Maximum Cyber Resilience With the Help of TIBER / DORA TLPT

Cyber risks pose a significant threat to companies and institutions. Due to the high level of digitalization and networking, cyberattacks can affect the entire economic system and public life at the same time. The European Union therefore requires certain financial institutions and their third-party ICT providers to proactively test their resilience to cyberthreats and take measures to increase their cybersecurity.

As part of the regulatory requirements, we use Threat-Led Penetration Tests (TLPT) and attack simulations to check your existing security precautions. In addition to cyber risks, we also uncover physical vulnerabilities and support you in closing your security gaps.

Which Regulation Applies to You?

TIBER-EU

Threat Intelligence-Based Ethical Red Teaming (TIBER) is a detailed framework of the central banks in the EU area that defines the modalities for carrying out realistic attack simulations to ensure meaningful tests. However, it does not constitute a direct obligation for companies to carry out such a test.

DORA TLPT

The Digital Operational Resilience Act (DORA) defines the legal framework for the operational resilience of financial service providers in order to ensure the stability of the financial system. Among other things, it obliges certain institutions to carry out Threat-Led Penetration Tests (TLPT), for example in accordance with the TIBER framework.

This affects EU wide operating:

  • Systemically important banks and insurance companies
  • companies and institutions involved in financial market infrastructure
  • ICT service providers relevant to the financial sector

KRITIS / NIS-1 / NIS-2

Other operators of critical infrastructure and providers of systemically important services may also be required to carry out regular security testing in accordance with national implementing provisions. In addition to TIBER-oriented tests, other customized attack simulations or red teamings are also suitable for this purpose.

Why Oneconsult Is Your Specialist for TIBER Assessments

Interdisciplinary Team of Experts

Our specialized TIBER team unites experts from a wide range of disciplines: red teaming, digital forensics, incident response, building technology and non-technical areas such as law enforcement, counterintelligence, and sabotage prevention. This interdisciplinary expertise enables us to take a holistic view of your cyber and physical security risks.

Experience With TIBER / DORA TLPT

For TIBER- and DORA-compliant Threat-Led Penetration Tests (TLPT) we rely on a well-coordinated team of experts with many years of experience. Our specialists are trained to compromise highly privileged accounts, access sensitive areas and circumvent existing security mechanisms, even in highly hardened environments.

Trusted Partner

Oneconsult is an independent, owner-managed Swiss cybersecurity company with a German subsidiary in Munich. As an established and trusted partner, we are committed to integrity and security. Our employees undergo regular official background checks.

How Oneconsult Supports Your Company With TIBER Projects and DORA TLPT

Targeted Threat Intelligence Provider

Targeted Threat Intelligence (TTI) is a threat analysis tailored specifically to your company. It supports you in better understanding potential attacks and developing targeted security strategies.

  • Target Intelligence includes insights into your company’s infrastructure, employees, technologies and vulnerabilities to identify and analyze your attack surface.
  • Threat Intelligence includes analysis of cybercriminal trends, tactics, techniques and procedures (TTPs) as well as Advanced Persistent Threats (APTs) helping your company to specifically prepare for potential threats.

Red Teaming

We conduct complex, multi-stage attack simulations based on the threat scenarios modeled in the TTI report. Red teaming targets the specific risks and vulnerabilities of your organization. This allows you to effectively test your cybersecurity measures and readiness and to strengthen your resilience against realistic attacks.

TIBER-Based Readiness Tests

Not sure yet whether you will be required to undergo TIBER/DORA-compliant testing in the future and want to be prepared? Even without a legal obligation you can actively strengthen your cyber resilience. Our TIBER-based tests reveal vulnerabilities and potential attack vectors for cybercriminals enabling you to prepare your company for real-world threat scenarios in a targeted and effective manner with the help of our recommended measures.

Our statistics confirm this

Companies around the world rely on our expertise every day. This is confirmed not only by our long-standing customers but also by our statistics.
Cyber Security Projects
0 +
Incident Response Operations
0 +
Security Consulting Projects
0 +
Red Teaming Projects
0 +

About the TIBER Framework

Who is involved in a TIBER test?

Control Team (formerly White Team): The Control Team acts as the client’s coordination center during the entire TIBER test. It is responsible for overall risk management, monitors test activities and ensures that they are carried out within the agreed scope.
Blue Team: The defense team of the company being tested has no knowledge of the testing activities and will only be informed afterwards.
(Targeted) Threat Intelligence Provider: The external service provider conducts a threat analysis of the company in question and evaluates realistic attack scenarios.
Red Team: The external service provider acts independently of the Threat Intelligence Provider and conducts realistic attack simulations based on the TTI report to assess the effective security level of the company concerned.
TIBER Cyber Team (TCT): As a country-specific authority, the TCT provides technical and process-related support for the TIBER test. It monitors compliance with TIBER specifications and, in particular, supports the Control Team in ensuring correct implementation.

Is it necessary to hire two different external providers?

According to the TIBER framework, the Threat Intelligence Provider must act independently of the Red Team and be organizationally separated from it. However, this does not necessarily mean that a cybersecurity company cannot provide both services if the requirements are met. Oneconsult has clearly separated business divisions for this purpose.

What is the procedure for a regulation-compliant TIBER test?

Test Procedure According to TIBER Framework
Test Procedure According to TIBER Framework

Interested in a TIBER Project?

Arrange a non-binding initial consultation now!

Get a TIBER / DORA TLPT quote now

Oneconsult Insights

Browse through exciting articles, the latest news and helpful tips & tricks from our experts on all aspects of cyber security.

Don’t miss anything! Subscribe to our free newsletter.

Your security is our top priority – our specialists provide you with professional support.

Availability Monday to Friday 8:00 a.m. – 6:00 p.m (exception: customers with SLA – please call the 24/7 IRR emergency number).

Private individuals please contact your trusted IT service provider or the local police station.

For more information about our DFIR services here:

QR_CSIRT_2022_EN@2x
Add CSIRT to contacts