Orientation for managing directors

Six questions that make your IT security manageable.

The check only evaluates your own answers. It does not reveal technical vulnerabilities, but it very quickly shows where responsibilities, evidence or processes are missing.

Your answers stay in this browser only. Nothing is transmitted or stored.
1Backup and recovery

Do you know when a full or representative restore was last tested?

A successful backup run does not yet prove that data and systems will be usable in time when it matters.
2Multi-factor authentication

Are email, administrative and remote access protected by multi-factor authentication?

Privileged accounts and accounts reachable from outside need more than just a password.
3Updates

Can you trace which computers and servers are currently patched and where exceptions exist?

What matters is not only automatic installation, but visibility of failures and permanently deferred updates.
4Firewall and remote access

Is there a named person responsible for rules, firmware, VPN accounts and external access?

Otherwise temporary rules and old accounts often stay active longer than intended.
5Reporting path

Do staff know how to report suspicious emails, changes to payment details and unusual sign-ins?

Early reports limit the damage. For that, the right contact has to be reachable without searching.
6Documentation

Is it documented in a traceable way how the most important IT systems are built and who is responsible?

During an incident, the fix must not begin with a hunt for credentials, contracts and contacts.
Next step

Unclear answers are not proof of a security gap. They are a management problem.

Where evidence, responsibilities or recovery paths are missing, the first step is to clarify what already exists technically and who takes the task on permanently.

Call Appointment