{"id":94652,"date":"2026-06-25T09:17:41","date_gmt":"2026-06-25T09:17:41","guid":{"rendered":"https:\/\/www.loginventory.de\/iso-27001-bsi-2\/"},"modified":"2026-08-13T10:41:03","modified_gmt":"2026-08-13T10:41:03","slug":"iso-27001-bsi","status":"publish","type":"page","link":"https:\/\/www.loginventory.de\/en\/iso-27001-bsi\/","title":{"rendered":"ISO 27001 &#038; BSI IT-Grundschutz"},"content":{"rendered":"\n<section class=\"lo-section-dark lo-hero\" style=\"padding: 5rem 0 4rem;\">\n\t<div class=\"container\">\n\t\t<div class=\"row align-items-center g-5\">\n\t\t\t<div class=\"col-lg-6\">\n\t\t\t\t<span class=\"lo-hero-meta\">Compliance<\/span>\n\t\t\t\t<h1 style=\"font-size: clamp(2rem, 4vw, 3.4rem);\"><span class=\"accent\">ISO 27001 &amp; BSI<\/span>: both hinge on a complete asset inventory.<\/h1>\n\t\t\t\t<p class=\"lead\">\n\t\t\t\t\tISO\/IEC 27001:2022 with its 93 Annex A controls and BSI IT-Grundschutz with its building-block\n\t\t\t\t\tconcept have substantial overlap. And a shared bottleneck. LOGINventory closes\n\t\t\t\t\tit agentlessly and audit-ready. What the software doesn&#8217;t do, we name just as clearly.\n\t\t\t\t<\/p>\n\t\t\t\t<div class=\"d-flex gap-3 flex-wrap\">\n\t\t\t\t\t<a class=\"btn btn-primary btn-lg\" href=\"https:\/\/www.loginventory.de\/en\/free-trial\/\">Start your trial license \u2192<\/a>\n\t\t\t\t\t<a class=\"btn btn-outline-light btn-lg\" href=\"https:\/\/www.loginventory.de\/en\/discovery-call\/\">Discovery call (15 min)<\/a>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\n\t\t\t<div class=\"col-lg-6\">\n\t\t\t\t<div class=\"app-frame\">\n\t\t\t\t\t<div class=\"titlebar\">\n\t\t\t\t\t\t<div class=\"lights\"><span><\/span><span><\/span><span><\/span><\/div>\n\t\t\t\t\t\t<span class=\"breadcrumb-mono\">loginventory.local \/ Compliance \/ Mapping<\/span>\n\t\t\t\t\t\t<span class=\"timestamp\">last_check: 09:47:12<\/span>\n\t\t\t\t\t<\/div>\n\t\t\t\t\t<div class=\"lo-table-scroll\"><table class=\"hero-table\">\n\t\t\t\t\t\t<thead>\n\t\t\t\t\t\t\t<tr>\n\t\t\t\t\t\t\t\t<th>Control<\/th>\n\t\t\t\t\t\t\t\t<th>BSI building block<\/th>\n\t\t\t\t\t\t\t\t<th>Delivers<\/th>\n\t\t\t\t\t\t\t<\/tr>\n\t\t\t\t\t\t<\/thead>\n\t\t\t\t\t\t<tbody>\n\t\t\t\t\t\t\t<tr><td>A.5.9 Asset register<\/td><td>OPS.1.1.1<\/td><td><span class=\"pill ok\">Reports<\/span><\/td><\/tr>\n\t\t\t\t\t\t\t<tr><td>A.5.18 Access rights<\/td><td>OPS.1.1.5<\/td><td><span class=\"pill ok\">Reports<\/span><\/td><\/tr>\n\t\t\t\t\t\t\t<tr><td>A.8.8 Vulnerabilities<\/td><td>OPS.1.1.3<\/td><td><span class=\"pill ok\">Cyber Insight<\/span><\/td><\/tr>\n\t\t\t\t\t\t\t<tr><td>A.8.9 Configuration Mgmt<\/td><td>OPS.1.1.3<\/td><td><span class=\"pill ok\">Reports<\/span><\/td><\/tr>\n\t\t\t\t\t\t\t<tr><td>A.8.32 Change Control<\/td><td>OPS.1.1.3<\/td><td><span class=\"pill ok\">Audit trail<\/span><\/td><\/tr>\n\t\t\t\t\t\t<\/tbody>\n\t\t\t\t\t<\/table><\/div>\n\t\t\t\t\t<div