
July 20, 2026
Timo Dörsam
Information Security Officer
Hot Topics
The 2025 Annual Report from the Federal Office for Information Security (BSI) clearly illustrates just how critical the current situation is when it comes to information security. During the reporting period, an average of 119 new incidents were identified each day, and around 80 per cent of reported attacks targeted small and medium-sized enterprises. Attackers generally sought out the most vulnerable targets.
At meteoviva, this issue has therefore been a top priority from the very beginning. And we are delighted that TÜV Rheinland has once again certified us to ISO/IEC 27001:2022, maintaining this standard continuously since our initial certification in 2020!
What does that imply for customers and partners?
If you work with a supplier certified to ISO/IEC 27001, you benefit in several ways. The protection of your data follows an internationally recognised standard and is audited by an independent body. This also reduces your own supplier risk, because existing certification facilitates compliance with ISO 27001, NIS-2 or TISAX, and significantly shortens security checks in the procurement process. Should anything happen despite all efforts, clearly defined responsibilities and tried-and-tested emergency and backup procedures ensure that we remain operational. And as annual surveillance audits continuously confirm the certification, the continuity of this protection is also guaranteed.
Why does information security matter at meteoviva?
Our solutions manage your buildings in a predictive and energy-efficient manner. In doing so, we naturally process sensitive information: building and operational data, consumption profiles and control access. Ensuring that this data is well protected is essential for a successful partnership, and we devote the same care to this as we do to the efficiency of your systems.
ISO/IEC 27001 – What is it?
ISO/IEC 27001 is the internationally recognised standard for information security management systems (ISMS). It is not about a single security product, but rather a systematic, holistic approach that takes account of processes and process steps in almost all areas. Risks are continuously identified, assessed and addressed in a targeted manner. The focus is on the confidentiality, integrity and availability of information. Whether this system works in practice is regularly verified on-site through independent, accredited audits.
How we implement security
Our ISMS is based on continuous risk analyses, systematic vulnerability and patch management, access based on the principle of least privilege, a multi-layered secure cloud environment, and regular training for our staff. Information security is therefore an integral part of our day-to-day operations and is an ongoing process.
Verifiable and auditable at any time
Our current certificate is valid until 2029 and covers the development, distribution, implementation and operation of our predictive energy management solutions. All relevant information is, of course, transparently available in TÜV Rheinland’s online certificate register, Certipedia, certificate no. 01 153 1900929!
This renewed certification confirms that our security measures are effective – both in safeguarding the data you entrust to us and in ensuring the reliable operation of your buildings.


ISO/IEC 27001:2022: Information Security Standard
TÜV Rheinland has once again certified meteoviva to ISO/IEC 27001:2022. Find out exactly what this means for the security of your data and for working with us.
DGNB: successful recertification for meteoviva
Following successful recertification, meteoviva remains your accredited DGNB service provider. Our clients are guaranteed Bronze status.
Why economic viability depends on sustainability
Find out all about the legal framework, the link between sustainability and economic viability, and appropriate measures