ConPolicy
Kontakt

DigitalizationBSI IT security label now also for video conferencing services

The German Federal Office for Information Security (BSI) has recently introduced the IT security label for video conferencing services. This label is intended to help private users to understand the security features of IT products and aims to establish a basic level of security on the consumer market. Providers whose video conferencing services meet the basic requirements of DIN SPEC 27008 can now apply for the new label. Since the coronavirus pandemic, video conferencing has become indispensable in private life. However, many consumers are not aware of the security features of video conferencing services. With the new DIN SPEC 27008 standard, which serves as the basis for the IT security label, video conferencing providers have agreed a basic level of security for the first time.

BSI President Claudia Plattner emphasized that the IT security label provides consumers with a clear overview of the security of IT products and services. This helps to implement cyber security at a simple level in everyday life. Providers of video conferencing services can apply for the label to demonstrate their compliance with basic IT security requirements and ensure immediate updates when needed. 

The most important facts at a glance:

  • DIN SPEC 27008 was developed over a period of 18 months by a consortium of providers, with the BSI accompanying the process and ultimately finding the standard suitable for the IT security label. 
  • The standard aims to address potential risks to information security and user privacy, by simultaneously providing technical guidelines to minimize these risks. 
  • It covers various aspects such as account protection, appropriate update and vulnerability management, up-to-date authentication mechanisms, secure data center operation and other security functions such as up-to-date encryption technologies. 
  • It also emphasizes transparency and control during video conferences, monitoring who has access and how.
  • Compliance with the security standards is verified throughout the duration of the label.

Source: Federal Office for Information Security
Further Information