class=\"frame-footer\">\n\t\t\t\t\t\t<span>5 of 12 controls covered directly \u00b7 93 Annex A total<\/span>\n\t\t\t\t\t\t<span>\u21bb Auto-documentation runs daily<\/span>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t<\/div>\n\t<\/div>\n<\/section>\n\n\n\n<section style=\"padding: 5rem 0; background: #fff;\">\n\t<div class=\"container\">\n\t\t<div class=\"text-center mb-5\">\n\t\t\t<span class=\"lo-eyebrow\">What you get<\/span>\n\t\t\t<h2 style=\"font-size: clamp(1.8rem, 3vw, 2.4rem); max-width: 36ch; margin: 0 auto;\">\n\t\t\t\tThe ISMS building blocks that auditors almost always require.\n\t\t\t<\/h2>\n\t\t<\/div>\n\n\t\t<div class=\"row g-4\">\n\t\t\t<div class=\"col-md-4\">\n\t\t\t\t<div class=\"card kern-nutzen-card h-100\" style=\"border-radius: 8px; padding: 2rem; background: #fff; border: 1px solid var(--lo-grey-edge); box-shadow: 0 4px 20px rgba(217,217,217,0.5);\">\n\t\t\t\t\t<div style=\"width: 48px; height: 48px; border-radius: 8px; background: var(--lo-primary-dark); display: flex; align-items: center; justify-content: center; margin-bottom: 1.2rem;\">\n\t\t\t\t\t\t<svg width=\"24\" height=\"24\" viewBox=\"0 0 24 24\" fill=\"none\" stroke=\"#ffaa2e\" stroke-width=\"2\" stroke-linecap=\"round\" stroke-linejoin=\"round\" aria-hidden=\"true\"><path d=\"M3 3h18v18H3z\"\/><path d=\"M3 9h18\"\/><path d=\"M9 21V9\"\/><\/svg>\n\t\t\t\t\t<\/div>\n\t\t\t\t\t<h3 style=\"font-size: 1.2rem; margin-bottom: 0.5rem; color: var(--lo-primary-dark);\">Asset register<\/h3>\n\t\t\t\t\t<p style=\"font-weight: 500; margin-bottom: 0.8rem; color: var(--lo-text-deep); font-size: 0.95rem;\">A.5.9 \/ OPS.1.1.1.<\/p>\n\t\t\t\t\t<p style=\"font-size: 0.92rem; color: var(--lo-text-soft); margin: 0;\">\n\t\t\t\t\t\tComplete, well-maintained inventory. Clients, servers, switches, agentlessly. OPS.1.1.1\n\t\t\t\t\t\t(IT-Grundschutz-Kompendium, 2023 edition) explicitly recommends ITAM tools.\n\t\t\t\t\t<\/p>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"col-md-4\">\n\t\t\t\t<div class=\"card kern-nutzen-card h-100\" style=\"border-radius: 8px; padding: 2rem; background: #fff; border: 1px solid var(--lo-grey-edge); box-shadow: 0 4px 20px rgba(217,217,217,0.5);\">\n\t\t\t\t\t<div style=\"width: 48px; height: 48px; border-radius: 8px; background: var(--lo-primary-dark); display: flex; align-items: center; justify-content: center; margin-bottom: 1.2rem;\">\n\t\t\t\t\t\t<svg width=\"24\" height=\"24\" viewBox=\"0 0 24 24\" fill=\"none\" stroke=\"#ffaa2e\" stroke-width=\"2\" stroke-linecap=\"round\" stroke-linejoin=\"round\" aria-hidden=\"true\"><path d=\"M20 21v-2a4 4 0 0 0-4-4H8a4 4 0 0 0-4 4v2\"\/><circle cx=\"12\" cy=\"7\" r=\"4\"\/><\/svg>\n\t\t\t\t\t<\/div>\n\t\t\t\t\t<h3 style=\"font-size: 1.2rem; margin-bottom: 0.5rem; color: var(--lo-primary-dark);\">Permissions auditing<\/h3>\n\t\t\t\t\t<p style=\"font-weight: 500; margin-bottom: 0.8rem; color: var(--lo-text-deep); font-size: 0.95rem;\">A.5.18.