Quick Guides for preeco | information security
Here you will find helpful guides, step-by-step instructions, and practical tips for the information security module. From audits to risk analyses – we show you how to use preeco optimally.
Support & Help
How can we help?
FAQ & Guides
An overview in 5 minutes: how to read your degree of fulfillment in the ISMS Cockpit
The ISMS Cockpit offers a consolidated overview of all activated requirements catalogs and their implementation status.
Clear the assessment backlog: a smart start with the "Not assessed" quick filter
When a new requirements catalog is loaded, the open requirements can be shown selectively in the ISMS Cockpit via the "N
Collecting evidence without a user account: requesting records via link
In the ISMS Cockpit, evidence for requirements can be requested directly via a link, without the person asked needing th
Deliberately accepting residual risk: documenting exceptions traceably
Requirements that are deliberately not implemented can be documented in the ISMS Cockpit as a justified exception with a
How is the degree of fulfillment calculated in the ISMS Cockpit – and why do exceptions not count?
The degree of fulfillment in the ISMS Cockpit measures the share of fulfilled requirements in the total number of applic
Less is more: exclude non-applicable requirements – and fill the SoA automatically
Requirements that are not relevant for an organization can be classified as "not applicable" in the ISMS Cockpit. The ex
All guides from A to Z
The ISMS Cockpit offers a consolidated overview of all activated requirements catalogs and their implementation status.
When a new requirements catalog is loaded, the open requirements can be shown selectively in the ISMS Cockpit via the
In the ISMS Cockpit, evidence for requirements can be requested directly via a link, without the person asked needing
Requirements that are deliberately not implemented can be documented in the ISMS Cockpit as a justified exception with
The degree of fulfillment in the ISMS Cockpit measures the share of fulfilled requirements in the total number of
Requirements that are not relevant for an organization can be classified as "not applicable" in the ISMS Cockpit. The
Quick Guides Overview
All Guides for preeco | information security
Select a topic to go directly to the matching guide. We have documented the most important features and workflows for you.
ISMS Cockpit at a glance
Key figure tiles, assessment status and tabs for requirements, tasks and deadlines – how to read your degree of fulfilment in five minutes.
Assessing requirements
Use the “Not assessed” quick filter to surface open requirements and work through them step by step in the list or heatmap view.
Non-applicable requirements and the SoA
Exclude requirements that are not relevant – the exclusion justification you store flows automatically into the Statement of Applicability.
Collecting evidence
Request records via link, with no user account needed for the person you ask. Or upload evidence yourself and add a validity date.
Exceptions and residual risk
Document requirements you deliberately do not implement as a justified exception with an accepted residual risk.
Reading the degree of fulfilment
How the degree of fulfilment is calculated, and why non-applicable requirements and accepted exceptions do not distort the figure.
FAQ about preeco | information security
Frequently Asked Questions and Answers
After activating the module, the setup wizard guides you through the basic steps. First, you capture your organization and IT assets. Then you can start documenting your policies and measures. Our support team is happy to assist you with any questions.
Select an audit catalog (BSI IT-Grundschutz, CISIS12, or VdA ISA) and start a new audit. The software guides you through all checkpoints in a structured manner. Document compliance levels, assign measures, and record deviations. All results are accessible at any time and can be exported.
The generic risk analysis enables flexible assessments for any scenario. Systematically evaluate the probability of occurrence and potential damage. Link risks with assets, TOMs, and audits for a holistic view. All analyses are versioned and tracked.
In the training module, you can create your own training sessions or use pre-built templates. Add learning units with images or videos and include exam questions. Participation can be made mandatory for employees. Certificates of participation are generated automatically.
Document your TOMs systematically in the corresponding section. You can link measures with assets, audits, and risk analyses. Changes are versioned and tracked, so the evolution of your security measures remains transparent.
preeco offers comprehensive export functions for all areas. You can export audit results, risk analyses, TOMs, and training records in various formats. The data is documented traceably and can be used for internal and external reviews.
Still have questions?
Our support team is happy to help with all questions about preeco | information security. You can reach us via email at support@preeco.de or by phone at +49 731 280 651 0 – Monday to Friday from 9 AM to 5 PM.