Product
secunet monitor KRITIS

Intrusion detection system for KRITIS companies

Detect cyberattacks reliably and in good time
secunet monitor KRITIS is the passive and non-reactive monitoring solution for signature-based attack detection at network and system level (NIDS and SIEM functionality) in accordance with current and future regulations.

Compliant with regulatory requirements  

secunet monitor KRITIS is aimed at KRITIS companies and implements all the technical MANDATORY requirements of the BSI guidance on the use of attack detection systems - both at network level for monitoring the data transmitted in IT/OT networks and at system level for monitoring the logging data of individual application systems. In practice, secunet monitor KRITIS compiles the data required for the transmission of reportable events to the BSI in addition to pure attack detection.

secunet monitor KRITIS focuses on legislation, can be used passively and without repercussions, is easy to integrate and operate - and is therefore probably the most comprehensive solution on the market for IT and OT infrastructures.

 

Two layers of attack detection

secunet monitor KRITIS combines the detection mechanisms of both the network and the system layer. Data is compared against existing patterns and processed for alerting and further analysis.

The system level uses log data from various IT and OT systems. This log and logging data is continuously aggregated, monitored and evaluated in a central system (SIEM). In this way, potential security risks (e.g. also through behavior-based detection) can also be identified cost-effectively in this log and logging data and a responsible person can be alerted.

At network layer, a network-based IDS (NIDS) is used for analysis. The flow data is then evaluated almost in real time and the security-relevant event data is sent to a central repository.

Requirements for intrusion detection systems in accordance with IT-SiG 2.0 and guidance

Regulations

Paragraph 8a of the BSI Act (BSIG) obliges operators of critical infrastructures and companies in the special public interest to use systems for attack detection since May 1, 2023.

Requirements

Logging. Detection. Response. Attack detection systems must continuously detect security-relevant events by analyzing logged data and react appropriately.

Support

To support companies in implementing new legal requirements, the BSI published "Guidance on the use of attack detection systems" in September 2022.

Modular, easy to use and cost-efficient

Features

The system offers passive and non-reactive functionality in IT & OT, global whitelisting, real-time monitoring, installation and operational capability in airgapped environments and a log data sink with evaluation options.

Management

The system provides a management report for a transparent overview of important KPIs. The clear change log ensures secure documentation. secunet monitor KRITIS is optimized for MSS/SOCs and for self-administration.

Compliance

The system supports the reporting of security incidents to the BSI as well as audits and also integrates external signatures such as the BSI MISP feed. Current and future regulations are taken into account.

Consulting

In addition to providing the intrusion detection system, secunet also offers comprehensive consulting services for technical integration into the organizational processes of an ISMS (e.g. ISO/IEC 27001).

Related products and consulting services
secunet monitor KRITIS is just one component of the comprehensive portfolio
Contact request
Do you have any further questions about secunet monitor KRITIS?
Do you have any further questions about secunet monitor KRITIS?

Send us an inquiry via the contact form. We are looking forward to help you.

Produkt Manager
secunet Security Networks AG

Teamlead Customer Project Management
secunet Security Networks AG
Seite 1