<\/p>\n\t\t\t\t\t<p style=\"font-size: 0.92rem; color: var(--lo-text-soft); margin: 0;\">\n\t\t\t\t\t\tReports for access rights, user overview, AD groups. Resolved recursively.\n\t\t\t\t\t\tGDPR folders with permissions on shares, databases, partition encryption.\n\t\t\t\t\t<\/p>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"col-md-4\">\n\t\t\t\t<div class=\"card kern-nutzen-card h-100\" style=\"border-radius: 8px; padding: 2rem; background: #fff; border: 1px solid var(--lo-grey-edge); box-shadow: 0 4px 20px rgba(217,217,217,0.5);\">\n\t\t\t\t\t<div style=\"width: 48px; height: 48px; border-radius: 8px; background: var(--lo-primary-dark); display: flex; align-items: center; justify-content: center; margin-bottom: 1.2rem;\">\n\t\t\t\t\t\t<svg width=\"24\" height=\"24\" viewBox=\"0 0 24 24\" fill=\"none\" stroke=\"#ffaa2e\" stroke-width=\"2\" stroke-linecap=\"round\" stroke-linejoin=\"round\" aria-hidden=\"true\"><path d=\"M10.29 3.86 1.82 18a2 2 0 0 0 1.71 3h16.94a2 2 0 0 0 1.71-3L13.71 3.86a2 2 0 0 0-3.42 0z\"\/><line x1=\"12\" y1=\"9\" x2=\"12\" y2=\"13\"\/><line x1=\"12\" y1=\"17\" x2=\"12.01\" y2=\"17\"\/><\/svg>\n\t\t\t\t\t<\/div>\n\t\t\t\t\t<h3 style=\"font-size: 1.2rem; margin-bottom: 0.5rem; color: var(--lo-primary-dark);\">Vulnerability tracking<\/h3>\n\t\t\t\t\t<p style=\"font-weight: 500; margin-bottom: 0.8rem; color: var(--lo-text-deep); font-size: 0.95rem;\">A.8.8 \/ OPS.1.1.3.<\/p>\n\t\t\t\t\t<p style=\"font-size: 0.92rem; color: var(--lo-text-soft); margin: 0;\">\n\t\t\t\t\t\tDaily CVE matching with Cyber Insight from version 2025.2. Handling status per\n\t\t\t\t\t\tvulnerability documentable. The foundation auditors typically require.\n\t\t\t\t\t<\/p>\n\t\t\t\t\t<a href=\"https:\/\/www.loginventory.de\/en\/vulnerability-management\/\" style=\"font-weight: 500; color: var(--lo-primary-dark); font-size: 0.9rem; margin-top: 0.8rem; display: inline-block;\">Vulnerability module \u2192<\/a>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t<\/div>\n\t<\/div>\n<\/section>\n\n\n\n<section class=\"editorial-section\">\n\t<div class=\"container\">\n\t\t<span class=\"lo-eyebrow\">How it works<\/span>\n\t\t<h2 style=\"font-size: clamp(1.8rem, 3vw, 2.4rem); max-width: 36ch; margin-bottom: 3rem; color: var(--lo-primary-dark);\">\n\t\t\tTwo standards, one data foundation. The mapping table does the rest.\n\t\t<\/h2>\n\n\t\t<article class=\"article\">\n\t\t\t<aside class=\"article-meta\">\n\t\t\t\t<span class=\"label\">ISO\/IEC 27001:2022<\/span>\n\t\t\t\t<span class=\"value\">93 Annex A controls<\/span>\n\t\t\t\t<span class=\"label\">BSI IT-Grundschutz<\/span>\n\t\t\t\t<span class=\"value\">2023 edition, building-block concept<\/span>\n\t\t\t\t<span class=\"label\">BSIG (DE)<\/span>\n\t\t\t\t<span class=\"value\">December 6, 2025. Mandatory for federal agencies<\/span>\n\t\t\t\t<span class=\"label\">Authoritative Mapping<\/span>\n\t\t\t\t<span class=\"value\">BSI mapping table, edition 6 (PDF)<\/span>\n\t\t\t\t<span class=\"label\">Outlook<\/span>\n\t\t\t\t<span class=\"value\">IT-Grundschutz++ from 2026, transition until ~2029<\/span>\n\t\t\t<\/aside>\n\t\t\t<div class=\"article-body\">\n\t\t\t\t<h3>Certification is voluntary. And a de facto requirement.