Compliance & Audit

DSGVO & NIS2 Compliant Email Security

Back to Overview

Relevant Requirements

All three requirements are covered by mail:u secures functions.

DSGVO Art. 32

Encryption & Integrity

NIS2

Obligation for strong cryptography & logging

ISO 27001

Section A.8 (Cryptography) and A.12 (Logging)

Audit Log

Audit Features

Legally compliant logging of all processes (sending, workflow decisions, key operations)

OpenTelemetry Integration

Complete observability for all system components

Versioned Workflows

Automatic Timestamps: Every rule change receives automatic timestamp and user ID
Test Mode: Rule set can be validated before going live
Archiving: Archiving of old rule versions for audit purposes

Cryptography Standards (from function list)

Symmetric: AES-256-GCM, AES-128/192-GCM, Camellia
Asymmetric: RSA-2048/3072/4096, ECC X25519, Ed25519
Hash/Signature: SHA-256, SHA-384, SHA-512

Versioned Workflows

Automatic Timestamps

Every rule change receives automatic timestamp and user ID

Test Mode

Rule set can be validated before going live

Archiving

Archiving of old rule versions for audit purposes

Cryptography Standards (from function list)

AreaStandard
SymmetricAES-256-GCM, AES-128/192-GCM, Camellia
AsymmetricRSA-2048/3072/4096, ECC X25519, Ed25519
Hash/SignatureSHA-256, SHA-384, SHA-512

This fulfills current BSI recommendations and European KRITIS guidelines.

Clear Compliance Monitoring

Compliance Dashboards

The integrated compliance dashboards provide a central overview of all security-relevant aspects of your email communication. With these tools, you always maintain visibility into encryption status, certificate validity, and workflow performance.

Encryption Overview: Overview of encrypted vs. unencrypted messages
Certificate Monitoring: Certificate expiration in < 30 days
Workflow Statistics: Workflow policy hits per protection level
Export Functions: Data is exportable as CSV / PDF for external auditors

All dashboards are updated in real-time and offer drill-down functions for detailed analysis. The data can be exported directly to SIEM systems or external audit tools.

Compliance Dashboards - Monitoring and Audit Interface - Compliance Management

Audit-readiness without project risk: Request a compliance quick check with live audit log.

Complete traceability for all compliance requirements