< Back to all clusters
[POLITICS] · Germany · 11 sources

German cabinet approves CyberGovSecure program to boost federal cybersecurity

The German federal cabinet approved the CyberGovSecure program in July 2026, establishing a binding framework to strengthen cyber security and resilience across the entire federal administration. The program, coordinated by the CISO Bund and the BSI, targets immediate measures such as secure backup, secure configuration and system hardening, vulnerability management, and logging and detection.

Concurrently, the NIS2 implementation law, which became effective at the end of 2025, imposes immediate cyber‑security obligations on roughly 30,000 companies in 18 sectors and introduces personal liability for executives. The law expands the powers of the BSI, the BKA and the Federal Police to detect and counter cyber attacks. Companies with at least 50 employees or €10 million annual revenue in critical sectors—about 29,500 firms—must comply from 2026.

BSI President Claudia Plattner, also serving as CISO Bund, said the program will provide concrete support for ministries and help the government safeguard the nation against rising cyber threats.

Entities: Bundesamt für Sicherheit in der Informationstechnik (BSI) · Claudia Plattner · CyberGovSecure program · German Federal Cabinet · NIS2 implementation law

Claims

What the coverage asserts, and how well corroborated each claim is across sources.

  • [○ 1 SOURCE] In 2025, cybercrime caused approximately 289 billion euros in damages in Germany, affecting 87 % of companies. (2025 cyber impact data)
  • [● 3 SOURCES] The program includes immediate measures and expands the powers of the BSI, BKA and Federal Police to detect and counter cyber attacks. (expands.)
  • [○ 1 SOURCE] German companies had to fend off an average of 1,345 cyber attacks per week in 2025. (2025 attack frequency)
  • [○ 1 SOURCE] BSI President Claudia Plattner, also serving as CISO Bund, said the program will provide concrete support for ministries. (said)
  • [○ 1 SOURCE] CyberGovSecure's initial 2026 priorities are secure backup, secure configuration and system hardening, vulnerability management, and logging and detection. (Program priorities)
  • [● 2 SOURCES] The NIS2 implementation law, effective end 2025, imposes immediate cybersecurity obligations on about 30,000 German companies in 18 sectors, with personal liability for executives who neglect duties. (imposes)
  • [● 2 SOURCES] CyberGovSecure aims to strengthen cybersecurity and cyber resilience across the whole federal administration with measurable results. (Program description)
  • [● 2 SOURCES] The German federal cabinet approved the CyberGovSecure program in July 2026. (approved)
  • [● 2 SOURCES] CyberGovSecure aims to strengthen cyber security and resilience across the entire federal administration with measurable results. (aims)
  • [○ 1 SOURCE] Approximately 29,500 companies with at least 50 employees or €10 million revenue in critical sectors must comply with NIS2 from 2026. (must comply)
  • [○ 1 SOURCE] CyberGovSecure prioritises secure backup, secure configuration and system hardening, vulnerability management, and logging and detection in 2026. (prioritises)