<\/h3>\n\t\t\t\t<p class=\"lead-para\">\n\t\t\t\t\tAn information security management system (ISMS) under <a href=\"https:\/\/www.iso.org\/standard\/27001\" target=\"_blank\" rel=\"noopener\" style=\"color: var(--lo-primary-dark); font-weight: 500;\">ISO 27001<\/a> is officially voluntary, but a de facto requirement for NIS2-regulated organizations,\n\t\t\t\t\tcritical infrastructure operators under \u00a78a BSIG, financial institutions (BAIT\/VAIT), and suppliers to large enterprise customers.\n\t\t\t\t\t<a href=\"https:\/\/www.bsi.bund.de\/DE\/Themen\/Unternehmen-und-Organisationen\/Standards-und-Zertifizierung\/IT-Grundschutz\/it-grundschutz_node.html\" target=\"_blank\" rel=\"noopener\" style=\"color: var(--lo-primary-dark); font-weight: 500;\">BSI IT-Grundschutz<\/a> has been mandatory for federal agencies since December 6, 2025. And a\n\t\t\t\t\trecognized security framework for everyone else.\n\t\t\t\t<\/p>\n\t\t\t\t<p>\n\t\t\t\t\tThe BSI provides an official mapping table that cross-references ISO 27001 controls and\n\t\t\t\t\tIT-Grundschutz building blocks. That&#8217;s the starting point for any parallel implementation. Anyone\n\t\t\t\t\tserving both standards collects evidence once. And maps it to both worlds via the table.\n\t\t\t\t\tIn IT-Grundschutz, the asset inventory also serves as the data foundation for the structure analysis.\n\t\t\t\t<\/p>\n\t\t\t\t<p class=\"article-kern\">ISO 27001 and NIS2 aren&#8217;t the same thing. NIS2 imposes additional requirements. Particularly\n\t\t\t\t\taround reporting timelines (24h \/ 72h \/ 1 month). An ISO certification doesn&#8217;t replace NIS2 compliance.\n\t\t\t\t<\/p>\n\t\t\t<\/div>\n\t\t<\/article>\n\t<\/div>\n<\/section>\n\n\n\n<section class=\"lo-section-darker\" style=\"padding: 5rem 0;\">\n\t<div class=\"container\">\n\t\t<div class=\"row mb-4\">\n\t\t\t<div class=\"col-lg-8\">\n\t\t\t\t<span class=\"lo-eyebrow orange\">Which controls we cover<\/span>\n\t\t\t\t<h2 style=\"font-size: clamp(1.8rem, 3vw, 2.4rem); color: #fff; max-width: 36ch; letter-spacing: -0.015em;\">\n\t\t\t\t\tAnnex A controls directly, plus DER.4 for emergency management.\n\t\t\t\t<\/h2>\n\t\t\t<\/div>\n\t\t<\/div>\n\n\t\t<div class=\"row g-4 mt-3\">\n\t\t\t<div class=\"col-md-6 col-lg-4\">\n\t\t\t\t<div style=\"border: 1px solid rgba(255,255,255,.15); border-radius: 8px; padding: 1.6rem; background: rgba(255,255,255,.03); height: 100%;\">\n\t\t\t\t\t<div style=\"font-family: 'JetBrains Mono', monospace; color: var(--lo-accent-orange); font-size: 0.85rem; margin-bottom: 0.6rem;\">A.5.9 \/ OPS.1.1.1<\/div>\n\t\t\t\t\t<div style=\"color: #fff; font-size: 0.95rem; font-weight: 500; margin-bottom: 0.4rem;\">Asset register<\/div>\n\t\t\t\t\t<p style=\"color: rgba(255,255,255,.85); font-size: 0.9rem; margin: 0;\">Complete, well-maintained inventory. Clients, servers, switches, agentlessly. Even decommissioned devices stay traceable in the archive.