Back

Dessau-Roßlau

The city administration of Dessau-Roßlau offers various services and services for citizens and, as an institution of local government, is part of the public sector. It is therefore part of the critical infrastructure.

Industry
Public sector
KRITIS
Location
Dessau-Roßlau, Saxony-Anhalt
Employees
500 to 1,000
Compliance frameworks
Basic IT protection
Athereon GRC modules
ISMS
Share success story
Do you want your company's success story to be next?
Get demo

Ergebnis im Überblick

Challenge

High requirements for critical infrastructure

Due to the great importance of public administration and the extremely sensitive data it processes, city administrations and their related bodies (such as emergency services and offices) are subject to particularly high requirements for information security and business continuity management. The goal for the city administration of Dessau-Roßlau was therefore to set up a reliable ISMS in accordance with BSI basic IT protection. Particular attention had to be paid to analyzing and documenting the complex organizational structures in order to create transparency and clarity. Despite networking with each other, it was necessary to optimize the functional management of individual information networks for administration, offices and emergency services, for example. Standardised reports had to be prepared for management and supervision in order to standardize.

Overall, the customer focused on the high standards of information security and the provision of a reliable software solution.

Solution

Complete solution from Germany

For the structure according to basic IT protection, Athereon GRC pursues the strategy of direct modeling of components and authentic documentation of organizational values, including hierarchical dependencies. Athereon GRC document management uses appropriate modules to manage all ISMS-relevant documents, guidelines and templates, including direct links. Athereon GRC audit management is used to support external audits and pentests. In addition, the customer now has the option of automatically creating A-reports in accordance with BSI requirements.

Athereon GRC is developed and deployed entirely in Germany and meets all BSI ITG requirements.

Result

Less effort, easy documentation

Thanks to the implementation of basic IT protection with an individual solution from Athereon GRC, there was a significant reduction in expenditure on information security management for the city administration. Simple reporting benefits communication with all stakeholders and regulatory authorities. As a result, more and more organizational areas can be managed with Athereon GRC.

"Working with Athereon GRC was very straightforward, both during project implementation and ongoing use. There was always a competent contact person available. Any issues that arose were resolved promptly after reporting, and questions about specific Athereon GRC features were always answered quickly. Furthermore, ideas for new features or suggestions for improvements are received with great interest and then published in a future release.

We've come to value the unbureaucratic, customer-focused collaboration as our greatest advantage and strength, something we sometimes miss with other providers. We also particularly like the videos on Athereon GRC that have been published recently.

The Athereon GRC product can definitely be recommended for public sector administrations of our size."

Gunnar Herbst
Information Security Officer

Would you like to learn more?

Book a noncommittal demo appointment with our team to analyze your individual use case with us.

Leading Organizations Rely on Us

a woman shaking hands with another woman

Do career in compliance

Vereinbaren Sie einen unverbindlichen Demo-Termin mit unserem Team, um gemeinsam Ihren individuellen Anwendungsfall zu analysieren.