical infrastructure operators were registered with the BSI in 2022 than two years earlier. The most significant increase was in the energy (+45%), food (+24%) and information technology and telecommunications (+23%) sectors. This can be attributed not least to the fact that the threshold values specified in the BSI Criticality Ordinance for each type of facility were revised downward in 2021. In the 3rd Ordinance amending the BSI Criticality Ordinance of March 2023, these thresholds have been lowered again. It can therefore be firmly assumed that the number of operators of critical infrastructures or facilities registered with the BSI will increase again.

Outlook

In an increasingly interconnected and digitized world, the security and reliability of critical facilities are critical. The challenges posed by cyberattacks, natural disasters and other potential threats make a comprehensive protection strategy necessary. We therefore welcome the efforts of companies and public authorities to work together to further strengthen the resilience of critical infrastructures to ensure smooth operations and the protection of our society.


Do you need assistance?

Do you have any questions or need support wih your KRITIS Audit? Contact us, we are happy to help. 

Also interesting:

DORA Countdown: One Month Left Until the Deadline

DORA Countdown: One Month Left Until the Deadline

DORA, the Digital Operational Resilience Act, will fully apply as of 17 January 2025. We have summarized everything you need to know about the EU regulation, preparation and best practices from our news blog.

Sunset of PCI DSS v4.0 on 31 December 2024: Get Ready!

Sunset of PCI DSS v4.0 on 31 December 2024: Get Ready!

PCI DSS v4.0: In March 2024, version 4.0 of the Payment Card Industry Data Security Standard became mandatory after a two-year transition phase. Just a few months later, version 4.0.1 was released as a minor update of the standard, which will become mandatory on...

Top 3 Vulnerabilities in SSO Pentests

Top 3 Vulnerabilities in SSO Pentests

During their penetration tests (pentests), our security analysts at usd HeroLab repeatedly uncover vulnerabilities that pose significant risks to corporate security. They increasingly encounter the same vulnerabilities. Our blog series "Top 3 Vulnerabilities" presents...

Categories

Categories