<\/p>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"col-md-6 col-lg-4\">\n\t\t\t\t<div style=\"border: 1px solid rgba(255,255,255,.15); border-radius: 8px; padding: 1.6rem; background: rgba(255,255,255,.03); height: 100%;\">\n\t\t\t\t\t<div style=\"font-family: 'JetBrains Mono', monospace; color: var(--lo-accent-orange); font-size: 0.85rem; margin-bottom: 0.6rem;\">A.5.18 \/ OPS.1.1.5<\/div>\n\t\t\t\t\t<div style=\"color: #fff; font-size: 0.95rem; font-weight: 500; margin-bottom: 0.4rem;\">Access rights<\/div>\n\t\t\t\t\t<p style=\"color: rgba(255,255,255,.85); font-size: 0.9rem; margin: 0;\">The &#8220;User Access Rights&#8221;, &#8220;User Overview&#8221;, and &#8220;Group Overview&#8221; reports, with AD groups resolved recursively, plus a 4-role model for LOGINventory itself.<\/p>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"col-md-6 col-lg-4\">\n\t\t\t\t<div style=\"border: 1px solid rgba(255,255,255,.15); border-radius: 8px; padding: 1.6rem; background: rgba(255,255,255,.03); height: 100%;\">\n\t\t\t\t\t<div style=\"font-family: 'JetBrains Mono', monospace; color: var(--lo-accent-orange); font-size: 0.85rem; margin-bottom: 0.6rem;\">A.8.8 \/ OPS.1.1.3<\/div>\n\t\t\t\t\t<div style=\"color: #fff; font-size: 0.95rem; font-weight: 500; margin-bottom: 0.4rem;\">Vulnerability management<\/div>\n\t\t\t\t\t<p style=\"color: rgba(255,255,255,.85); font-size: 0.9rem; margin: 0;\">Cyber Insight integration from V2025.2. Daily CVE matching, criticality levels, documentable handling status.<\/p>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"col-md-6 col-lg-4\">\n\t\t\t\t<div style=\"border: 1px solid rgba(255,255,255,.15); border-radius: 8px; padding: 1.6rem; background: rgba(255,255,255,.03); height: 100%;\">\n\t\t\t\t\t<div style=\"font-family: 'JetBrains Mono', monospace; color: var(--lo-accent-orange); font-size: 0.85rem; margin-bottom: 0.6rem;\">A.8.9 \/ OPS.1.1.3<\/div>\n\t\t\t\t\t<div style=\"color: #fff; font-size: 0.95rem; font-weight: 500; margin-bottom: 0.4rem;\">Configuration Management<\/div>\n\t\t\t\t\t<p style=\"color: rgba(255,255,255,.85); font-size: 0.9rem; margin: 0;\">Client, server, and switch reports capture hardware, OS, network parameters, server roles, RAID, partitions, port assignments, VLANs.