Cybervize
Sector Coverage

Sectors OdySecure runs in

Regulated industries with their own NIS-2, DORA or KRITIS exposure. Per sector: the relevant obligations and the matching Cybervize building block.

Covered sectors

Each sector has its own obligation profile (NIS-2 annex, DORA, TISAX, BSI, MDR, § 391 SGB V). OdySecure, the security platform by Cybervize, maps these requirements together with the vCISO, interim CISO and assessment building blocks.

Regulated · Finance

Financial services

Banks, insurers, payment service providers, BaFin-regulated entities. First-hand experience with MaRisk, BAIT, VAIT, DORA and Bundesbank IT supervision.

  • DORA
  • BAIT
  • VAIT
  • MaRisk
  • Bundesbank audit
DORA and NIS-2 for financial services
Industry · Automotive

Automotive and suppliers

OEMs, Tier-1 and Tier-2 suppliers with TISAX requirements (contractual, not statutory), OT/IT convergence in production and supply-chain risk management under NIS-2 and ISO 27001. UN R155/R156 for type-approval relevant vehicle topics.

  • TISAX
  • NIS-2
  • Supply chain
  • UN R155
NIS-2 for automotive
KRITIS · Energy

Energy and grids

Electricity, gas, heat and hydrogen utilities in KRITIS scope. NIS-2 Annex I, B3S Energy, IT-Sicherheitskatalog (electricity/gas) and BSI IT-Grundschutz. Per-site OT maturity becomes comparable through the platform.

  • NIS-2 Annex I
  • KRITIS
  • B3S Energy
  • IT-Sicherheitskatalog
NIS-2 for energy
Regulated · Public

Public sector

Federal agencies, state authorities, municipal bodies and public enterprises. Experience with highly confidential projects, ISO and NIST and BSI IT-Grundschutz.

  • BSI Grundschutz
  • ISO 27001
  • NIST
  • VS-NfD
Book a cybersecurity assessment

No dedicated sector page. Entry via the assessment.

Industry · Machinery

Mechanical engineering and industrial goods

Classic mid-market sectors with OT/IT convergence in production, supply-chain pressure from enterprise audits and rising threat exposure. NIS-2 Annex II plus Cyber Resilience Act for connected products.

  • NIS-2 Annex II
  • OT/IT convergence
  • CRA
  • ISO 27001
NIS-2 for mechanical engineering
Tech · MSP

IT service providers and MSPs

Managed service providers and managed security service providers are listed in Anlage 1 BSIG where the entity definition and size thresholds are met; other IT firms usually face supply-chain requirements from their clients. Multi-tenant platform use is supported.

  • NIS-2 Annex I
  • MSP and MSSP
  • Multi-tenant
  • Supply chain
NIS-2 for IT service providers
KRITIS · Chemicals

Chemicals and process industry

SEVESO/Major Accident obligations on top of NIS-2 Annex II (Anlage 2 BSIG, manufacture and trade of chemical substances). OT security in plants, supply chains and safety-security convergence.

  • NIS-2 Annex II
  • SEVESO
  • OT Security
NIS-2 for chemicals
KRITIS · Health

Healthcare

Hospitals, MVZ groups, medical device manufacturers and health-IT providers. NIS-2 Annex I by entity type and size, § 391 SGB V for hospitals, MDR cybersecurity requirements and B3S medical care.

  • NIS-2 Annex I
  • § 391 SGB V
  • MDR
  • B3S Med
NIS-2 for healthcare
Production · Food

Food and beverage

IFS Food and FSSC 22000 are private certification standards, not laws. NIS-2 Annex II covers industrial production, processing and wholesale. Cold-chain requirements come on top. Platform building blocks for multi-site operations.

  • IFS
  • FSSC 22000
  • NIS-2 Annex II
NIS-2 for food and beverage

Memberships, programmes and partnerships

  • BSI Allianz für Cyber-Sicherheit
  • CISPA Helmholtz-Zentrum für Informationssicherheit
  • TeleTrusT - Bundesverband IT-Sicherheit
  • IT Security Made in Germany - TeleTrusT

Your sector not listed? Get in touch.

Book a NIS-2 risk check