Assurance, testing and what a security services contract has to prove
Security services are bought as assurance, which means the supplier's own credentials are part of the deliverable. Buyers require certified testers from a recognised scheme for penetration testing, accredited consultancies for risk assessment against a named framework, and evidence that the supplier's own environment meets at least the standard it is being engaged to assess. A firm that cannot evidence its own information security management is a poor advertisement for the advice it is selling, and evaluations increasingly say so explicitly.
Scope definition is the contractual heart of testing work and the commonest source of dispute. Rules of engagement set out which systems are in scope, which techniques are permitted, what happens when a critical finding is discovered mid-test, out-of-hours windows, and the authorisation that makes otherwise unlawful activity lawful. Testing against systems hosted by a third party requires that party's written permission, which is a lead time bidders should assume rather than discover.
Monitored services -- detection and response delivered continuously -- are a different commercial animal from assessment. They are priced by volume of telemetry or by assets covered, and the terms that matter are coverage hours, time to detect and time to respond by severity, who is authorised to take containment action on the buyer's systems, and how incident evidence is preserved for later investigation. Clearance for analysts, the location of the operations centre, and data residency for logs are usually fixed by the buyer rather than proposed, and the exit terms should leave the buyer holding its own detection content.
This section describes how this category is bought generally, across the public buyers that publish it. The figures elsewhere on this page are measured for this market alone.
Who buys cybersecurity in Germany?
GlobalGov holds 372 cybersecurity records from 232 distinct buying organisations in Germany. The most frequent publishers are ['gen-pub'] (8 records); Bundeszentrale für gesundheitliche Aufklärung (BZgA) (6 records); Bundeszentrale für gesundheitliche Aufklärung (5 records); IKK classic (4 records); KfW Bankengruppe (4 records); Bundesministerium für Wirtschaft und Klimaschutz (3 records). Between them the 6 largest account for 8.1% of everything published, so buying here is spread across many separate authorities.
| Buying organisation | Records | Share |
|---|---|---|
| ['gen-pub'] | 8 | 2.2% |
| Bundeszentrale für gesundheitliche Aufklärung (BZgA) | 6 | 1.6% |
| Bundeszentrale für gesundheitliche Aufklärung | 5 | 1.3% |
| IKK classic | 4 | 1.1% |
| KfW Bankengruppe | 4 | 1.1% |
| Bundesministerium für Wirtschaft und Klimaschutz | 3 | 0.8% |
What are cybersecurity contracts worth in Germany?
96 of the 372 records publish a contract value. The median is $2.6M and the largest single published value is $118.8M. By size, 8 under $100k, 27 between $100k and $1M, 46 between $1M and $10M, 15 above $10M. The remaining 276 publish no value at all, so every figure here describes the priced subset only, and values are as stated by the buyer rather than as finally awarded.
| Contract size | Records | Share of priced |
|---|---|---|
| under $100k | 8 | 8.3% |
| between $100k and $1M | 27 | 28% |
| between $1M and $10M | 46 | 48% |
| above $10M | 15 | 16% |
How long do bidders get to respond to cybersecurity tenders in Germany?
Across the 44 Germany cybersecurity notices that publish both a publication date and a closing date, the median response window is 34 days. A quarter of them allowed 30 days or fewer and a quarter stayed open for more than 38. Not one of them closed within a fortnight of being published, so the window on this market is consistently workable.
How often are cybersecurity tenders published in Germany?
Germany publishes about 8 notices a month in this category, 99 in the last twelve months. That is 65% more than the 60 published in the twelve months before that. Over the last three years there were 239, spread across 60 separate months of activity since 25 November 2020. May is historically the busiest month. The most recent was published 28 September 2026.
How does Germany compare with other cybersecurity markets?
Among the 21 countries where GlobalGov holds a comparable cybersecurity market, Germany ranks 2nd by number of records. The largest is France (420 records against 372 here). Within Germany itself, cybersecurity is the 51st largest of the 76 procurement categories tracked here.
Where do the Germany cybersecurity records on this page come from?
These 372 records are collected from 2 official sources: TED (357), DTVP (15). GlobalGov is an independent aggregator and is not affiliated with any of them; each record links back to the notice on its issuing portal. The set is rebuilt nightly, and the counts on this page were taken on 2026-10-01.
Most recent Cybersecurity tenders in Germany
None of these are open for bids now — they are the most recent records GlobalGov holds for this market, kept here so the shape of a typical cybersecurity notice in Germany is visible. Set an alert to be told when the next one opens.
Germany – Internet services – Errichtung und Betrieb eines Gigabit-Netzes im Landkreis Trier-Saarburg
Germany – Internet services – Betrieb eines Gigabitnetzes im Rahmen eines Betreibermodells in der Stadt Solingen
Germany – Internet services – Rahmenvertrag Net Insight
Germany – Internet services – Fortsetzung des geförderten Breitbandausbaus im Saalekreis aus Fördermitteln des Europäischen Landwirtschaftsfonds für ländliche Entwicklung (ELER) und des Landes Sachsen-Anhalt -Projekt 1
Germany – Internet services – Leitungsanbindung Hybrides Rechenzentrum
Germany – Internet service providers ISP – Auswahlverfahren einer Dienstleistungskonzession im Betreibermodell für den Betrieb eines Gigabit-Netzes gemäß Gigabit-Richtlinie 2.0 in der Stadt Krautheim
Germany – Internet service providers ISP – Auswahlverfahren einer Dienstleistungskonzession im Betreibermodell für den Betrieb eines Gigabit-Netzes gemäß Gigabit-Richtlinie 2.0 in der Gemeinde Dörzbach
Germany – Internet service providers ISP – Gigabitförderung 2.0 in Diemelstadt
Germany – Internet services – AA Providerleistungen für alle Auslandsvertretungen des Auswärtigen Amts
Other procurement categories in Germany
Cybersecurity procurement in other markets
Never Miss a Germany Government Contract
Finding Germany tenders usually means a local portal, a local registration and someone who reads the language. Get an alert you can read when a new cybersecurity opportunity is published there.
Start Free Trial