<\/p>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"col-md-6 col-lg-4\">\n\t\t\t\t<div style=\"border: 1px solid rgba(255,255,255,.15); border-radius: 8px; padding: 1.6rem; background: rgba(255,255,255,.03); height: 100%;\">\n\t\t\t\t\t<div style=\"font-family: 'JetBrains Mono', monospace; color: var(--lo-accent-orange); font-size: 0.85rem; margin-bottom: 0.6rem;\">A.8.32 \/ OPS.1.1.3<\/div>\n\t\t\t\t\t<div style=\"color: #fff; font-size: 0.95rem; font-weight: 500; margin-bottom: 0.4rem;\">Change Control<\/div>\n\t\t\t\t\t<p style=\"color: rgba(255,255,255,.85); font-size: 0.9rem; margin: 0;\">Change log active by default. &#8220;Changes&#8221; tab filterable by timestamp. Archived assets keep their history.<\/p>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"col-md-6 col-lg-4\">\n\t\t\t\t<div style=\"border: 1px solid rgba(255,255,255,.15); border-radius: 8px; padding: 1.6rem; background: rgba(255,255,255,.03); height: 100%;\">\n\t\t\t\t\t<div style=\"font-family: 'JetBrains Mono', monospace; color: var(--lo-accent-orange); font-size: 0.85rem; margin-bottom: 0.6rem;\">DER.4<\/div>\n\t\t\t\t\t<div style=\"color: #fff; font-size: 0.95rem; font-weight: 500; margin-bottom: 0.4rem;\">Emergency management<\/div>\n\t\t\t\t\t<p style=\"color: rgba(255,255,255,.85); font-size: 0.9rem; margin: 0;\">Built-in emergency manual based on the BSI template, as a dynamic document. All inventory data updates automatically when it&#8217;s opened.<\/p>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t<\/div>\n\n\t\t<div style=\"margin-top: 3rem; padding-top: 2rem; border-top: 1px solid rgba(255,255,255,.15);\">\n\t\t\t<div style=\"font-family: 'Ubuntu', sans-serif; font-weight: 700; font-size: 0.7rem; text-transform: uppercase; letter-spacing: 0.18em; color: rgba(255,255,255,.55); margin-bottom: 1rem;\">The ISO 27001 template. A template, not automation<\/div>\n\t\t\t<p style=\"color: rgba(255,255,255,.85); max-width: 80ch; margin: 0;\">\n\t\t\t\tLOGINventory includes a built-in table listing relevant ISO 27001 controls and how they can\n\t\t\t\tbe implemented with the software. This template must be <strong>filled in manually<\/strong>. No\n\t\t\t\tdata sources are connected. The template structures the compliance officer&#8217;s work;\n\t\t\t\tit replaces neither the substantive assessment nor the certification itself.\n\t\t\t<\/p>\n\t\t<\/div>\n\t<\/div>\n<\/section>\n\n\n\n<section style=\"padding: 5rem 0; background: var(--lo-grey-soft);\">\n\t<div class=\"container\">\n\t\t<span class=\"lo-eyebrow\">What we&#8217;re not<\/span>\n\t\t<h2 style=\"font-size: clamp(1.8rem, 3vw, 2.4rem); max-width: 32ch; margin-bottom: 2.5rem; color: var(--lo-primary-dark);\">\n\t\t\tA clear boundary. No ISMS, no SIEM, no penetration testing.\n\t\t<\/h2>\n\n\t\t<div class=\"row g-4\">\n\t\t\t<div class=\"col-md-6\">\n\t\t\t\t<div style=\"background: #fff; border-radius: 8px; padding: 1.8rem; border: 1px solid var(--lo-grey-edge); height: 100%;\">\n\t\t\t\t\t<div style=\"font-family: 'Ubuntu', sans-serif; font-weight: 700; font-size: 0.7rem; text-transform: uppercase; letter-spacing: 0.18em; color: var(--lo-text-soft); margin-bottom: 1rem;\">Not covered<\/div>\n\t\t\t\t\t<ul style=\"list-style: