infraproof
infraproof helps Swiss KRITIS organizations understand, implement, and continuously verify RL-DSP and IKT-Minimalstandard controls.
The problem
RL-DSP and IKT-Minimalstandard exist as PDF documents. Few organizations operationalize them.
Security controls fail when they remain documents. Implementation and ongoing operation must be provable.
Audits fail because evidence is missing — not because controls are missing.
What infraproof does
Structured catalog with explanations, examples, and implementation guidance. Not just PDF headings.
Workspaces per framework. Assign controls, track implementation status, add notes.
Evidence, tasks, and accountability directly on the control. No separate document management system needed.
Recurring verification reviews with expiry dates. Proof of ongoing operation, not just one-time setup.
Supported frameworks
Directive on data protection and data security for operators of critical infrastructure in Switzerland. Binding requirements covering data security, privacy, and risk management.
Browse controls →Federal baseline for minimum ICT resilience. Increasingly binding for federal agencies and KRITIS operators — based on the NIST Cybersecurity Framework.
Browse controls →infraproof is in active development. If you're a Swiss KRITIS organization that needs to implement RL-DSP or IKT-Minimalstandard, get in touch.
contact@infraproof.ch