CERT.at
- Company typePrivate
- Founded2012
- HeadquartersVienna, Austria
- Headcount1–10
- GTM typeB2B
- OfferingServices
CERT.at firmographics
Firmographics- Name
- CERT.at
- Legal name
- CERT.at GmbH
- Website
- https://cert.at
- Company type
- Private
- Founded year
- 2012
- Operating status
- Operating
- Headcount range
- 1–10 employees
- Ownership category
- akta.pro rank
CERT.at industry classification
Industry- Product category
- National Cybersecurity / Computer Emergency Response Services
- akta.pro primary industry
- Governance, Risk & Compliance (GRC) Advisory & Assessments (BPAKAHAH)
- akta.pro secondary industries
- Critical Infrastructure Protection (CIP) & NERC-CIP Compliance (HDADAJAC), Privacy, Data Protection & Cyber Governance (GRC) (BPAHAFAF)
Keywords
Where CERT.at is headquartered
LocationHeadquarters
- HQ city
- Vienna
- HQ country
- Austria
- HQ region
- Europe
Offices1 record
Markets served
CERT.at business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Others
Revenue model
- Government Funding / Parent Company Support: CERT.at operates as a subsidiary of nic.at GmbH and receives government support to fulfill its national CERT mandate under NIS-2 directive obligations.
Distribution channels1 record
Marketing channels5 records
CERT.at product offering
Product offeringCore offering
CERT.at is Austria's national Computer Emergency Response Team, providing cybersecurity incident response, coordinated vulnerability disclosure (CVD), threat intelligence dissemination, security warnings, daily reports, and media monitoring for Austrian organizations and the public. It operates as a subsidiary of nic.at GmbH and serves as the designated national CERT under NIS-2 directive obligations, coordinating with the EU CSIRTs Network and ENISA.
Product overview
CERT.at is Austria's national Computer Emergency Response Team, operating as a subsidiary of nic.at GmbH. The organization operates as a single unified service platform offering cybersecurity incident response, vulnerability disclosure coordination, threat intelligence dissemination, and security awareness services. The portfolio includes: security warnings and alerts (Meldungen), incident reporting services (Vorfall melden), coordinated vulnerability disclosure (CVD), machine-readable data feeds, web crawling, daily security reports (Tagesberichte), email subscriptions, and LLM-based advanced vulnerability search capabilities. These services work together to provide comprehensive national cybersecurity protection for Austrian organizations, businesses, and government entities.
Differentiator
Problem solved
Functional benefit
Products and services
- Alerts & Warnings (Meldungen) Security warnings, current news, daily reports, and blog posts about cybersecurity threats and vulnerabilities affecting Austrian organizations and the general public.
- Incident Reporting (Vorfall melden) Service for reporting IT security incidents. Companies that are targets or victims of security incidents in Austria can report through this service and receive guidance on response steps.
- Coordinated Vulnerability Disclosure (Schwachstelle melden / CVD) Coordinated Vulnerability Disclosure service that enables security researchers to report discovered vulnerabilities confidentially to vendors before public disclosure, allowing risks to be minimized and vulnerabilities to be fixed securely.
- Data Feeds (Feeds & Daten feeds) Machine-readable data feeds providing security advisories, warnings, and threat intelligence — including Shadowserver data for Austrian infrastructure — for automated consumption by security systems.
- Web Crawler (Crawler) Web crawling service that monitors online sources to gather security-relevant information for CERT.at's monitoring and alerting activities.
- Statistic Survey Statistical survey services that track and analyze cybersecurity statistics and trends in Austria.
- Daily Reports (Tagesberichte) Daily summaries aggregating approximately 300 online sources of IT security news and advisories, curated by CERT.at analysts.
- Mailing Lists (Mailinglisten) Email subscription services allowing subscribers to receive security alerts and daily reports via email.
- Downloads Downloads section containing annual reports, software tools, papers, and press materials related to CERT.at's cybersecurity work.
Companies that use CERT.at
Customer profileSegments2 records
Ideal customer profiles2 records
CERT.at technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability3 records
CERT.at partnerships and signals
Strategic signalPartnerships
Nine partnerships are on record, tiered core, major and minor.
- nic.at GmbHcoreCERT.at GmbH is a subsidiary company of nic.at GmbH, Austria's domain name registry operator. This parent-subsidiary relationship provides the organizational and funding framework for the national CERT operations.
- Cybersecurity Plattform (CSP)majorThe Cybersecurity Platform (CSP) served as the forum for community feedback during the development of Austria's national CVD Policy in 2024-2025, with CERT.at providing technical input alongside BMI, BKA, and BMJ.
- Bundesministerium für Inneres (BMI)majorBMI (Federal Ministry of the Interior) co-authored the national CVD Policy draft in 2024 and leads the Cybersicherheit-Steuerungsgruppe (Cybersecurity Steering Group) which formally confirmed the policy in 2025.
- Bundeskanzleramt (BKA)majorBKA (Federal Chancellery) co-authored the national CVD Policy and participates in the Cybersicherheit-Steuerungsgruppe. Currently in transition with BMI for NIS2 governance pages on nis.gv.at.
- Bundesministerium für Justiz (BMJ)majorBMJ (Federal Ministry of Justice) contributed to the development of Austria's national CVD Policy, providing legal framework expertise alongside technical ministries.
- ENISA (EU Agency for Cybersecurity)majorENISA publishes statistics and coordinates the EU-wide CSIRTs Network. CERT.at participates in ENISA's CSIRTs Network meetings and references ENISA's published statistics on incident reporting.
