No RegistrationNo Contact FormIncl. Roadmap

IT Security for Everyone — No Matter Where You Start

From your first baseline check to a targeted roadmap — without your data as the price of admission.

Whether you're just getting started or leveling up: The Security Kompass shows you exactly where you stand — and gives you a clear roadmap to sustainably strengthen your organization's IT security. No registration, no contact form.

158
Checkpoints
105
Controls
11
Security Domains

Which standards do we assess against?

The Security Kompass maps your answers to established security frameworks

Available

Available
ISO 27001
International

The gold standard for information security management systems, recognized worldwide.

Available
NIS2
EU Directive

EU directive for cybersecurity in critical and important sectors — mandatory since 2024.

We're working on

Coming soon
BSI IT-Grundschutz
National (DE)

The German federal standard for systematic IT security in organizations.

Coming soon
VdS 10000
Sector standard

Practical information security standard specifically designed for SMEs.

Coming soon
CISIS12
National (DE)

12-step compliance model for municipalities and SMEs in the DACH region.

Coming soon
DORA
EU Regulation

EU regulation for digital operational resilience in the financial sector.

Coming soon
TISAX
Sector standard

Information security standard for the automotive supply chain.

Coming soon
BSI CyberRisikoCheck
National (DE)

Quick risk assessment for small and medium-sized enterprises.

Your starting point – tailored to your role

Choose your perspective and discover how Security Kompass supports you.

Value, not a sales pitch – Security Kompass at a glance

Everything available immediately – no registration, no paywall. Registration offers real benefits instead of trying to sell you something.

The complete Security Kompass

  • 158 questions across 11 security domains + SME Basis Check
  • Frameworks multi-mapping against 105 controls from ISO 27001 and NIS2
  • Instant traffic light assessment (High/Medium/Low)
  • Detailed compliance dashboard
  • Spider chart across all security domains
  • Analysis and recommendations per domain
  • Risk cost estimates in EUR based on FAIR model — personalized by industry and company size
  • No hidden costs

Optional with registration: Save progress permanently, continue later and upload evidence documents.

The 11 Security Domains

Each question is mapped to ISO 27001 and NIS2 – frameworks multi-mapping against 105 controls in total.

Risk Management & Governance

12 questions

Incident Management

12 questions

Business Continuity

10 questions

Supply Chain Security

10 questions

Network & Infrastructure Security

15 questions

Data Protection & Cryptography

12 questions

Access Control & Identity Management

12 questions

Physical Security

10 questions

HR Security & Awareness

10 questions

Asset Management

10 questions

Compliance & Audit

10 questions

That's why Security Kompass

FeatureSecurity KompassVdS Quick CheckBSI EPICCyberRisikoCheck
Without LoginWith Account
Price0 €0 €0 €0 €490–1,800 €
Quick Check (Checkpoints)2525293254
11 Domains (+133 Checkpoints)
Instant Report
Multi-Standard Mapping
No Registration
Compliance Dashboard
Company Profile
Evidence Upload
Expert SupportOptional (consulting package)Required (paid)

What your report looks like

Instantly understandable – even without IT background. With traffic light assessment per domain and frameworks multi-mapping.

Example: Spider chart across 11 security domains

Example Recommendation

Create Incident Response Plan

Define a structured incident response process with clear roles, escalation levels and communication paths. Prioritize completion within the next 30 days.

Traffic Light Assessment

Risk Management & Governance72 %
Access Control & Identity Management82 %
Incident Management25 %
Business Continuity30 %

Need budget for IT security? The report helps.

The Security Kompass report is designed so that executives without IT background understand results immediately. Use it as a basis for investment decisions and compliance evidence.

Privacy & Methodology

Risk assessment based on FAIR methodology, IBM Cost of Data Breach Report, and DLA Piper GDPR Survey — individualized through your company profile.

GDPR compliant. No data sharing with third parties. Servers in Germany.

Frameworks multi-mapping: ISO 27001 (93 controls), NIS2 (12).

Start your security assessment now

The Security Kompass guides you from the first quick check to a comprehensive compliance overview.