Endpoint Cybersecurity GmbH
- Why SSDLC is helping shipping faster and more secure code
- Security User Stories How-To – for product managers and developers
- ISA VDA 6.0.3 (part 5) — Information Security Sheet: Supplier Relationships, Compliance
- ISA VDA 6.0.3 (part 4) — Information Security Sheet: IT Security / Cyber Security
- ISA VDA 6.0.3 (part 3) — Information Security Sheet: Human Resources, Physical Security, Identity and Access Management
- ISA VDA 6.0.3 (part 2) — Information Security Sheet: IS Policies and Organization
- TISAX getting started: A Deep Dive into the ISA Assessment Workbook (part 1)
- AI Adoption for companies in the USA
- AI Adoption for companies (based on OECD data)
- SOC 2 Type 2 mapping to Secure SDLC Requirements



Zero Trust in Cybersecurity: from myth to the guide
/in EducationalEvery single day I read news on various portals and on LinkedIn and I encounter a lot of buzz words. Most of the time I just smile recognizing the marketing b**it, and continue to scroll… This time, I found an article from the Germany’s Federal Bureau of Information Security (BSI) and it was about Zero […]
NIS2: 3.Establish a cybersecurity framework
/in EducationalWe wrote here https://www.sorinmustaca.com/how-to-nis2-eu-directive/ that the 3rd step in implementing the requirements of the directive is to establish a cybersecurity framework. If you haven’t read what a cybersecurity framework means, then you should read article: https://www.sorinmustaca.com/demystifying-cybersecurity-terms-policy-standard-procedure-controls-framework/ . Establishing a cybersecurity framework is critically important for organizations of all sizes and types because it is […]
How to implement an Information Security Management System (ISMS)
/in EducationalWe wrote here https://www.sorinmustaca.com/how-to-nis2-eu-directive/ that the 3rd step in implementing the requirements of the directive is to establish a cybersecurity framework. If you haven’t read what a cybersecurity framework means, then you should read article: https://www.sorinmustaca.com/demystifying-cybersecurity-terms-policy-standard-procedure-controls-framework/ . An ISMS is typically based on the ISO 27001 standard, which provides a framework for establishing, implementing, maintaining, […]
NIS2: 2.Designate a responsible person or team
/in EducationalWe wrote here https://www.sorinmustaca.com/how-to-nis2-eu-directive/ that the second step in implementing NIS2 requirements is to designate a responsible person or team. Appointing an individual or a team responsible for overseeing the implementation of the NIS2 directive within your company is critical to ensure its success. NIS2 implementation and compliance is a project, and as any project must […]
NIS2: 1. Perform a gap analysis
/in EducationalWe wrote here https://www.sorinmustaca.com/how-to-nis2-eu-directive/ that the first step in implementing NIS2 requirements is to perform a gap analysis. The most critical part when performing a gap analysis is to define upfront against which standard or security framework are you comparing the existing situation. It is usual when performing a gap analysis of security maturity […]