- Austrian Trust CircleminorAn initiative coordinated by CERT.at bringing together Austrian cybersecurity stakeholders for information sharing and coordination.
- Austrian Energy CertminorA specialized CERT focusing on cybersecurity for Austria's energy sector, operating under the CERT.at umbrella or in coordination with national CERT efforts.
- EU Expert Group for a Technology Roadmap on Encryption (E04005)majorCERT.at staff member Otmar Lendl participates in this EU Commission expert group tasked with developing technical options for lawful access to encrypted data while safeguarding cybersecurity and fundamental rights.
Scale indicators1 record
Recent moves6 records
Expansion highlights5 records
CERT.at competitors and assessment
Company assessmentOthers
- FIRST (Forum of Incident Response and Security Teams): The global association of CERTs and incident response teams, of which CERT.at is a member. FIRST is not a direct competitor but a coordinating body and standards organization that frames the operating context for national CERTs like CERT.at.
Broad incumbents
- NCSC UK (National Cyber Security Centre): The UK's national cybersecurity authority, part of GCHQ, providing national CERT-equivalent functions at much larger scale. NCSC UK is a structural and functional peer but operates with substantially greater resources and a broader regulatory remit.
- ENISA (European Union Agency for Cybersecurity): The EU-level agency that coordinates the CSIRTs Network and publishes incident statistics that CERT.at references. ENISA operates one layer above national CERTs but shares substantial functional overlap in advisory, reporting frameworks, and threat intelligence.
Direct peers
- NCSC-NL (Nationaal Cyber Security Centrum): Netherlands' national cybersecurity center, combining CERT functions with national threat intelligence and critical infrastructure protection. NCSC-NL operates a similar model to CERT.at of being the single national coordination point for cybersecurity incidents.
- ANSSI (Agence nationale de la sécurité des systèmes d'information): France's national cybersecurity agency with an identical mandate of national CERT operations, vulnerability coordination, and critical infrastructure protection. ANSSI is the most prominent national CERT/CSIRT in the EU and a direct functional peer.
- BSI (Bundesamt für Sicherheit in der Informationstechnik): Germany's federal cybersecurity authority and national CERT counterpart. BSI performs the same national-level cybersecurity coordination, advisory, and incident response role that CERT.at performs for Austria, making it the most directly comparable peer organization.
- CERT-EU (Computer Emergency Response Team for the EU Institutions, Bodies and Agencies): The dedicated CERT for EU institutions, working in close coordination with national CERTs across the EU CSIRTs Network. CERT.at participates in this network, making CERT-EU both a coordination counterpart and a peer in CERT operations.
- govCERT.ch: Switzerland's government CERT, operated under the Federal Intelligence Service, performing national-level incident response for the Swiss federal administration. Direct functional equivalent of CERT.at with a similarly sized national scope.
Regional players
- CIRCL (Computer Incident Response Center Luxembourg): Luxembourg's CERT, operating with a similarly small national mandate and a strong focus on coordinated vulnerability disclosure and open-source tooling. CIRCL's CVD focus and community-driven approach closely parallels CERT.at's Austrian CVD Policy work.
- SWITCH-CERT: Switzerland's CERT serving the academic and research network, also engaging in national cybersecurity coordination. Comparable in scale and mission to CERT.at and a fellow participant in European CERT cooperation forums.
Market position
Strengths4 records
Weaknesses5 records
Competitive moat4 records
Key risks6 records
Key highlights7 records
Customer concentration
CERT.at social profiles
Digital presenceCERT.at financial estimates
Financial estimateRevenue estimate
Valuation estimate
CERT.at leadership team
Management profileNumber of profiles
CERT.at funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
CERT.at M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about CERT.at
What does CERT.at do?
CERT.at is Austria's national Computer Emergency Response Team, providing cybersecurity incident response, coordinated vulnerability disclosure (CVD), threat intelligence dissemination, security warnings, daily reports, and media monitoring for Austrian organizations and the public. It operates as a subsidiary of nic.at GmbH and serves as the designated national CERT under NIS-2 directive obligations, coordinating with the EU CSIRTs Network and ENISA.
Is CERT.at a public or private company?
CERT.at is a private company. It is classified as corporate owned and is currently operating.
When was CERT.at founded?
CERT.at was founded in 2012. It employs 1 to 10 people.
Where is CERT.at based?
CERT.at is headquartered in Vienna, Austria, in the Europe region.
How does CERT.at make money?
One revenue line is on record: government Funding / Parent Company Support.
Who are CERT.at's main competitors?
FIRST (Forum of Incident Response and Security Teams) is listed as an others. Broad incumbents are NCSC UK (National Cyber Security Centre) and ENISA (European Union Agency for Cybersecurity). Direct peers are NCSC-NL (Nationaal Cyber Security Centrum), ANSSI (Agence nationale de la sécurité des systèmes d'information), BSI (Bundesamt für Sicherheit in der Informationstechnik), CERT-EU (Computer Emergency Response Team for the EU Institutions, Bodies and Agencies) and govCERT.ch. Regional players are CIRCL (Computer Incident Response Center Luxembourg) and SWITCH-CERT.
Does CERT.at have an API?
No public API is recorded for CERT.at.
What industry is CERT.at in?
CERT.at's product category is National Cybersecurity / Computer Emergency Response Services. Its primary akta.pro industry code is BPAKAHAH, Governance, Risk & Compliance (GRC) Advisory & Assessments, with a secondary code of HDADAJAC, Critical Infrastructure Protection (CIP) & NERC-CIP Compliance.