none; padding: 0; margin: 0;\">\n\t\t\t\t\t\t<li style=\"padding: 0.5rem 0; border-bottom: 1px solid var(--lo-grey-edge); display: flex; align-items: flex-start; gap: 0.6rem;\"><span style=\"color: #d83a3a; font-weight: 700;\">\u25cb<\/span><span style=\"color: var(--lo-text-deep); font-size: 0.95rem;\"><strong>No ISMS<\/strong>. No risk management process, no risk-based evidence documentation<\/span><\/li>\n\t\t\t\t\t\t<li style=\"padding: 0.5rem 0; border-bottom: 1px solid var(--lo-grey-edge); display: flex; align-items: flex-start; gap: 0.6rem;\"><span style=\"color: #d83a3a; font-weight: 700;\">\u25cb<\/span><span style=\"color: var(--lo-text-deep); font-size: 0.95rem;\"><strong>No risk assessment engine<\/strong><\/span><\/li>\n\t\t\t\t\t\t<li style=\"padding: 0.5rem 0; border-bottom: 1px solid var(--lo-grey-edge); display: flex; align-items: flex-start; gap: 0.6rem;\"><span style=\"color: #d83a3a; font-weight: 700;\">\u25cb<\/span><span style=\"color: var(--lo-text-deep); font-size: 0.95rem;\"><strong>No auto-fill<\/strong> for the ISO 27001 template. Manual only<\/span><\/li>\n\t\t\t\t\t\t<li style=\"padding: 0.5rem 0; display: flex; align-items: flex-start; gap: 0.6rem;\"><span style=\"color: #d83a3a; font-weight: 700;\">\u25cb<\/span><span style=\"color: var(--lo-text-deep); font-size: 0.95rem;\"><strong>No security monitoring<\/strong>, no SIEM, no SOC replacement<\/span><\/li>\n\t\t\t\t\t<\/ul>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<div class=\"col-md-6\">\n\t\t\t\t<div style=\"background: #fff; border-radius: 8px; padding: 1.8rem; border: 1px solid var(--lo-grey-edge); height: 100%;\">\n\t\t\t\t\t<div style=\"font-family: 'Ubuntu', sans-serif; font-weight: 700; font-size: 0.7rem; text-transform: uppercase; letter-spacing: 0.18em; color: var(--lo-text-soft); margin-bottom: 1rem;\">Also not<\/div>\n\t\t\t\t\t<ul style=\"list-style: none; padding: 0; margin: 0;\">\n\t\t\t\t\t\t<li style=\"padding: 0.5rem 0; border-bottom: 1px solid var(--lo-grey-edge); display: flex; align-items: flex-start; gap: 0.6rem;\"><span style=\"color: #d83a3a; font-weight: 700;\">\u25cb<\/span><span style=\"color: var(--lo-text-deep); font-size: 0.95rem;\"><strong>No penetration testing<\/strong><\/span><\/li>\n\t\t\t\t\t\t<li style=\"padding: 0.5rem 0; border-bottom: 1px solid var(--lo-grey-edge); display: flex; align-items: flex-start; gap: 0.6rem;\"><span style=\"color: #d83a3a; font-weight: 700;\">\u25cb<\/span><span style=\"color: var(--lo-text-deep); font-size: 0.95rem;\"><strong>No awareness training<\/strong> or training functions<\/span><\/li>\n\t\t\t\t\t\t<li style=\"padding: 0.5rem 0; display: flex; align-items: flex-start; gap: 0.6rem;\"><span style=\"color: #d83a3a; font-weight: 700;\">\u25cb<\/span><span style=\"color: var(--lo-text-deep); font-size: 0.95rem;\">LOGINventory is <strong>not itself certified to ISO 27001 or IT-Grundschutz<\/strong><\/span><\/li>\n\t\t\t\t\t<\/ul>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t<\/div>\n\t<\/div>\n<\/section>\n\n\n\n<section class=\"lo-section-dark\" style=\"padding: 5rem 0;\">\n\t<div class=\"container\">\n\t\t<div class=\"text-center\">\n\t\t\t<span class=\"lo-eyebrow on-dark\">Ways to get started<\/span>\n\t\t\t<h2>See LOGINventory in your own IT environment.