BSI Reporting Portal (24/72/30)
Incident reporting channels under NIS2
Practitioner's note: This article is practice-oriented compliance documentation, not legal advice. We are a compliance specialist, not a law firm. For legally binding information please consult a licensed lawyer.
TL;DR
Under Section 32 BSIG, essential/important entities must report incidents to the BSI: 24-hour initial report, 72-hour update, 30-day final report. Portal: bsi.bund.de/meldungen.
What is the BSI reporting portal (24/72/30)?
Mandatory content of the initial report:
- Time + nature of the incident
- Initial damage assessment
- Initial measures taken
- Contact person
72-hour update: detailed damage assessment, technical indicators, additional measures.
Practical example
Ransomware incident at 22:00 on Friday: the 24-hour deadline ends Saturday at 22:00. Direct access: bsi.bund.de/meldungen, telephone 0800-274-1000 (24/7).
Frequently asked questions
Weekends?
The deadline runs on weekends as well — therefore 24/7 availability of the crisis team is required.
Is email sufficient?
The portal is preferred. Email is only a fallback in emergencies.