
Web-based, vendor-neutral platform for analyzing, documenting, and improving IT security in SMEs using a standardized, actionable framework.
Vendor
Securepoint
Company Website
Securepoint Unified Security Cert+ is a web-based solution and standard designed to systematically assess, document, and enhance information security in organizations, especially small and medium-sized enterprises (SMEs). It provides a structured catalog of measures, clear evaluation methods, and defined roles for auditors, engineers, and experts, enabling practical, vendor-neutral implementation and continuous improvement of security standards.
Key Features
Standardized Security Framework Provides a comprehensive, actionable catalog of security measures tailored for SMEs.
- Includes around 180 measures, categorized as "must have" and "nice to have"
- Three certification levels: Bronze, Silver, Gold, aligned with DIN SPEC 27076
Web-Based Application Enables easy analysis and documentation of IT security status via browser, smartphone, or tablet.
- Intuitive interface with visualizations and point system
- Supports efficient, repeatable audits and reporting
Role-Based Access and Specializations Defines clear roles for participants in the security process.
- Cert+ Auditor: full access, responsible for security assessment
- Cert+ Engineer: supports with technical implementation
- Cert+ Expert/Sachverständiger: prepares expert reports, additional qualification
Community-Driven Development Ongoing evolution of the standard through contributions from IT professionals.
- Regular updates and improvements based on practical feedback
- Community exchange and knowledge sharing
Vendor-Neutral and Product-Independent Applicable regardless of existing hardware or software.
- Focuses on organizational and procedural improvements
- Ensures broad compatibility and flexibility
Benefits
Practical Security Improvement Enables organizations to systematically raise their IT security maturity.
- Clear, actionable recommendations and measurable results
- Reduces complexity and cost of implementing security standards
Transparency and Compliance Provides a transparent, auditable process for security assessments.
- Visual, point-based evaluation of security status
- Supports preparation for further certifications (e.g., ISO/IEC 27001)
Empowers IT Service Providers Expands service portfolio and strengthens customer relationships.
- Facilitates targeted security consulting and recurring audits
- Positions providers as trusted security partners
Continuous Learning and Expertise Supports ongoing education and specialization for IT professionals.
- Access to further training and community resources
- Promotes knowledge transfer and professional development