<\/h2>\n\t\t\t<p class=\"lead mx-auto\" style=\"max-width: 56ch; color: rgba(255,255,255,.85); font-weight: 300;\">\n\t\t\t\tPick what fits your week. Every route is non-binding.\n\t\t\t<\/p>\n\t\t<\/div>\n\t\t<div class=\"cta-cards\">\n\t\t\t<div class=\"cta-card\">\n\t\t\t\t<div class=\"ix\">Trial license<\/div>\n\t\t\t\t<h3>30 days. Full feature set.<\/h3>\n\t\t\t\t<p>Full network size, all modules, no credit card. Setup in under 30 minutes.<\/p>\n\t\t\t\t<a class=\"btn-link-arrow\" href=\"\/en\/free-trial\/\">Request trial license \u2192<\/a>\n\t\t\t<\/div>\n\t\t\t<div class=\"cta-card\">\n\t\t\t\t<div class=\"ix\">Discovery call<\/div>\n\t\t\t\t<h3>15 minutes. With a technician.<\/h3>\n\t\t\t\t<p>You describe your environment: size, sites, what you want to solve. We tell you whether LOGINventory is the right tool for it.<\/p>\n\t\t\t\t<a class=\"btn-link-arrow\" href=\"\/en\/discovery-call\/\">Schedule a time \u2192<\/a>\n\t\t\t<\/div>\n\t\t\t<div class=\"cta-card\">\n\t\t\t\t<div class=\"ix\">Forever-Free<\/div>\n\t\t\t\t<h3>20 devices. No time limit.<\/h3>\n\t\t\t\t<p>Small environment? Lab? Personal project? Works without a contract, without a lead.<\/p>\n\t\t\t\t<a class=\"btn-link-arrow\" href=\"\/en\/download\/\">Download directly \u2192<\/a>\n\t\t\t<\/div>\n\t\t<\/div>\n\t<\/div>\n<\/section>\n\n\n","protected":false},"excerpt":{"rendered":"<p>Compliance ISO 27001 &amp; BSI: both hinge on a complete asset inventory. ISO\/IEC 27001:2022 with its 93 Annex A controls and BSI IT-Grundschutz with its building-block concept have substantial overlap.&hellip;<\/p>\n","protected":false},"author":0,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"page-redesign.php","meta":{"footnotes":""},"class_list":["post-94652","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/www.loginventory.de\/en\/wp-json\/wp\/v2\/pages\/94652","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.loginventory.de\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.loginventory.de\/en\/wp-json\/wp\/v2\/types\/page"}],"replies":[{"embeddable":true,"href":"https:\/\/www.loginventory.de\/en\/wp-json\/wp\/v2\/comments?post=94652"}],"version-history":[{"count":1,"href":"https:\/\/www.loginventory.de\/en\/wp-json\/wp\/v2\/pages\/94652\/revisions"}],"predecessor-version":[{"id":95139,"href":"https:\/\/www.loginventory.de\/en\/wp-json\/wp\/v2\/pages\/94652\/revisions\/95139"}],"wp:attachment":[{"href":"https:\/\/www.loginventory.de\/en\/wp-json\/wp\/v2\/media?parent=94652"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}