Germany approves CyberGovSecure to strengthen federal cybersecurity

New cyber reforms help Germany improve protection against ransomware and cyber espionage.

Germany launches CyberGovSecure to strengthen federal cybersecurity and digital resilience.

Germany has approved a new federal cybersecurity programme, CyberGovSecure, aimed at strengthening the resilience of the federal administration through more centralised governance and standardised security measures in response to an increasingly complex cyber threat landscape.

Approved by the Federal Cabinet, the programme seeks to improve protection against state-sponsored cyberespionage, ransomware attacks targeting IT service providers and coordinated distributed denial-of-service (DDoS) attacks.

It establishes a new governance structure led by the Federal Ministry for Digital Affairs and Public Sector Modernization (BMDS), with a state secretary-level steering committee providing strategic oversight and the Federal Government’s Chief Information Security Officer coordinating implementation across ministries. The objective is to replace fragmented cybersecurity management with a more coordinated federal approach.

CyberGovSecure prioritises measures including secure system configuration, vulnerability management, logging, threat detection and the deployment of standardised end-user devices and unified mobile device management across the federal administration. Additional personnel and funding have been requested as part of Germany’s 2027 federal budget planning.

CyberGovSecure will complement the planned Cyberdome initiative, which is intended to provide nationwide capabilities for detecting and responding to cyber threats affecting government, businesses and public administration. According to the government, CyberGovSecure focuses on strengthening the federal administration’s internal cybersecurity, while Cyberdome will support broader national cyber defence and early warning capabilities.

Why does it matter?

CyberGovSecure reflects a broader shift towards centralised cybersecurity governance as governments seek to respond more effectively to increasingly sophisticated cyber threats. By standardising security practices and strengthening coordination across federal institutions, Germany aims to reduce vulnerabilities created by fragmented IT management.

Together with the planned Cyberdome initiative, the programme also illustrates how cybersecurity strategies are increasingly combining internal government resilience with wider national cyber defence capabilities. This layered approach reflects the growing recognition that protecting public administration has become a core component of national security and digital resilience.

Would you like to learn more about AI, tech and digital diplomacyIf so, ask our Diplo chatbot!